2023 CVE Vulnerabilities

31,404 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-39963HIGH7.8Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 20.0.0 and prio...
CVE-2023-39962HIGH7.7Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 19.0.0 and prio...
CVE-2023-39961MEDIUM4.3Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 24.0.4 and prio...
CVE-2023-39959MEDIUM5.3Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 25.0.0 and prio...
CVE-2023-39958MEDIUM5.3Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 22.0.0 and prio...
CVE-2023-4128Rejected reason: ** REJECT ** DO NOT USE THIS CVE RECORD. ConsultIDs: CVE-2023-4206, CVE-2023-4207, CVE-2023-4208. Reas...
CVE-2023-36315MEDIUM6.1There is a Cross Site Scripting (XSS) vulnerability in the "action" parameter of index.php in PHPJabbers Callback Widget...
CVE-2023-36314MEDIUM6.1There is a Cross Site Scripting (XSS) vulnerability in the value-text-o_sms_email_request_message parameters of index.ph...
CVE-2023-36313MEDIUM6.1PHPJabbers Document Creator v1.0 is vulnerable to Cross Site Scripting (XSS) via all post parameters of "Export Requests...
CVE-2023-36312MEDIUM5.4There is a Cross Site Scripting (XSS) vulnerability in the value-enum-o_bf_include_timezone parameter of index.php in PH...
CVE-2023-36311CRITICAL9.8There is a SQL injection (SQLi) vulnerability in the "column" parameter of index.php in PHPJabbers Document Creator v1.0...
CVE-2023-36310MEDIUM6.1There is a Cross Site Scripting (XSS) vulnerability in the "column" parameter of index.php in PHPJabbers Document Creato...
CVE-2023-36309MEDIUM6.1There is a Cross Site Scripting (XSS) vulnerability in the "action" parameter of index.php in PHPJabbers Document Creato...
CVE-2023-40216MEDIUM5.5OpenBSD 7.3 before errata 014 is missing an argument-count bounds check in console terminal emulation. This could cause ...
CVE-2023-39957HIGH7.8Nextcloud Talk Android allows users to place video and audio calls through Nextcloud on Android. Prior to version 17.0.0...
CVE-2023-39955MEDIUM6.1Notes is a note-taking app for Nextcloud, an open-source cloud platform. Starting in version 4.4.0 and prior to version ...
CVE-2023-39954HIGH8.1user_oidc provides the OIDC connect user backend for Nextcloud, an open-source cloud platform. Starting in version 1.0.0...
CVE-2023-39776CRITICAL9.8A File Upload vulnerability in PHPJabbers Ticket Support Script v3.2 allows attackers to execute arbitrary code via uplo...
CVE-2023-38830HIGH7.5An information leak in PHPJabbers Yacht Listing Script v1.0 allows attackers to export clients' credit card numbers from...
CVE-2023-37543HIGH7.5Cacti before 1.2.6 allows IDOR (Insecure Direct Object Reference) for accessing any graph via a modified local_graph_id ...
CVE-2023-39953MEDIUM4.8user_oidc provides the OIDC connect user backend for Nextcloud, an open-source cloud platform. Starting in version 1.0.0...
CVE-2023-39952MEDIUM6.5Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 22.0.0 and prio...
CVE-2023-38397MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Eggemplo Gestion-Pymes plugin <= 1.5.6 versions.
CVE-2023-38248MEDIUM5.5Adobe Acrobat Reader versions 23.003.20244 (and earlier) and 20.005.30467 (and earlier) are affected by an out-of-bounds...
CVE-2023-38247MEDIUM5.5Adobe Acrobat Reader versions 23.003.20244 (and earlier) and 20.005.30467 (and earlier) are affected by an out-of-bounds...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now