2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-20207 | MEDIUM | 6.5 | 0.4% | Jul 12, 2023 | A vulnerability in the logging component of Cisco Duo Authentication Proxy could allow an authenticated, remote attacker... |
| CVE-2023-20185 | HIGH | 7.4 | 0.3% | Jul 12, 2023 | A vulnerability in the Cisco ACI Multi-Site CloudSec encryption feature of Cisco Nexus 9000 Series Fabric Switches in AC... |
| CVE-2023-3596 | HIGH | 7.5 | 2.1% | Jul 12, 2023 | Where this vulnerability exists in the Rockwell Automation 1756-EN4* Ethernet/IP communication products, it could allow... |
| CVE-2023-3595 | CRITICAL | 9.8 | 3.6% | Jul 12, 2023 | Where this vulnerability exists in the Rockwell Automation 1756 EN2* and 1756 EN3* ControlLogix communication products,... |
| CVE-2023-38069 | LOW | 3.3 | 0.2% | Jul 12, 2023 | In JetBrains IntelliJ IDEA before 2023.1.4 license dialog could be suppressed in certain cases |
| CVE-2023-38068 | HIGH | 7.3 | 0.5% | Jul 12, 2023 | In JetBrains YouTrack before 2023.1.16597 captcha was not properly validated for Helpdesk forms |
| CVE-2023-38067 | MEDIUM | 6.5 | 0.4% | Jul 12, 2023 | In JetBrains TeamCity before 2023.05.1 build parameters of the "password" type could be written to the agent log |
| CVE-2023-38066 | MEDIUM | 6.1 | 0.9% | Jul 12, 2023 | In JetBrains TeamCity before 2023.05.1 reflected XSS via the Referer header was possible during artifact downloads |
| CVE-2023-38065 | MEDIUM | 5.4 | 0.9% | Jul 12, 2023 | In JetBrains TeamCity before 2023.05.1 stored XSS while viewing the build log was possible |
| CVE-2023-38064 | MEDIUM | 6.5 | 0.4% | Jul 12, 2023 | In JetBrains TeamCity before 2023.05.1 build chain parameters of the "password" type could be written to the agent log |
| CVE-2023-38063 | MEDIUM | 5.4 | 0.9% | Jul 12, 2023 | In JetBrains TeamCity before 2023.05.1 stored XSS while running custom builds was possible |
| CVE-2023-38062 | MEDIUM | 6.5 | 1.2% | Jul 12, 2023 | In JetBrains TeamCity before 2023.05.1 parameters of the "password" type could be shown in the UI in certain composite b... |
| CVE-2023-38061 | MEDIUM | 5.4 | 0.9% | Jul 12, 2023 | In JetBrains TeamCity before 2023.05.1 stored XSS when using a custom theme was possible |
| CVE-2023-33668 | CRITICAL | 9.8 | 0.4% | Jul 12, 2023 | DigiExam up to v14.0.2 lacks integrity checks for native modules, allowing attackers to access PII and takeover accounts... |
| CVE-2023-37582 | CRITICAL | 9.8 | 90.0% | Jul 12, 2023 | The RocketMQ NameServer component still has a remote command execution vulnerability as the CVE-2023-33246 issue was not... |
| CVE-2023-37579 | MEDIUM | 6.5 | 0.6% | Jul 12, 2023 | Incorrect Authorization vulnerability in Apache Software Foundation Apache Pulsar Function Worker. This issue affects A... |
| CVE-2023-36543 | MEDIUM | 6.5 | 1.2% | Jul 12, 2023 | Apache Airflow, versions before 2.6.3, has a vulnerability where an authenticated user can use crafted input to make the... |
| CVE-2023-35908 | MEDIUM | 6.5 | 0.8% | Jul 12, 2023 | Apache Airflow, versions before 2.6.3, is affected by a vulnerability that allows unauthorized read access to a DAG thro... |
| CVE-2023-31007 | MEDIUM | 6.5 | 0.7% | Jul 12, 2023 | Improper Authentication vulnerability in Apache Software Foundation Apache Pulsar Broker allows a client to stay connect... |
| CVE-2023-30429 | HIGH | 8.8 | 0.7% | Jul 12, 2023 | Incorrect Authorization vulnerability in Apache Software Foundation Apache Pulsar. This issue affects Apache Pulsar: be... |
| CVE-2023-30428 | HIGH | 8.1 | 0.6% | Jul 12, 2023 | Incorrect Authorization vulnerability in Apache Software Foundation Apache Pulsar Broker's Rest Producer allows authenti... |
| CVE-2023-22888 | MEDIUM | 6.5 | 1.0% | Jul 12, 2023 | Apache Airflow, versions before 2.6.3, is affected by a vulnerability that allows an attacker to cause a service disrupt... |
| CVE-2023-22887 | MEDIUM | 6.5 | 1.9% | Jul 12, 2023 | Apache Airflow, versions before 2.6.3, is affected by a vulnerability that allows an attacker to perform unauthorized fi... |
| CVE-2023-3106 | HIGH | 7.8 | 0.3% | Jul 12, 2023 | A NULL pointer dereference vulnerability was found in netlink_dump. This issue can occur when the Netlink socket receive... |
| CVE-2023-33905 | MEDIUM | 4.4 | 0.1% | Jul 12, 2023 | In iwnpi server, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now