2023 CVE Vulnerabilities

31,411 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-2875MEDIUM5.5A vulnerability, which was classified as problematic, was found in eScan Antivirus 22.0.1400.2443. Affected is the funct...
CVE-2023-2874MEDIUM5.5A vulnerability, which was classified as problematic, has been found in Twister Antivirus 8. This issue affects the func...
CVE-2023-2868CRITICAL9.8A remote command injection vulnerability exists in the Barracuda Email Security Gateway (appliance form factor only) pro...
CVE-2023-33983HIGH7.4The Introduction Client in Briar through 1.5.3 does not implement out-of-band verification for the public keys of introd...
CVE-2023-33982MEDIUM5.9Bramble Handshake Protocol (BHP) in Briar before 1.5.3 is not forward secure: eavesdroppers can decrypt network traffic ...
CVE-2023-33981MEDIUM6.5Briar before 1.4.22 allows attackers to spoof other users' messages in a blog, forum, or private group, but each spoofed...
CVE-2023-33980HIGH7.5Bramble Synchronisation Protocol (BSP) in Briar before 1.4.22 allows attackers to cause a denial of service (repeated ap...
CVE-2023-2873HIGH7.8A vulnerability classified as critical was found in Twister Antivirus 8. This vulnerability affects the function 0x804f2...
CVE-2023-2872MEDIUM5.5A vulnerability classified as problematic has been found in FlexiHub 5.5.14691.0. This affects the function 0x220088 in ...
CVE-2023-2871MEDIUM5.5A vulnerability was found in FabulaTech USB for Remote Desktop 6.1.0.0. It has been rated as problematic. Affected by th...
CVE-2023-2870MEDIUM5.5A vulnerability was found in EnTech Monitor Asset Manager 2.9. It has been declared as problematic. Affected by this vul...
CVE-2023-33950HIGH7.5Pattern Redirects in Liferay Portal 7.4.3.48 through 7.4.3.76, and Liferay DXP 7.4 update 48 through 76 allows regular e...
CVE-2023-33949HIGH7.5In Liferay Portal 7.3.0 and earlier, and Liferay DXP 7.2 and earlier the default configuration does not require users to...
CVE-2023-25028MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in chuyencode CC Custom Taxonomy plugin <= 1.0.1 versions...
CVE-2023-1944HIGH7.8This vulnerability enables ssh access to minikube container using a default password.
CVE-2023-1174CRITICAL9.8This vulnerability exposes a network port in minikube running on macOS with Docker driver that could enable unexpected r...
CVE-2023-33948HIGH7.5The Dynamic Data Mapping module in Liferay Portal 7.4.3.67, and Liferay DXP 7.4 update 67 does not limit Document and Me...
CVE-2023-33947MEDIUM4.3The Object module in Liferay Portal 7.4.3.4 through 7.4.3.60, and Liferay DXP 7.4 before update 61 does not segment obje...
CVE-2023-33946MEDIUM4.3The Object module in Liferay Portal 7.4.3.4 through 7.4.3.48, and Liferay DXP 7.4 before update 49 does properly isolate...
CVE-2023-33945HIGH8.1SQL injection vulnerability in the upgrade process for SQL Server in Liferay Portal 7.3.1 through 7.4.3.17, and Liferay ...
CVE-2023-33944MEDIUM6.1Cross-site scripting (XSS) vulnerability in Layout module in Liferay Portal 7.3.4 through 7.4.3.68, and Liferay DXP 7.3 ...
CVE-2023-33943MEDIUM5.4Cross-site scripting (XSS) vulnerability in the Account module in Liferay Portal 7.4.3.21 through 7.4.3.62, and Liferay ...
CVE-2023-33942MEDIUM5.4Cross-site scripting (XSS) vulnerability in the Web Content Display widget's article selector in Liferay Liferay Portal ...
CVE-2023-33941MEDIUM6.1Multiple cross-site scripting (XSS) vulnerabilities in the Plugin for OAuth 2.0 module's OAuth2ProviderApplicationRedire...
CVE-2023-33246CRITICAL9.8For RocketMQ versions 5.1.0 and below, under certain conditions, there is a risk of remote command execution.  Several ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now