2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-3597 | MEDIUM | 5 | 0.6% | Apr 25, 2024 | A flaw was found in Keycloak, where it does not correctly validate its client step-up authentication in org.keycloak.aut... |
| CVE-2023-52220 | MEDIUM | 4.3 | 0.4% | Apr 25, 2024 | Missing Authorization vulnerability in MonsterInsights Google Analytics by Monster Insights.This issue affects Google An... |
| CVE-2023-6237 | MEDIUM | 5.9 | 2.3% | Apr 25, 2024 | Issue summary: Checking excessively long invalid RSA public keys may take a long time. Impact summary: Applications tha... |
| CVE-2023-20249 | MEDIUM | 5.4 | 0.4% | Apr 24, 2024 | A vulnerability in the web-based management interface of Cisco TelePresence Management Suite (TMS) Software could allow ... |
| CVE-2023-20248 | MEDIUM | 5.4 | 0.4% | Apr 24, 2024 | A vulnerability in the web-based management interface of Cisco TelePresence Management Suite (TMS) Software could allow ... |
| CVE-2023-48763 | MEDIUM | 5.3 | 0.4% | Apr 24, 2024 | Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS vulnerability in Crocoblock JetFormBuilder ... |
| CVE-2023-47774 | MEDIUM | 5.4 | 0.3% | Apr 24, 2024 | Improper Restriction of Rendered UI Layers or Frames vulnerability in Automattic Jetpack allows Clickjacking.This issue ... |
| CVE-2023-32127 | MEDIUM | 5.3 | 0.4% | Apr 24, 2024 | Missing Authorization vulnerability in Daniel Powney Multi Rating allows Functionality Misuse.This issue affects Multi R... |
| CVE-2023-25790 | MEDIUM | 5.3 | 0.5% | Apr 24, 2024 | Improper Authentication, Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerabil... |
| CVE-2023-25785 | MEDIUM | 5.3 | 0.4% | Apr 24, 2024 | Missing Authorization vulnerability in Shoaib Saleem WP Post Rating allows Functionality Misuse.This issue affects WP Po... |
| CVE-2023-23989 | MEDIUM | 6.5 | 0.4% | Apr 24, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Metagauss Registra... |
| CVE-2023-23985 | MEDIUM | 5.3 | 0.4% | Apr 24, 2024 | Missing Authorization vulnerability in Quiz Maker team Quiz Maker.This issue affects Quiz Maker: from n/a through 6.3.9.... |
| CVE-2023-7253 | MEDIUM | 6.1 | 0.6% | Apr 24, 2024 | The Import WP WordPress plugin before 2.13.1 does not prevent users with the administrator role from pinging conducting... |
| CVE-2023-47731 | MEDIUM | 5.4 | 0.3% | Apr 23, 2024 | IBM QRadar Suite Software 1.10.12.0 through 1.10.19.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 is vulne... |
| CVE-2023-6833 | MEDIUM | 4.4 | 0.2% | Apr 23, 2024 | Insertion of Sensitive Information into Log File vulnerability in Hitachi Ops Center Administrator allows local users to... |
| CVE-2023-38302 | MEDIUM | 4.3 | 0.4% | Apr 22, 2024 | A certain software build for the Sharp Rouvo V device (SHARP/VZW_STTM21VAPP/STTM21VAPP:12/SP1A.210812.016/1KN0_0_530:use... |
| CVE-2023-38300 | MEDIUM | 6.2 | 0.2% | Apr 22, 2024 | A certain software build for the Orbic Maui device (Orbic/RC545L/RC545L:10/ORB545L_V1.4.2_BVZPP/230106:user/release-keys... |
| CVE-2023-38299 | MEDIUM | 5.5 | 0.2% | Apr 22, 2024 | Various software builds for the AT&T Calypso, Nokia C100, Nokia C200, and BLU View 3 devices leak the device IMEI to a s... |
| CVE-2023-38294 | MEDIUM | 6.1 | 0.2% | Apr 22, 2024 | Certain software builds for the Itel Vision 3 Turbo Android device contain a vulnerable pre-installed app with a package... |
| CVE-2023-7252 | MEDIUM | 5.3 | 0.5% | Apr 22, 2024 | The Tickera WordPress plugin before 3.5.2.5 does not prevent users from leaking other users' tickets. |
| CVE-2023-51797 | MEDIUM | 6.7 | 0.4% | Apr 19, 2024 | Buffer Overflow vulnerability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via the ... |
| CVE-2023-50007 | MEDIUM | 4 | 0.4% | Apr 19, 2024 | FFmpeg v.n6.1-3-g466799d4f5 allows an attacker to trigger use of a parameter of negative size in the av_samples_set_sile... |
| CVE-2023-37397 | MEDIUM | 4.4 | 0.1% | Apr 19, 2024 | IBM Aspera Faspex 5.0.0 through 5.0.7 could allow a local user to obtain or modify sensitive information due to improper... |
| CVE-2023-27279 | MEDIUM | 6.5 | 0.7% | Apr 19, 2024 | IBM Aspera Faspex 5.0.0 through 5.0.7 could allow a user to cause a denial of service due to missing API rate limiting. ... |
| CVE-2023-37396 | MEDIUM | 5.5 | 0.1% | Apr 19, 2024 | IBM Aspera Faspex 5.0.0 through 5.0.7 could allow a local user to obtain sensitive information due to improper encryptio... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now