2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-49900 | CRITICAL | 9.8 | — | Jul 16, 2026 | An unauthenticated remote attacker is able to perform remote code execution due to incorrectly sanitized user input in t... |
| CVE-2023-49899 | CRITICAL | 9.8 | 0.2% | Jul 16, 2026 | An unauthenticated remote attacker can execute any command on the affected device due to not correctly verifying the ori... |
| CVE-2023-54352 | CRITICAL | 9.8 | 0.6% | Jun 8, 2026 | WordPress Seotheme contains a remote code execution vulnerability that allows unauthenticated attackers to execute arbit... |
| CVE-2023-24215 | CRITICAL | 9.1 | 0.2% | May 18, 2026 | Incorrect access control in the /uci/get/ endpoint of NOVUS AirGate 4G firmware v1.1.16 allows unauthenticated attackers... |
| CVE-2023-46453 | CRITICAL | 9.8 | 0.8% | May 8, 2026 | Certain GL.iNet devices with 4.x firmware allow authentication bypass (resulting in administrative control of the device... |
| CVE-2023-54344 | CRITICAL | 9.8 | 0.5% | May 5, 2026 | Eclipse Equinox OSGi 3.7.2 and earlier contains a remote code execution vulnerability that allows unauthenticated attack... |
| CVE-2023-54342 | CRITICAL | 9.8 | 0.5% | May 5, 2026 | Eclipse Equinox OSGi versions 3.8 through 3.18 contain a remote code execution vulnerability in the console interface th... |
| CVE-2023-46945 | CRITICAL | 9.1 | 0.2% | Apr 8, 2026 | QD 20230821 is vulnerable to Server-side request forgery (SSRF) via a crafted request |
| CVE-2023-27573 | CRITICAL | 9.8 | 0.4% | Mar 11, 2026 | netbox-docker before 2.5.0 has a superuser account with default credentials (admin password for the admin account, and 0... |
| CVE-2023-7334 | CRITICAL | 9.8 | 1.0% | Jan 15, 2026 | Changjetong T+ versions up to and including 16.x contain a .NET deserialization vulnerability in an AjaxPro endpoint tha... |
| CVE-2023-54339 | CRITICAL | 9.8 | 1.5% | Jan 13, 2026 | Webgrind 1.1 contains a remote command execution vulnerability that allows unauthenticated attackers to inject OS comman... |
| CVE-2023-54337 | CRITICAL | 9.1 | 0.5% | Jan 13, 2026 | Sysax Multi Server 6.95 contains a denial of service vulnerability in the administrative password field that allows atta... |
| CVE-2023-54335 | CRITICAL | 9.8 | 5.0% | Jan 13, 2026 | eXtplorer 2.1.14 contains an authentication bypass vulnerability that allows attackers to login without a password by ma... |
| CVE-2023-54334 | CRITICAL | 9.8 | 0.5% | Jan 13, 2026 | Explorer32++ 1.3.5.531 contains a buffer overflow vulnerability in Structured Exception Handler (SEH) records that allow... |
| CVE-2023-54330 | CRITICAL | 9.8 | 0.7% | Jan 13, 2026 | Inbit Messenger versions 4.6.0 to 4.9.0 contain a remote stack-based buffer overflow vulnerability that allows unauthent... |
| CVE-2023-54329 | CRITICAL | 9.8 | 1.0% | Jan 13, 2026 | Inbit Messenger 4.6.0 - 4.9.0 contains a remote command execution vulnerability that allows unauthenticated attackers to... |
| CVE-2023-50897 | CRITICAL | 9.1 | 0.3% | Jan 5, 2026 | Unrestricted Upload of File with Dangerous Type vulnerability in Meow Apps Media File Renamer allows Using Malicious Fil... |
| CVE-2023-54327 | CRITICAL | 9.8 | 0.6% | Dec 30, 2025 | Tinycontrol LAN Controller 1.58a contains an authentication bypass vulnerability that allows unauthenticated attackers t... |
| CVE-2023-53983 | CRITICAL | 9.8 | 0.6% | Dec 30, 2025 | Anevia Flamingo XL/XS 3.6.20 contains a critical vulnerability with weak default administrative credentials that can be ... |
| CVE-2023-54292 | CRITICAL | 9.8 | 0.2% | Dec 30, 2025 | In the Linux kernel, the following vulnerability has been resolved: RDMA/irdma: Fix data race on CQP request done KCSA... |
| CVE-2023-54280 | CRITICAL | 9.8 | 0.2% | Dec 30, 2025 | In the Linux kernel, the following vulnerability has been resolved: cifs: fix potential race when tree connecting ipc ... |
| CVE-2023-54269 | CRITICAL | 9.8 | 0.2% | Dec 30, 2025 | In the Linux kernel, the following vulnerability has been resolved: SUNRPC: double free xprt_ctxt while still in use W... |
| CVE-2023-54258 | CRITICAL | 9.8 | 0.2% | Dec 30, 2025 | In the Linux kernel, the following vulnerability has been resolved: cifs: fix potential oops in cifs_oplock_break With... |
| CVE-2023-54257 | CRITICAL | 9.8 | 0.2% | Dec 30, 2025 | In the Linux kernel, the following vulnerability has been resolved: net: macb: fix a memory corruption in extended buff... |
| CVE-2023-54237 | CRITICAL | 9.8 | 0.2% | Dec 30, 2025 | In the Linux kernel, the following vulnerability has been resolved: net/smc: fix potential panic dues to unprotected sm... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now