2023 CVE Vulnerabilities

31,397 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-0015MEDIUM5.4In SAP BusinessObjects Business Intelligence Platform (Web Intelligence user interface) - version 420, some calls return...
CVE-2023-0013MEDIUM6.1The ABAP Keyword Documentation of SAP NetWeaver Application Server - versions 702, 731, 740, 750, 751, 752, 753, 754, 75...
CVE-2023-0012MEDIUM6.7In SAP Host Agent (Windows) - versions 7.21, 7.22, an attacker who gains local membership to SAP_LocalAdmin could be abl...
CVE-2023-22899MEDIUM5.9Zip4j through 2.11.2, as used in Threema and other products, does not always check the MAC when decrypting a ZIP archive...
CVE-2023-22898MEDIUM6.5workers/extractor.py in Pandora (aka pandora-analysis/pandora) 1.3.0 allows a denial of service when an attacker submits...
CVE-2023-0125MEDIUM6.1A vulnerability was found in Control iD Gerencia Web 1.30. It has been declared as problematic. Affected by this vulnera...
CVE-2023-0114MEDIUM5.5A vulnerability was found in Netis Netcore Router. It has been rated as problematic. Affected by this issue is some unkn...
CVE-2023-0112MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository usememos/memos prior to 0.10.0.
CVE-2023-0111MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository usememos/memos prior to 0.10.0.
CVE-2023-0110MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository usememos/memos prior to 0.10.0.
CVE-2023-0108MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository usememos/memos prior to 0.10.0.
CVE-2023-0107MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository usememos/memos prior to 0.10.0.
CVE-2023-0106MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository usememos/memos prior to 0.10.0.
CVE-2023-22475MEDIUM6.1Canarytokens is an open source tool which helps track activity and actions on your network. A Cross-Site Scripting vulne...
CVE-2023-22455MEDIUM6.1Discourse is an option source discussion platform. Prior to version 2.8.14 on the `stable` branch and version 3.0.0.beta...
CVE-2023-22454MEDIUM6.1Discourse is an option source discussion platform. Prior to version 2.8.14 on the `stable` branch and version 3.0.0.beta...
CVE-2023-22453MEDIUM5.3Discourse is an option source discussion platform. Prior to version 2.8.14 on the `stable` branch and version 3.0.0.beta...
CVE-2023-0087MEDIUM4.8The Swifty Page Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘spm_plugin_options_pa...
CVE-2023-0086MEDIUM6.5The JetWidgets for Elementor plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and inc...
CVE-2023-22622MEDIUM5.3WordPress through 6.1.1 depends on unpredictable client visits to cause wp-cron.php execution and the resulting security...
CVE-2023-0057MEDIUM6.1Improper Restriction of Rendered UI Layers or Frames in GitHub repository pyload/pyload prior to 0.5.0b3.dev33.
CVE-2023-22466MEDIUM5.4Tokio is a runtime for writing applications with Rust. Starting with version 1.7.0 and prior to versions 1.18.4, 1.20.3,...
CVE-2023-0055MEDIUM5.3Sensitive Cookie in HTTPS Session Without 'Secure' Attribute in GitHub repository pyload/pyload prior to 0.5.0b3.dev32.
CVE-2023-22465MEDIUM5.3Http4s is a Scala interface for HTTP services. Starting with version 0.1.0 and prior to versions 0.21.34, 0.22.15, 0.23....
CVE-2023-22464MEDIUM5.4ViewVC is a browser interface for CVS and Subversion version control repositories. Versions prior to 1.2.3 and 1.1.30 ar...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now