2023 CVE Vulnerabilities
31,404 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-42657 | CRITICAL | 9.6 | 17.0% | Sep 27, 2023 | In WS_FTP Server versions prior to 8.7.4 and 8.8.2, a directory traversal vulnerability was discovered. An attacker ... |
| CVE-2023-42487 | HIGH | 7.5 | 0.9% | Sep 27, 2023 | Soundminer – CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') |
| CVE-2023-42486 | HIGH | 7.8 | 0.2% | Sep 27, 2023 | Fortect - CWE-428: Unquoted Search Path or Element, may be used by local user to elevate privileges. |
| CVE-2023-42462 | CRITICAL | 9.1 | 1.0% | Sep 27, 2023 | GLPI stands for Gestionnaire Libre de Parc Informatique is a Free Asset and IT Management Software package, that provide... |
| CVE-2023-42461 | CRITICAL | 9.8 | 0.9% | Sep 27, 2023 | GLPI stands for Gestionnaire Libre de Parc Informatique is a Free Asset and IT Management Software package, that provide... |
| CVE-2023-42460 | HIGH | 7.5 | 0.6% | Sep 27, 2023 | Vyper is a Pythonic Smart Contract Language for the EVM. The `_abi_decode()` function does not validate input when it is... |
| CVE-2023-42453 | MEDIUM | 4.3 | 0.7% | Sep 27, 2023 | Synapse is an open-source Matrix homeserver written and maintained by the Matrix.org Foundation. Users were able to forg... |
| CVE-2023-41996 | MEDIUM | 5.5 | 0.3% | Sep 27, 2023 | The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.6. Apps that fail verification che... |
| CVE-2023-41995 | HIGH | 7.8 | 0.3% | Sep 27, 2023 | A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 17 and iPadOS 17, macOS... |
| CVE-2023-41986 | MEDIUM | 5.5 | 0.3% | Sep 27, 2023 | The issue was addressed with improved checks. This issue is fixed in iOS 17 and iPadOS 17, macOS Sonoma 14. An app may b... |
| CVE-2023-41984 | HIGH | 7.8 | 0.5% | Sep 27, 2023 | The issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.6, tvOS 17, iOS 16.7 and ... |
| CVE-2023-41981 | MEDIUM | 4.4 | 0.4% | Sep 27, 2023 | The issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.6, tvOS 17, iOS 16.7 and ... |
| CVE-2023-41980 | MEDIUM | 5.5 | 0.3% | Sep 27, 2023 | A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 17 and iPadOS 17, macOS Sonom... |
| CVE-2023-41979 | MEDIUM | 4.7 | 0.2% | Sep 27, 2023 | A race condition was addressed with improved locking. This issue is fixed in macOS Sonoma 14. An app may be able to modi... |
| CVE-2023-41968 | MEDIUM | 5.5 | 0.4% | Sep 27, 2023 | This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Ventura 13.6, tvOS 17, macOS... |
| CVE-2023-41962 | MEDIUM | 6.1 | 0.6% | Sep 27, 2023 | Cross-site scripting vulnerability in Credit Card Payment Setup page of Welcart e-Commerce versions 2.7 to 2.8.21 allows... |
| CVE-2023-41904 | MEDIUM | 5.4 | 2.0% | Sep 27, 2023 | Zoho ManageEngine ADManager Plus before 7203 allows 2FA bypass (for AuthToken generation) in REST APIs. |
| CVE-2023-41888 | MEDIUM | 5.4 | 0.4% | Sep 27, 2023 | GLPI stands for Gestionnaire Libre de Parc Informatique is a Free Asset and IT Management Software package, that provide... |
| CVE-2023-41878 | CRITICAL | 9.8 | 0.6% | Sep 27, 2023 | MeterSphere is a one-stop open source continuous testing platform, covering functions such as test tracking, interface t... |
| CVE-2023-41861 | MEDIUM | 6.1 | 0.4% | Sep 27, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Restrict plugin <= 2.2.4 versions. |
| CVE-2023-41860 | MEDIUM | 6.1 | 0.3% | Sep 27, 2023 | Unauth. Cross-Site Scripting (XSS) vulnerability in TravelMap plugin <= 1.0.1 versions. |
| CVE-2023-41653 | MEDIUM | 6.1 | 0.4% | Sep 27, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Beplus Sermon'e – Sermons Online plugin <= 1.0.0 versions. |
| CVE-2023-41335 | LOW | 3.7 | 0.4% | Sep 27, 2023 | Synapse is an open-source Matrix homeserver written and maintained by the Matrix.org Foundation. When users update their... |
| CVE-2023-41333 | HIGH | 8.1 | 0.4% | Sep 27, 2023 | Cilium is a networking, observability, and security solution with an eBPF-based dataplane. An attacker with the ability ... |
| CVE-2023-41332 | LOW | 3.5 | 0.4% | Sep 27, 2023 | Cilium is a networking, observability, and security solution with an eBPF-based dataplane. In Cilium clusters where Cili... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now