2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-34106 | MEDIUM | 6.5 | 0.5% | Jul 5, 2023 | GLPI is a free asset and IT management software package. Versions of the software starting with 0.68 and prior to 10.0.8... |
| CVE-2023-33335 | MEDIUM | 6.1 | 0.5% | Jul 5, 2023 | Cross Site Scripting (XSS) in Sophos Sophos iView (The EOL was December 31st 2020) in grpname parameter that allows arbi... |
| CVE-2023-30607 | HIGH | 8.8 | 0.2% | Jul 5, 2023 | icingaweb2-module-jira provides integration with Atlassian Jira. Starting in version 1.3.0 and prior to version 1.3.2, t... |
| CVE-2023-25399 | MEDIUM | 5.5 | 0.4% | Jul 5, 2023 | A refcounting issue which leads to potential memory leak was discovered in scipy commit 8627df31ab in Py_FindObjects() f... |
| CVE-2023-36934 | CRITICAL | 9.1 | 94.8% | Jul 5, 2023 | In Progress MOVEit Transfer before 2020.1.11 (12.1.11), 2021.0.9 (13.0.9), 2021.1.7 (13.1.7), 2022.0.7 (14.0.7), 2022.1.... |
| CVE-2023-36933 | HIGH | 7.5 | 72.2% | Jul 5, 2023 | In Progress MOVEit Transfer before 2021.0.9 (13.0.9), 2021.1.7 (13.1.7), 2022.0.7 (14.0.7), 2022.1.8 (14.1.8), and 2023.... |
| CVE-2023-36932 | HIGH | 8.1 | 81.5% | Jul 5, 2023 | In Progress MOVEit Transfer before 2020.1.11 (12.1.11), 2021.0.9 (13.0.9), 2021.1.7 (13.1.7), 2022.0.7 (14.0.7), 2022.1.... |
| CVE-2023-31194 | HIGH | 7.8 | 0.4% | Jul 5, 2023 | An improper array index validation vulnerability exists in the GraphPlanar::Write functionality of Diagon v1.0.139. A sp... |
| CVE-2023-27390 | HIGH | 7.8 | 0.5% | Jul 5, 2023 | A heap-based buffer overflow vulnerability exists in the Sequence::DrawText functionality of Diagon v1.0.139. A speciall... |
| CVE-2023-3515 | MEDIUM | 4.4 | 0.4% | Jul 5, 2023 | Open Redirect in GitHub repository go-gitea/gitea prior to 1.19.4. |
| CVE-2023-35979 | HIGH | 7.5 | 0.5% | Jul 5, 2023 | There is an unauthenticated buffer overflow vulnerability in the process controlling the ArubaOS web-based management in... |
| CVE-2023-35978 | MEDIUM | 6.1 | 0.4% | Jul 5, 2023 | A vulnerability in ArubaOS could allow an unauthenticated remote attacker to conduct a reflected cross-site scripting (X... |
| CVE-2023-35977 | MEDIUM | 6.5 | 0.5% | Jul 5, 2023 | Vulnerabilities exist which allow an authenticated attacker to access sensitive information on the ArubaOS command line ... |
| CVE-2023-35976 | MEDIUM | 6.5 | 0.5% | Jul 5, 2023 | Vulnerabilities exist which allow an authenticated attacker to access sensitive information on the ArubaOS command line ... |
| CVE-2023-35975 | HIGH | 8.1 | 0.6% | Jul 5, 2023 | An authenticated path traversal vulnerability exists in the ArubaOS command line interface. Successful exploitation of t... |
| CVE-2023-35974 | HIGH | 7.2 | 1.2% | Jul 5, 2023 | Authenticated command injection vulnerabilities exist in the ArubaOS command line interface. Successful exploitation of ... |
| CVE-2023-35973 | HIGH | 7.2 | 1.2% | Jul 5, 2023 | Authenticated command injection vulnerabilities exist in the ArubaOS command line interface. Successful exploitation of ... |
| CVE-2023-35972 | HIGH | 7.2 | 1.2% | Jul 5, 2023 | An authenticated remote command injection vulnerability exists in the ArubaOS web-based management interface. Successful... |
| CVE-2023-35971 | MEDIUM | 6.1 | 0.5% | Jul 5, 2023 | A vulnerability in the ArubaOS web-based management interface could allow an unauthenticated remote attacker to conduct ... |
| CVE-2023-36665 | CRITICAL | 9.8 | 1.4% | Jul 5, 2023 | "protobuf.js (aka protobufjs) 6.10.0 through 7.x before 7.2.5 allows Prototype Pollution, a different vulnerability than... |
| CVE-2023-3455 | CRITICAL | 9.1 | 0.4% | Jul 5, 2023 | Key management vulnerability on system. Successful exploitation of this vulnerability may affect service availability an... |
| CVE-2023-3089 | HIGH | 7.5 | 0.4% | Jul 5, 2023 | A compliance problem was found in the Red Hat OpenShift Container Platform. Red Hat discovered that, when FIPS mode was ... |
| CVE-2023-2538 | MEDIUM | 4.2 | 0.2% | Jul 5, 2023 | A CWE-552 "Files or Directories Accessible to External Parties” in the web interface of the Tyan S5552 BMC version 3.00 ... |
| CVE-2023-3482 | MEDIUM | 6.5 | 0.5% | Jul 5, 2023 | When Firefox is configured to block storage of all cookies, it was still possible to store data in localstorage by using... |
| CVE-2023-3336 | MEDIUM | 5.3 | 0.5% | Jul 5, 2023 | TN-5900 Series version 3.3 and prior versions is vulnearble to user enumeration vulnerability. The vulnerability may all... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now