2023 CVE Vulnerabilities

31,411 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-35392MEDIUM4.7Microsoft Edge (Chromium-based) Spoofing Vulnerability
CVE-2023-26301CRITICAL9.8Certain HP LaserJet Pro print products are potentially vulnerable to an Elevation of Privilege and/or Information Disclo...
CVE-2023-3102MEDIUM5.3A sensitive information leak issue has been discovered in GitLab EE affecting all versions starting from 16.0 before 16....
CVE-2023-37742MEDIUM6.1WebBoss.io CMS before v3.7.0.1 was discovered to contain a reflected cross-site scripting (XSS) vulnerability.
CVE-2023-3822MEDIUM6.1Cross-site Scripting (XSS) - Reflected in GitHub repository pimcore/pimcore prior to 10.6.4.
CVE-2023-3821MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/pimcore prior to 10.6.4.
CVE-2023-3820HIGH7.2 SQL Injection in GitHub repository pimcore/pimcore prior to 10.6.4.
CVE-2023-3819MEDIUM6.5Exposure of Sensitive Information to an Unauthorized Actor in GitHub repository pimcore/pimcore prior to 10.6.4.
CVE-2023-38646CRITICAL9.8Metabase open source before 0.46.6.1 and Metabase Enterprise before 1.46.6.1 allow attackers to execute arbitrary comman...
CVE-2023-3484MEDIUM6.5An issue has been discovered in GitLab EE affecting all versions starting from 12.8 before 15.11.11, all versions starti...
CVE-2023-35087CRITICAL9.8 It is identified a format string vulnerability in ASUS RT-AX56U V2 & RT-AC86U. This vulnerability is caused by lacking ...
CVE-2023-35086HIGH7.2 It is identified a format string vulnerability in ASUS RT-AX56U V2 & RT-AC86U. This vulnerability is caused by directly...
CVE-2023-28730HIGH7.8A memory corruption vulnerability Panasonic Control FPWIN Pro versions 7.6.0.3 and all previous versions may allow arbit...
CVE-2023-28729HIGH7.8A type confusion vulnerability in Panasonic Control FPWIN Pro versions 7.6.0.3 and all previous versions may allow arbit...
CVE-2023-28728HIGH7.8A stack-based buffer overflow in Panasonic Control FPWIN Pro versions 7.6.0.3 and all previous versions may allow arbitr...
CVE-2023-32478MEDIUM4.9 Dell PowerStore versions prior to 3.5.0.1 contain an insertion of sensitive information into log file vulnerability. A ...
CVE-2023-3815MEDIUM6.1A vulnerability, which was classified as problematic, has been found in y_project RuoYi up to 4.7.7. Affected by this is...
CVE-2023-3811CRITICAL9.8A vulnerability was found in Hospital Management System 1.0. It has been rated as critical. This issue affects some unkn...
CVE-2023-37292CRITICAL9.8Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in HGiga iSherl...
CVE-2023-3810CRITICAL9.8A vulnerability was found in Hospital Management System 1.0. It has been declared as critical. This vulnerability affect...
CVE-2023-3809CRITICAL9.8A vulnerability was found in Hospital Management System 1.0. It has been classified as critical. This affects an unknown...
CVE-2023-37291CRITICAL9.8Galaxy Software Services Vitals ESP is vulnerable to using a hard-coded encryption key. An unauthenticated remote attack...
CVE-2023-25837HIGH8.4There is a Cross‑Site Scripting (XSS) vulnerability in Esri ArcGIS Enterprise Sites versions 10.9 and below that may all...
CVE-2023-25836MEDIUM5.4There is a Cross-site Scripting vulnerability in Esri Portal for ArcGIS Sites in versions 10.9 and below that may allow ...
CVE-2023-3813HIGH7.5The Jupiter X Core plugin for WordPress is vulnerable to arbitrary file downloads in versions up to, and including, 4.6....

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now