2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-26442 | LOW | 3.2 | 0.3% | Aug 2, 2023 | In case Cacheservice was configured to use a sproxyd object-storage backend, it would follow HTTP redirects issued by th... |
| CVE-2023-26441 | MEDIUM | 5.5 | 0.4% | Aug 2, 2023 | Cacheservice did not correctly check if relative cache object were pointing to the defined absolute location when access... |
| CVE-2023-26440 | HIGH | 7.8 | 0.4% | Aug 2, 2023 | The cacheservice API could be abused to indirectly inject parameters with SQL syntax which was insufficiently sanitized ... |
| CVE-2023-26439 | HIGH | 7.8 | 0.4% | Aug 2, 2023 | The cacheservice API could be abused to inject parameters with SQL syntax which was insufficiently sanitized before gett... |
| CVE-2023-26438 | LOW | 3.1 | 0.5% | Aug 2, 2023 | External service lookups for a number of protocols were vulnerable to a time-of-check/time-of-use (TOCTOU) weakness, inv... |
| CVE-2023-26430 | MEDIUM | 4.3 | 0.6% | Aug 2, 2023 | Attackers with access to user accounts can inject arbitrary control characters to SIEVE mail-filter rules. This could be... |
| CVE-2023-3426 | MEDIUM | 4.3 | 0.4% | Aug 2, 2023 | The organization selector in Liferay Portal 7.4.3.81 through 7.4.3.85, and Liferay DXP 7.4 update 81 through 85 does not... |
| CVE-2023-4067 | MEDIUM | 6.1 | 0.4% | Aug 2, 2023 | The Bus Ticket Booking with Seat Reservation plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via th... |
| CVE-2023-3401 | MEDIUM | 6.5 | 0.5% | Aug 2, 2023 | An issue has been discovered in GitLab affecting all versions before 16.0.8, all versions starting from 16.1 before 16.1... |
| CVE-2023-2022 | MEDIUM | 4.3 | 0.4% | Aug 2, 2023 | An issue has been discovered in GitLab CE/EE affecting all versions starting before 16.0.8, all versions starting from 1... |
| CVE-2023-38556 | HIGH | 7.5 | 0.6% | Aug 2, 2023 | Improper input validation vulnerability in SEIKO EPSON printer Web Config allows a remote attacker to turned off the pri... |
| CVE-2023-4011 | HIGH | 7.5 | 0.7% | Aug 2, 2023 | An issue has been discovered in GitLab EE affecting all versions from 15.11 prior to 16.2.2 which allows an attacker to ... |
| CVE-2023-4016 | LOW | 3.3 | 0.2% | Aug 2, 2023 | Under some circumstances, this weakness allows a user who has access to run the “ps” utility on a machine, the ability t... |
| CVE-2023-3994 | HIGH | 7.5 | 0.8% | Aug 2, 2023 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 9.3 before 16.0.8, all versions starti... |
| CVE-2023-3993 | HIGH | 7.5 | 0.6% | Aug 2, 2023 | An issue has been discovered in GitLab EE affecting all versions starting from 14.3 before 16.0.8, all versions starting... |
| CVE-2023-3900 | HIGH | 7.5 | 0.8% | Aug 2, 2023 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.1 before 16.1.3, all versions start... |
| CVE-2023-3500 | MEDIUM | 6.1 | 0.5% | Aug 2, 2023 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 10.0 before 16.0.8, all versions start... |
| CVE-2023-31927 | MEDIUM | 5.3 | 0.5% | Aug 2, 2023 | An information disclosure in the web interface of Brocade Fabric OS versions before Brocade Fabric OS v9.2.0 and v9.1.1c... |
| CVE-2023-31926 | HIGH | 7.1 | 0.1% | Aug 2, 2023 | System files could be overwritten using the less command in Brocade Fabric OS before Brocade Fabric OS v9.1.1c and v9.2.... |
| CVE-2023-3385 | MEDIUM | 6.5 | 0.7% | Aug 2, 2023 | An issue has been discovered in GitLab affecting all versions starting from 8.10 before 16.0.8, all versions starting fr... |
| CVE-2023-3364 | HIGH | 7.5 | 44.7% | Aug 2, 2023 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 8.14 before 16.0.8, all versions start... |
| CVE-2023-38990 | MEDIUM | 4.3 | 0.5% | Aug 2, 2023 | An issue in the delete function in the MenuController class of jeesite v1.2.6 allows authenticated attackers to arbitrar... |
| CVE-2023-36121 | MEDIUM | 5.4 | 1.1% | Aug 2, 2023 | Cross Site Scripting vulnerability in e107 v.2.3.2 allows a remote attacker to execute arbitrary code via the descriptio... |
| CVE-2023-31928 | MEDIUM | 6.1 | 0.4% | Aug 2, 2023 | A reflected cross-site scripting (XSS) vulnerability exists in Brocade Webtools PortSetting.html of Brocade Fabric OS v... |
| CVE-2023-31432 | HIGH | 7.8 | 0.2% | Aug 2, 2023 | Through manipulation of passwords or other variables, using commands such as portcfgupload, configupload, license, myid,... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now