2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-33989 | HIGH | 8.1 | 0.8% | Jul 11, 2023 | An attacker with non-administrative authorizations in SAP NetWeaver (BI CONT ADD ON) - versions 707, 737, 747, 757, can ... |
| CVE-2023-33988 | MEDIUM | 6.1 | 0.3% | Jul 11, 2023 | In SAP Enable Now - versions WPB_MANAGER 1.0, WPB_MANAGER_CE 10, WPB_MANAGER_HANA 10, ENABLE_NOW_CONSUMP_DEL 1704, the C... |
| CVE-2023-33987 | CRITICAL | 9.4 | 0.6% | Jul 11, 2023 | An unauthenticated attacker in SAP Web Dispatcher - versions WEBDISP 7.49, WEBDISP 7.53, WEBDISP 7.54, WEBDISP 7.77, WEB... |
| CVE-2023-31405 | MEDIUM | 5.3 | 0.4% | Jul 11, 2023 | SAP NetWeaver AS for Java - versions ENGINEAPI 7.50, SERVERCORE 7.50, J2EE-APPS 7.50, allows an unauthenticated attacker... |
| CVE-2023-2079 | HIGH | 7.1 | 0.3% | Jul 11, 2023 | The "Buy Me a Coffee – Button and Widget Plugin" plugin for WordPress is vulnerable to Cross-Site Request Forgery due to... |
| CVE-2023-2078 | MEDIUM | 4.3 | 0.4% | Jul 11, 2023 | The "Buy Me a Coffee – Button and Widget Plugin" plugin for WordPress is vulnerable to unauthorized modification of data... |
| CVE-2023-37190 | MEDIUM | 4.8 | 0.4% | Jul 11, 2023 | A stored cross-site scripting (XSS) vulnerability in Issabel issabel-pbx v.4.0.0-6 allows attackers to execute arbitrary... |
| CVE-2023-37189 | MEDIUM | 4.8 | 0.7% | Jul 11, 2023 | A stored cross site scripting (XSS) vulnerability in index.php?menu=billing_rates of Issabel PBX version 4 allows attack... |
| CVE-2023-37191 | MEDIUM | 4.8 | 0.6% | Jul 11, 2023 | A stored cross-site scripting (XSS) vulnerability in Issabel issabel-pbx v.4.0.0-6 allows attackers to execute arbitrary... |
| CVE-2023-3608 | HIGH | 8.8 | 10.9% | Jul 10, 2023 | A vulnerability was found in Ruijie BCR810W 2.5.10. It has been rated as critical. This issue affects some unknown proce... |
| CVE-2023-30963 | MEDIUM | 5.4 | 0.3% | Jul 10, 2023 | A security defect was discovered in Foundry Frontend which enabled users to perform Stored XSS attacks in Slate if Found... |
| CVE-2023-30960 | MEDIUM | 4.3 | 0.3% | Jul 10, 2023 | A security defect was discovered in Foundry job-tracker that enabled users to query metadata related to builds on resour... |
| CVE-2023-30956 | MEDIUM | 5.3 | 0.4% | Jul 10, 2023 | A security defect was identified in Foundry Comments that enabled a user to discover the contents of an attachment submi... |
| CVE-2023-24490 | MEDIUM | 4.3 | 0.3% | Jul 10, 2023 | Users with only access to launch VDA applications can launch an unauthorized desktop |
| CVE-2023-24489 | CRITICAL | 9.8 | 95.1% | Jul 10, 2023 | A vulnerability has been discovered in the customer-managed ShareFile storage zones controller which, if exploited, coul... |
| CVE-2023-3607 | HIGH | 8 | 5.9% | Jul 10, 2023 | A vulnerability was found in kodbox 1.26. It has been declared as critical. This vulnerability affects the function Exec... |
| CVE-2023-3606 | HIGH | 8.8 | 5.9% | Jul 10, 2023 | A vulnerability was found in TamronOS up to 20230703. It has been classified as critical. This affects an unknown part o... |
| CVE-2023-34432 | HIGH | 7.8 | 0.4% | Jul 10, 2023 | A heap buffer overflow vulnerability was found in sox, in the lsx_readbuf function at sox/src/formats_i.c:98:16. This fl... |
| CVE-2023-24488 | MEDIUM | 6.1 | 80.9% | Jul 10, 2023 | Cross site scripting vulnerability in Citrix ADC and Citrix Gateway in allows and attacker to perform cross site script... |
| CVE-2023-24487 | HIGH | 7.5 | 1.1% | Jul 10, 2023 | Arbitrary file read in Citrix ADC and Citrix Gateway |
| CVE-2023-24486 | MEDIUM | 5.5 | 0.2% | Jul 10, 2023 | A vulnerability has been identified in Citrix Workspace app for Linux that, if exploited, may result in a malicious loca... |
| CVE-2023-22835 | HIGH | 7.7 | 0.6% | Jul 10, 2023 | A security defect was identified that enabled a user of Foundry Issues to perform a Denial of Service attack by submitti... |
| CVE-2023-3605 | CRITICAL | 9.1 | 0.6% | Jul 10, 2023 | A vulnerability was found in PHPGurukul Online Shopping Portal 1.0. It has been declared as critical. Affected by this v... |
| CVE-2023-34316 | HIGH | 7.5 | 0.6% | Jul 10, 2023 | An attacker could bypass the latest Delta Electronics InfraSuite Device Master (versions prior to 1.0.7) patch, which c... |
| CVE-2023-30765 | CRITICAL | 9.8 | 2.1% | Jul 10, 2023 | Delta Electronics InfraSuite Device Master versions prior to 1.0.7 contain improper access controls that could allow an... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now