2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-42823 | MEDIUM | 5.5 | 0.4% | Feb 21, 2024 | The issue was resolved by sanitizing logging This issue is fixed in watchOS 10.1, macOS Sonoma 14.1, tvOS 17.1, macOS Mo... |
| CVE-2023-42498 | MEDIUM | 6.1 | 0.6% | Feb 21, 2024 | Reflected cross-site scripting (XSS) vulnerability in the Language Override edit screen in Liferay Portal 7.4.3.8 throug... |
| CVE-2023-42496 | MEDIUM | 6.1 | 0.6% | Feb 21, 2024 | Reflected cross-site scripting (XSS) vulnerability on the add assignees to a role page in Liferay Portal 7.3.3 through 7... |
| CVE-2023-40191 | MEDIUM | 6.1 | 0.6% | Feb 21, 2024 | Reflected cross-site scripting (XSS) vulnerability in the instance settings for Accounts in Liferay Portal 7.4.3.44 thro... |
| CVE-2023-50923 | MEDIUM | 4.3 | 0.3% | Feb 21, 2024 | In QUIC in RFC 9000, the Latency Spin Bit specification (section 17.4) does not strictly constrain the bit value when th... |
| CVE-2023-49034 | MEDIUM | 6.1 | 0.5% | Feb 20, 2024 | Cross Site Scripting (XSS) vulnerability in ProjeQtOr 11.0.2 allows a remote attacker to execute arbitrary code via a cr... |
| CVE-2023-46967 | MEDIUM | 6.1 | 0.4% | Feb 20, 2024 | Cross Site Scripting vulnerability in the sanitize function in Enhancesoft osTicket 1.18.0 allows a remote attacker to e... |
| CVE-2023-52435 | MEDIUM | 5.5 | 0.2% | Feb 20, 2024 | In the Linux kernel, the following vulnerability has been resolved: net: prevent mss overflow in skb_segment() Once ag... |
| CVE-2023-51447 | MEDIUM | 5.4 | 0.5% | Feb 20, 2024 | Decidim is a participatory democracy framework. Starting in version 0.27.0 and prior to versions 0.27.5 and 0.28.0, the ... |
| CVE-2023-47635 | MEDIUM | 5.7 | 0.3% | Feb 20, 2024 | Decidim is a participatory democracy framework. Starting in version 0.23.0 and prior to versions 0.27.5 and 0.28.0, the ... |
| CVE-2023-39541 | MEDIUM | 5.9 | 0.8% | Feb 20, 2024 | A denial of service vulnerability exists in the ICMP and ICMPv6 parsing functionality of Weston Embedded uC-TCP-IP v3.06... |
| CVE-2023-39540 | MEDIUM | 5.9 | 0.8% | Feb 20, 2024 | A denial of service vulnerability exists in the ICMP and ICMPv6 parsing functionality of Weston Embedded uC-TCP-IP v3.06... |
| CVE-2023-50270 | MEDIUM | 6.5 | 1.3% | Feb 20, 2024 | Session Fixation Apache DolphinScheduler before version 3.2.0, which session is still valid after the password change. ... |
| CVE-2023-44308 | MEDIUM | 6.1 | 0.4% | Feb 20, 2024 | Open redirect vulnerability in adaptive media administration page in Liferay DXP 2023.Q3 before patch 6, and 7.4 GA thro... |
| CVE-2023-5190 | MEDIUM | 6.1 | 0.4% | Feb 20, 2024 | Open redirect vulnerability in the Countries Management’s edit region page in Liferay Portal 7.4.3.45 through 7.4.3.101,... |
| CVE-2023-6399 | MEDIUM | 6.5 | 0.6% | Feb 20, 2024 | A format string vulnerability in Zyxel ATP series firmware versions from 4.32 through 5.37 Patch 1, USG FLEX series firm... |
| CVE-2023-6397 | MEDIUM | 5.3 | 0.3% | Feb 20, 2024 | A null pointer dereference vulnerability in Zyxel ATP series firmware versions from 4.32 through 5.37 Patch ... |
| CVE-2023-6259 | MEDIUM | 4.6 | 0.2% | Feb 19, 2024 | Insufficiently Protected Credentials, : Improper Access Control vulnerability in Brivo ACS100, ACS300 allows Password Re... |
| CVE-2023-52380 | MEDIUM | 4.3 | 0.3% | Feb 18, 2024 | Vulnerability of improper access control in the email module.Successful exploitation of this vulnerability may affect se... |
| CVE-2023-52368 | MEDIUM | 5.3 | 0.3% | Feb 18, 2024 | Input verification vulnerability in the account module.Successful exploitation of this vulnerability may cause features ... |
| CVE-2023-52365 | MEDIUM | 5.3 | 0.3% | Feb 18, 2024 | Out-of-bounds read vulnerability in the smart activity recognition module.Successful exploitation of this vulnerability ... |
| CVE-2023-52363 | MEDIUM | 5.3 | 0.2% | Feb 18, 2024 | Vulnerability of defects introduced in the design process in the Control Panel module.Successful exploitation of this vu... |
| CVE-2023-52358 | MEDIUM | 6.2 | 0.1% | Feb 18, 2024 | Vulnerability of configuration defects in some APIs of the audio module.Successful exploitation of this vulnerability ma... |
| CVE-2023-50951 | MEDIUM | 4.3 | 0.4% | Feb 17, 2024 | IBM QRadar Suite 1.10.12.0 through 1.10.17.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 in some circumsta... |
| CVE-2023-21833 | MEDIUM | 4.3 | 0.4% | Feb 17, 2024 | Vulnerability in the Oracle ZFS Storage Appliance Kit product of Oracle Systems (component: Object Store). The support... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now