2023 CVE Vulnerabilities
31,404 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-39963 | HIGH | 7.8 | 0.2% | Aug 10, 2023 | Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 20.0.0 and prio... |
| CVE-2023-39962 | HIGH | 7.7 | 0.8% | Aug 10, 2023 | Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 19.0.0 and prio... |
| CVE-2023-39961 | MEDIUM | 4.3 | 0.5% | Aug 10, 2023 | Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 24.0.4 and prio... |
| CVE-2023-39959 | MEDIUM | 5.3 | 0.5% | Aug 10, 2023 | Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 25.0.0 and prio... |
| CVE-2023-39958 | MEDIUM | 5.3 | 0.6% | Aug 10, 2023 | Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 22.0.0 and prio... |
| CVE-2023-4128 | — | — | — | Aug 10, 2023 | Rejected reason: ** REJECT ** DO NOT USE THIS CVE RECORD. ConsultIDs: CVE-2023-4206, CVE-2023-4207, CVE-2023-4208. Reas... |
| CVE-2023-36315 | MEDIUM | 6.1 | 0.4% | Aug 10, 2023 | There is a Cross Site Scripting (XSS) vulnerability in the "action" parameter of index.php in PHPJabbers Callback Widget... |
| CVE-2023-36314 | MEDIUM | 6.1 | 0.4% | Aug 10, 2023 | There is a Cross Site Scripting (XSS) vulnerability in the value-text-o_sms_email_request_message parameters of index.ph... |
| CVE-2023-36313 | MEDIUM | 6.1 | 0.4% | Aug 10, 2023 | PHPJabbers Document Creator v1.0 is vulnerable to Cross Site Scripting (XSS) via all post parameters of "Export Requests... |
| CVE-2023-36312 | MEDIUM | 5.4 | 0.4% | Aug 10, 2023 | There is a Cross Site Scripting (XSS) vulnerability in the value-enum-o_bf_include_timezone parameter of index.php in PH... |
| CVE-2023-36311 | CRITICAL | 9.8 | 0.7% | Aug 10, 2023 | There is a SQL injection (SQLi) vulnerability in the "column" parameter of index.php in PHPJabbers Document Creator v1.0... |
| CVE-2023-36310 | MEDIUM | 6.1 | 0.4% | Aug 10, 2023 | There is a Cross Site Scripting (XSS) vulnerability in the "column" parameter of index.php in PHPJabbers Document Creato... |
| CVE-2023-36309 | MEDIUM | 6.1 | 0.4% | Aug 10, 2023 | There is a Cross Site Scripting (XSS) vulnerability in the "action" parameter of index.php in PHPJabbers Document Creato... |
| CVE-2023-40216 | MEDIUM | 5.5 | 0.1% | Aug 10, 2023 | OpenBSD 7.3 before errata 014 is missing an argument-count bounds check in console terminal emulation. This could cause ... |
| CVE-2023-39957 | HIGH | 7.8 | 0.3% | Aug 10, 2023 | Nextcloud Talk Android allows users to place video and audio calls through Nextcloud on Android. Prior to version 17.0.0... |
| CVE-2023-39955 | MEDIUM | 6.1 | 0.5% | Aug 10, 2023 | Notes is a note-taking app for Nextcloud, an open-source cloud platform. Starting in version 4.4.0 and prior to version ... |
| CVE-2023-39954 | HIGH | 8.1 | 0.4% | Aug 10, 2023 | user_oidc provides the OIDC connect user backend for Nextcloud, an open-source cloud platform. Starting in version 1.0.0... |
| CVE-2023-39776 | CRITICAL | 9.8 | 0.9% | Aug 10, 2023 | A File Upload vulnerability in PHPJabbers Ticket Support Script v3.2 allows attackers to execute arbitrary code via uplo... |
| CVE-2023-38830 | HIGH | 7.5 | 0.6% | Aug 10, 2023 | An information leak in PHPJabbers Yacht Listing Script v1.0 allows attackers to export clients' credit card numbers from... |
| CVE-2023-37543 | HIGH | 7.5 | 0.7% | Aug 10, 2023 | Cacti before 1.2.6 allows IDOR (Insecure Direct Object Reference) for accessing any graph via a modified local_graph_id ... |
| CVE-2023-39953 | MEDIUM | 4.8 | 0.4% | Aug 10, 2023 | user_oidc provides the OIDC connect user backend for Nextcloud, an open-source cloud platform. Starting in version 1.0.0... |
| CVE-2023-39952 | MEDIUM | 6.5 | 0.8% | Aug 10, 2023 | Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 22.0.0 and prio... |
| CVE-2023-38397 | MEDIUM | 4.8 | 0.3% | Aug 10, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Eggemplo Gestion-Pymes plugin <= 1.5.6 versions. |
| CVE-2023-38248 | MEDIUM | 5.5 | 2.1% | Aug 10, 2023 | Adobe Acrobat Reader versions 23.003.20244 (and earlier) and 20.005.30467 (and earlier) are affected by an out-of-bounds... |
| CVE-2023-38247 | MEDIUM | 5.5 | 2.1% | Aug 10, 2023 | Adobe Acrobat Reader versions 23.003.20244 (and earlier) and 20.005.30467 (and earlier) are affected by an out-of-bounds... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now