2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-45588 | HIGH | 7.8 | 0.3% | Mar 14, 2025 | An external control of file name or path vulnerability [CWE-73] in FortiClientMac version 7.2.3 and below, version 7.0.... |
| CVE-2023-33300 | MEDIUM | 5.3 | 13.3% | Mar 14, 2025 | A improper neutralization of special elements used in a command ('command injection') in Fortinet FortiNAC 7.2.1 and ear... |
| CVE-2023-52927 | HIGH | 7.8 | 0.3% | Mar 14, 2025 | In the Linux kernel, the following vulnerability has been resolved: netfilter: allow exp not to be removed in nf_ct_fin... |
| CVE-2023-48790 | HIGH | 8.8 | 0.2% | Mar 11, 2025 | A cross site request forgery vulnerability [CWE-352] in Fortinet FortiNDR version 7.4.0, 7.2.0 through 7.2.1 and 7.1.0 t... |
| CVE-2023-42784 | CRITICAL | 9.8 | 0.4% | Mar 11, 2025 | An improper handling of syntactically invalid structure in Fortinet FortiWeb at least verions 7.4.0 through 7.4.6 and 7.... |
| CVE-2023-40723 | HIGH | 8.1 | 0.3% | Mar 11, 2025 | An exposure of sensitive information to an unauthorized actor in Fortinet FortiSIEM version 6.7.0 through 6.7.4 and 6.6.... |
| CVE-2023-37933 | MEDIUM | 6.1 | 0.3% | Mar 11, 2025 | An improper neutralization of input during web page generation ('Cross-site Scripting') vulnerability [CWE-79] in FortiA... |
| CVE-2023-52971 | MEDIUM | 4.9 | 0.4% | Mar 8, 2025 | MariaDB Server 10.10 through 10.11.* and 11.0 through 11.4.* crashes in JOIN::fix_all_splittings_in_plan. |
| CVE-2023-52970 | MEDIUM | 4.9 | 0.4% | Mar 8, 2025 | MariaDB Server 10.4 through 10.5.*, 10.6 through 10.6.*, 10.7 through 10.11.*, 11.0 through 11.0.*, and 11.1 through 11.... |
| CVE-2023-52969 | MEDIUM | 4.9 | 0.4% | Mar 8, 2025 | MariaDB Server 10.4 through 10.5.*, 10.6 through 10.6.*, 10.7 through 10.11.*, and 11.0 through 11.0.* can sometimes cra... |
| CVE-2023-52968 | MEDIUM | 4.9 | 0.4% | Mar 8, 2025 | MariaDB Server 10.4 before 10.4.33, 10.5 before 10.5.24, 10.6 before 10.6.17, 10.7 through 10.11 before 10.11.7, 11.0 be... |
| CVE-2023-43052 | MEDIUM | 5.3 | 0.3% | Mar 7, 2025 | IBM Control Center 6.2.1 through 6.3.1 is vulnerable to an external service interaction attack, caused by improper valid... |
| CVE-2023-35894 | MEDIUM | 6.1 | 0.2% | Mar 7, 2025 | IBM Control Center 6.2.1 through 6.3.1 is vulnerable to HTTP header injection, caused by improper validation of input by... |
| CVE-2023-38693 | CRITICAL | 9.8 | 0.8% | Mar 5, 2025 | Lucee Server (or simply Lucee) is a dynamic, Java based, tag and scripting language used for rapid web application devel... |
| CVE-2023-49031 | MEDIUM | 5.1 | 0.7% | Mar 3, 2025 | Directory Traversal (Local File Inclusion) vulnerability in Tikit (now Advanced) eMarketing platform 6.8.3.0 allows a re... |
| CVE-2023-25574 | CRITICAL | 9.8 | 0.3% | Feb 25, 2025 | `jupyterhub-ltiauthenticator` is a JupyterHub authenticator for learning tools interoperability (LTI). LTI13Authenticato... |
| CVE-2023-52926 | HIGH | 7.8 | 0.2% | Feb 24, 2025 | In the Linux kernel, the following vulnerability has been resolved: IORING_OP_READ did not correctly consume the provid... |
| CVE-2023-4261 | — | — | — | Feb 22, 2025 | Rejected reason: This CVE ID is Rejected because the issue was not a vulnerability. The data field reported is not attac... |
| CVE-2023-51339 | MEDIUM | 6.5 | 0.6% | Feb 20, 2025 | A lack of rate limiting in the 'Forgot Password' feature of PHPJabbers Event Ticketing System v1.0 allows attackers to s... |
| CVE-2023-51338 | MEDIUM | 5.4 | 0.3% | Feb 20, 2025 | PHPJabbers Meeting Room Booking System v1.0 is vulnerable to Multiple Stored Cross-Site Scripting (XSS) in the "title, n... |
| CVE-2023-51337 | MEDIUM | 5.4 | 0.3% | Feb 20, 2025 | PHPJabbers Event Ticketing System v1.0 is vulnerable to Reflected Cross-Site Scripting (XSS) in "lid" parameter in index... |
| CVE-2023-51336 | HIGH | 8.8 | 0.6% | Feb 20, 2025 | PHPJabbers Meeting Room Booking System v1.0 is vulnerable to CSV Injection vulnerability which allows an attacker to exe... |
| CVE-2023-51335 | MEDIUM | 6.5 | 0.4% | Feb 20, 2025 | PHPJabbers Cinema Booking System v1.0 is vulnerable to Multiple Stored Cross-Site Scripting (XSS) in the "title, name" p... |
| CVE-2023-51334 | MEDIUM | 5.3 | 0.5% | Feb 20, 2025 | A lack of rate limiting in the 'Forgot Password' feature of PHPJabbers Cinema Booking System v1.0 allows attackers to se... |
| CVE-2023-51333 | HIGH | 8.8 | 0.8% | Feb 20, 2025 | PHPJabbers Cinema Booking System v1.0 is vulnerable to CSV Injection vulnerability which allows an attacker to execute r... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now