2023 CVE Vulnerabilities
31,404 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-40182 | MEDIUM | 5.3 | 0.3% | Aug 25, 2023 | Silverware Games is a premium social network where people can play games online. When using the Recovery form, a noticea... |
| CVE-2023-40179 | MEDIUM | 5.3 | 0.4% | Aug 25, 2023 | Silverware Games is a premium social network where people can play games online. Prior to version 1.3.6, the Password Re... |
| CVE-2023-38974 | MEDIUM | 5.4 | 0.4% | Aug 25, 2023 | A stored cross-site scripting (XSS) vulnerability in the Edit Category function of Badaso v2.9.7 allows attackers to exe... |
| CVE-2023-38973 | MEDIUM | 5.4 | 0.3% | Aug 25, 2023 | A stored cross-site scripting (XSS) vulnerability in the Add Tag function of Badaso v2.9.7 allows attackers to execute a... |
| CVE-2023-39700 | MEDIUM | 6.1 | 1.4% | Aug 25, 2023 | IceWarp Mail Server v10.4.5 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the color... |
| CVE-2023-39699 | CRITICAL | 9.8 | 1.2% | Aug 25, 2023 | IceWarp Mail Server v10.4.5 was discovered to contain a local file inclusion (LFI) vulnerability via the component /cale... |
| CVE-2023-4508 | MEDIUM | 5.5 | 0.3% | Aug 24, 2023 | A user able to control file input to Gerbv, between versions 2.4.0 and 2.10.0, can cause a crash and cause denial-of-ser... |
| CVE-2023-40030 | MEDIUM | 6.1 | 0.8% | Aug 24, 2023 | Cargo downloads a Rust project’s dependencies and compiles the project. Starting in Rust 1.60.0 and prior to 1.72, Cargo... |
| CVE-2023-40022 | HIGH | 7.8 | 0.3% | Aug 24, 2023 | Rizin is a UNIX-like reverse engineering framework and command-line toolset. Versions 0.6.0 and prior are vulnerable to ... |
| CVE-2023-40017 | HIGH | 7.5 | 0.6% | Aug 24, 2023 | GeoNode is an open source platform that facilitates the creation, sharing, and collaborative use of geospatial data. In ... |
| CVE-2023-39521 | MEDIUM | 4.8 | 0.5% | Aug 24, 2023 | Tuleap is an open source suite to improve management of software developments and collaboration. In Tuleap Community Edi... |
| CVE-2023-39519 | MEDIUM | 4.9 | 0.6% | Aug 24, 2023 | Cloud Explorer Lite is an open source cloud management platform. Prior to version 1.4.0, there is a risk of sensitive in... |
| CVE-2023-38508 | MEDIUM | 4.3 | 0.5% | Aug 24, 2023 | Tuleap is an open source suite to improve management of software developments and collaboration. In Tuleap Community Edi... |
| CVE-2023-37469 | HIGH | 8.8 | 1.3% | Aug 24, 2023 | CasaOS is an open-source personal cloud system. Prior to version 0.4.4, if an authenticated user using CasaOS is able to... |
| CVE-2023-32079 | HIGH | 8.8 | 0.7% | Aug 24, 2023 | Netmaker makes networks with WireGuard. A Mass assignment vulnerability was found in versions prior to 0.17.1 and 0.18.6... |
| CVE-2023-32078 | HIGH | 7.5 | 0.6% | Aug 24, 2023 | Netmaker makes networks with WireGuard. An Insecure Direct Object Reference (IDOR) vulnerability was found in versions p... |
| CVE-2023-32077 | HIGH | 7.5 | 3.1% | Aug 24, 2023 | Netmaker makes networks with WireGuard. Prior to versions 0.17.1 and 0.18.6, hardcoded DNS key usage has been found in N... |
| CVE-2023-39801 | MEDIUM | 4.6 | 0.4% | Aug 24, 2023 | A lack of exception handling in the Renault Easy Link Multimedia System Software Version 283C35519R allows attackers to ... |
| CVE-2023-4420 | HIGH | 7.4 | 0.2% | Aug 24, 2023 | A remote unprivileged attacker can intercept the communication via e.g. Man-In-The-Middle, due to the absence of Transpo... |
| CVE-2023-4419 | HIGH | 8.8 | 0.7% | Aug 24, 2023 | The LMS5xx uses hard-coded credentials, which potentially allow low-skilled unauthorized remote attackers to reconfigure... |
| CVE-2023-4418 | HIGH | 7.5 | 0.7% | Aug 24, 2023 | A remote unprivileged attacker can sent multiple packages to the LMS5xx to disrupt its availability through a TCP SYN-ba... |
| CVE-2023-31412 | HIGH | 7.5 | 0.3% | Aug 24, 2023 | The LMS5xx uses weak hash generation methods, resulting in the creation of insecure hashs. If an attacker manages to ret... |
| CVE-2023-40904 | CRITICAL | 9.8 | 0.8% | Aug 24, 2023 | Tenda AC10 v4 US_AC10V4.0si_V16.03.10.13_cn was discovered to contain a stack overflow via parameter macFilterType and p... |
| CVE-2023-40902 | CRITICAL | 9.8 | 1.0% | Aug 24, 2023 | Tenda AC10 v4 US_AC10V4.0si_V16.03.10.13_cn was discovered to contain a stack overflow via parameter list and bindnum at... |
| CVE-2023-40901 | CRITICAL | 9.8 | 1.0% | Aug 24, 2023 | Tenda AC10 v4 US_AC10V4.0si_V16.03.10.13_cn was discovered to contain a stack overflow via parameter macFilterType and p... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now