2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-6821MEDIUM6.5The Error Log Viewer by BestWebSoft WordPress plugin before 1.1.3 is affected by a Directory Listing issue, allowing use...
CVE-2023-7250MEDIUM5.3A flaw was found in iperf, a utility for testing network performance using TCP, UDP, and SCTP. A malicious or malfunctio...
CVE-2023-52619MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: pstore/ram: Fix crash when setting number of cpus t...
CVE-2023-52618MEDIUM5.3In the Linux kernel, the following vulnerability has been resolved: block/rnbd-srv: Check for unlikely string overflow ...
CVE-2023-52617MEDIUM4.4In the Linux kernel, the following vulnerability has been resolved: PCI: switchtec: Fix stdev_release() crash after sur...
CVE-2023-52616MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: crypto: lib/mpi - Fix unexpected pointer access in ...
CVE-2023-52615MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: hwrng: core - Fix page fault dead lock on mmap-ed h...
CVE-2023-52613MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drivers/thermal/loongson2_thermal: Fix incorrect PT...
CVE-2023-52611MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: wifi: rtw88: sdio: Honor the host max_req_size in t...
CVE-2023-52610MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net/sched: act_ct: fix skb leak and crash on ooo fr...
CVE-2023-52609MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: binder: fix race between mmput() and do_exit() Tas...
CVE-2023-39933MEDIUM4.3Insufficient verification vulnerability exists in Broadcast Mail CGI (pmc.exe) included in A.K.I Software's PMailServer/...
CVE-2023-39223MEDIUM5.4Stored cross-site scripting vulnerability exists in CGIs included in A.K.I Software's PMailServer/PMailServer2 products....
CVE-2023-36483MEDIUM6.5Authorization bypass can be achieved by session ID prediction in MASmobile Classic Android  version 1.16.18 and earlier ...
CVE-2023-6525MEDIUM4.8The ElementsKit Elementor addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the progress bar ...
CVE-2023-51521MEDIUM5.4Cross-Site Request Forgery (CSRF) vulnerability in ExpressTech Quiz And Survey Master.This issue affects Quiz And Survey...
CVE-2023-51699MEDIUM6Fluid is an open source Kubernetes-native Distributed Dataset Orchestrator and Accelerator for data-intensive applicatio...
CVE-2023-7004MEDIUM6.5The TTLock App does not employ proper verification procedures to ensure that it is communicating with the expected devic...
CVE-2023-7003MEDIUM6.8The AES key utilized in the pairing process between a lock using Sciener firmware and a wireless keypad is not unique, a...
CVE-2023-47699MEDIUM6.1IBM Sterling Secure Proxy 6.0.3 and 6.1.0 is vulnerable to cross-site scripting. This vulnerability allows users to embe...
CVE-2023-47147MEDIUM5.3IBM Sterling Secure Proxy 6.0.3 and 6.1.0 could allow an attacker to overwrite a log message under specific conditions. ...
CVE-2023-47162MEDIUM6.1IBM Sterling Secure Proxy 6.0.3 and 6.1.0 is vulnerable to cross-site scripting. This vulnerability allows users to embe...
CVE-2023-46182MEDIUM5.4IBM Sterling Secure Proxy 6.0.3 and 6.1.0 is vulnerable to cross-site scripting. This vulnerability allows users to embe...
CVE-2023-46179MEDIUM4.3IBM Sterling Secure Proxy 6.0.3 and 6.1.0 does not set the secure attribute on authorization tokens or session cookies. ...
CVE-2023-51525MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in Veribo, Roland Murg WP Simple Booking Calendar.This issue affects WP ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now