2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-42823MEDIUM5.5The issue was resolved by sanitizing logging This issue is fixed in watchOS 10.1, macOS Sonoma 14.1, tvOS 17.1, macOS Mo...
CVE-2023-42498MEDIUM6.1Reflected cross-site scripting (XSS) vulnerability in the Language Override edit screen in Liferay Portal 7.4.3.8 throug...
CVE-2023-42496MEDIUM6.1Reflected cross-site scripting (XSS) vulnerability on the add assignees to a role page in Liferay Portal 7.3.3 through 7...
CVE-2023-40191MEDIUM6.1Reflected cross-site scripting (XSS) vulnerability in the instance settings for Accounts in Liferay Portal 7.4.3.44 thro...
CVE-2023-50923MEDIUM4.3In QUIC in RFC 9000, the Latency Spin Bit specification (section 17.4) does not strictly constrain the bit value when th...
CVE-2023-49034MEDIUM6.1Cross Site Scripting (XSS) vulnerability in ProjeQtOr 11.0.2 allows a remote attacker to execute arbitrary code via a cr...
CVE-2023-46967MEDIUM6.1Cross Site Scripting vulnerability in the sanitize function in Enhancesoft osTicket 1.18.0 allows a remote attacker to e...
CVE-2023-52435MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net: prevent mss overflow in skb_segment() Once ag...
CVE-2023-51447MEDIUM5.4Decidim is a participatory democracy framework. Starting in version 0.27.0 and prior to versions 0.27.5 and 0.28.0, the ...
CVE-2023-47635MEDIUM5.7Decidim is a participatory democracy framework. Starting in version 0.23.0 and prior to versions 0.27.5 and 0.28.0, the ...
CVE-2023-39541MEDIUM5.9A denial of service vulnerability exists in the ICMP and ICMPv6 parsing functionality of Weston Embedded uC-TCP-IP v3.06...
CVE-2023-39540MEDIUM5.9A denial of service vulnerability exists in the ICMP and ICMPv6 parsing functionality of Weston Embedded uC-TCP-IP v3.06...
CVE-2023-50270MEDIUM6.5Session Fixation Apache DolphinScheduler before version 3.2.0, which session is still valid after the password change. ...
CVE-2023-44308MEDIUM6.1Open redirect vulnerability in adaptive media administration page in Liferay DXP 2023.Q3 before patch 6, and 7.4 GA thro...
CVE-2023-5190MEDIUM6.1Open redirect vulnerability in the Countries Management’s edit region page in Liferay Portal 7.4.3.45 through 7.4.3.101,...
CVE-2023-6399MEDIUM6.5A format string vulnerability in Zyxel ATP series firmware versions from 4.32 through 5.37 Patch 1, USG FLEX series firm...
CVE-2023-6397MEDIUM5.3 A null pointer dereference vulnerability in Zyxel ATP series firmware versions from 4.32 through 5.37 Patch ...
CVE-2023-6259MEDIUM4.6Insufficiently Protected Credentials, : Improper Access Control vulnerability in Brivo ACS100, ACS300 allows Password Re...
CVE-2023-52380MEDIUM4.3Vulnerability of improper access control in the email module.Successful exploitation of this vulnerability may affect se...
CVE-2023-52368MEDIUM5.3Input verification vulnerability in the account module.Successful exploitation of this vulnerability may cause features ...
CVE-2023-52365MEDIUM5.3Out-of-bounds read vulnerability in the smart activity recognition module.Successful exploitation of this vulnerability ...
CVE-2023-52363MEDIUM5.3Vulnerability of defects introduced in the design process in the Control Panel module.Successful exploitation of this vu...
CVE-2023-52358MEDIUM6.2Vulnerability of configuration defects in some APIs of the audio module.Successful exploitation of this vulnerability ma...
CVE-2023-50951MEDIUM4.3IBM QRadar Suite 1.10.12.0 through 1.10.17.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 in some circumsta...
CVE-2023-21833MEDIUM4.3Vulnerability in the Oracle ZFS Storage Appliance Kit product of Oracle Systems (component: Object Store). The support...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now