2023 CVE Vulnerabilities

31,404 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-32516MEDIUM6.1Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in GloriaFood Restaurant Menu – Food Ordering System – Table ...
CVE-2023-32511MEDIUM6.1Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Booking Ultra Pro Booking Ultra Pro Appointments Booking C...
CVE-2023-32510MEDIUM6.1Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Rolf van Gelder Order Your Posts Manually plugin <= 2.2.5 ...
CVE-2023-38289Rejected reason: Not a Security Issue.
CVE-2023-38288Rejected reason: Not a Security Issue.
CVE-2023-3705HIGH7.5The vulnerability exists in CP-Plus NVR due to an improper input handling at the web-based management interface of the a...
CVE-2023-4513HIGH7.5BT SDP dissector memory leak in Wireshark 4.0.0 to 4.0.7 and 3.6.0 to 3.6.15 allows denial of service via packet injecti...
CVE-2023-4512HIGH7.5CBOR dissector crash in Wireshark 4.0.0 to 4.0.6 allows denial of service via packet injection or crafted capture file
CVE-2023-4511HIGH7.5BT SDP dissector infinite loop in Wireshark 4.0.0 to 4.0.7 and 3.6.0 to 3.6.15 allows denial of service via packet injec...
CVE-2023-4230MEDIUM5.3A vulnerability has been identified in ioLogik 4000 Series (ioLogik E4200) firmware versions v1.6 and prior, which has t...
CVE-2023-4229MEDIUM4.7A vulnerability has been identified in ioLogik 4000 Series (ioLogik E4200) firmware versions v1.6 and prior, potentially...
CVE-2023-4228MEDIUM4.3A vulnerability has been identified in ioLogik 4000 Series (ioLogik E4200) firmware versions v1.6 and prior, where the s...
CVE-2023-3704MEDIUM5.3The vulnerability exists in CP-Plus DVR due to an improper input validation within the web-based management interface of...
CVE-2023-4227MEDIUM6.5A vulnerability has been identified in the ioLogik 4000 Series (ioLogik E4200) firmware versions v1.6 and prior, which c...
CVE-2023-40573HIGH8.8XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. XWiki supports ...
CVE-2023-40572HIGH8XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. The create acti...
CVE-2023-32559HIGH7.5A privilege escalation vulnerability exists in the experimental policy mechanism in all active release lines: 16.x, 18.x...
CVE-2023-41028HIGH8.8A stack-based buffer overflow exists in Juplink RX4-1500, a WiFi router, in versions 1.0.2 through 1.0.5. An authenticat...
CVE-2023-3453HIGH8.1 ETIC Telecom RAS versions 4.7.0 and prior the web management portal authentication disabled by default. This could allo...
CVE-2023-38422HIGH7.5Walchem Intuition 9 firmware versions prior to v4.21 are missing authentication for some of the API routes of the manage...
CVE-2023-36317MEDIUM4.8Cross Site Scripting (XSS) vulnerability in sourcecodester Student Study Center Desk Management System 1.0 allows attack...
CVE-2023-32202HIGH8.8Walchem Intuition 9 firmware versions prior to v4.21 are vulnerable to improper authentication. Login credentials are st...
CVE-2023-40185HIGH8.6shescape is simple shell escape library for JavaScript. This may impact users that use Shescape on Windows in a threaded...
CVE-2023-40178MEDIUM5.3Node-SAML is a SAML library not dependent on any frameworks that runs in Node. The lack of checking of current timestamp...
CVE-2023-40177HIGH8.8XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Any registered ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now