2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-3597MEDIUM5A flaw was found in Keycloak, where it does not correctly validate its client step-up authentication in org.keycloak.aut...
CVE-2023-52220MEDIUM4.3Missing Authorization vulnerability in MonsterInsights Google Analytics by Monster Insights.This issue affects Google An...
CVE-2023-6237MEDIUM5.9Issue summary: Checking excessively long invalid RSA public keys may take a long time. Impact summary: Applications tha...
CVE-2023-20249MEDIUM5.4A vulnerability in the web-based management interface of Cisco TelePresence Management Suite (TMS) Software could allow ...
CVE-2023-20248MEDIUM5.4A vulnerability in the web-based management interface of Cisco TelePresence Management Suite (TMS) Software could allow ...
CVE-2023-48763MEDIUM5.3Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS vulnerability in Crocoblock JetFormBuilder ...
CVE-2023-47774MEDIUM5.4Improper Restriction of Rendered UI Layers or Frames vulnerability in Automattic Jetpack allows Clickjacking.This issue ...
CVE-2023-32127MEDIUM5.3Missing Authorization vulnerability in Daniel Powney Multi Rating allows Functionality Misuse.This issue affects Multi R...
CVE-2023-25790MEDIUM5.3Improper Authentication, Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerabil...
CVE-2023-25785MEDIUM5.3Missing Authorization vulnerability in Shoaib Saleem WP Post Rating allows Functionality Misuse.This issue affects WP Po...
CVE-2023-23989MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Metagauss Registra...
CVE-2023-23985MEDIUM5.3Missing Authorization vulnerability in Quiz Maker team Quiz Maker.This issue affects Quiz Maker: from n/a through 6.3.9....
CVE-2023-7253MEDIUM6.1The Import WP WordPress plugin before 2.13.1 does not prevent users with the administrator role from pinging conducting...
CVE-2023-47731MEDIUM5.4IBM QRadar Suite Software 1.10.12.0 through 1.10.19.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 is vulne...
CVE-2023-6833MEDIUM4.4Insertion of Sensitive Information into Log File vulnerability in Hitachi Ops Center Administrator allows local users to...
CVE-2023-38302MEDIUM4.3A certain software build for the Sharp Rouvo V device (SHARP/VZW_STTM21VAPP/STTM21VAPP:12/SP1A.210812.016/1KN0_0_530:use...
CVE-2023-38300MEDIUM6.2A certain software build for the Orbic Maui device (Orbic/RC545L/RC545L:10/ORB545L_V1.4.2_BVZPP/230106:user/release-keys...
CVE-2023-38299MEDIUM5.5Various software builds for the AT&T Calypso, Nokia C100, Nokia C200, and BLU View 3 devices leak the device IMEI to a s...
CVE-2023-38294MEDIUM6.1Certain software builds for the Itel Vision 3 Turbo Android device contain a vulnerable pre-installed app with a package...
CVE-2023-7252MEDIUM5.3The Tickera WordPress plugin before 3.5.2.5 does not prevent users from leaking other users' tickets.
CVE-2023-51797MEDIUM6.7Buffer Overflow vulnerability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via the ...
CVE-2023-50007MEDIUM4FFmpeg v.n6.1-3-g466799d4f5 allows an attacker to trigger use of a parameter of negative size in the av_samples_set_sile...
CVE-2023-37397MEDIUM4.4IBM Aspera Faspex 5.0.0 through 5.0.7 could allow a local user to obtain or modify sensitive information due to improper...
CVE-2023-27279MEDIUM6.5IBM Aspera Faspex 5.0.0 through 5.0.7 could allow a user to cause a denial of service due to missing API rate limiting. ...
CVE-2023-37396MEDIUM5.5IBM Aspera Faspex 5.0.0 through 5.0.7 could allow a local user to obtain sensitive information due to improper encryptio...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now