2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-32573 | MEDIUM | 6.5 | 0.9% | May 10, 2023 | In Qt before 5.15.14, 6.0.x through 6.2.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.1, QtSvg QSvgFont m_unitsPerE... |
| CVE-2023-30777 | MEDIUM | 6.1 | 38.8% | May 10, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in WP Engine Advanced Custom Fields Pro, WP Engine Advanced C... |
| CVE-2023-2619 | CRITICAL | 9.8 | 0.7% | May 10, 2023 | A vulnerability, which was classified as critical, was found in SourceCodester Online Tours & Travels Management System ... |
| CVE-2023-2618 | HIGH | 7.5 | 1.3% | May 10, 2023 | A vulnerability, which was classified as problematic, has been found in OpenCV wechat_qrcode Module up to 4.7.0. Affecte... |
| CVE-2023-2617 | HIGH | 7.5 | 1.4% | May 10, 2023 | A vulnerability classified as problematic was found in OpenCV wechat_qrcode Module up to 4.7.0. Affected by this vulnera... |
| CVE-2023-2615 | MEDIUM | 5.4 | 0.5% | May 10, 2023 | Cross-site Scripting (XSS) - Reflected in GitHub repository pimcore/pimcore prior to 10.5.21. |
| CVE-2023-2614 | MEDIUM | 5.4 | 0.5% | May 10, 2023 | Cross-site Scripting (XSS) - DOM in GitHub repository pimcore/pimcore prior to 10.5.21. |
| CVE-2023-27919 | MEDIUM | 5.3 | 0.7% | May 10, 2023 | Authentication bypass vulnerability in NEXT ENGINE Integration Plugin (for EC-CUBE 2.0 series) all versions allows a rem... |
| CVE-2023-27918 | MEDIUM | 6.1 | 0.5% | May 10, 2023 | Cross-site scripting vulnerability in Appointment and Event Booking Calendar for WordPress - Amelia versions prior to 1.... |
| CVE-2023-27889 | HIGH | 8.8 | 0.5% | May 10, 2023 | Cross-site request forgery (CSRF) vulnerability in LIQUID SPEECH BALLOON versions prior to 1.2 allows a remote unauthent... |
| CVE-2023-27888 | MEDIUM | 5.4 | 0.4% | May 10, 2023 | Cross-site scripting vulnerability in Joruri Gw Ver 3.2.5 and earlier allows a remote authenticated attacker to inject a... |
| CVE-2023-27527 | HIGH | 7.5 | 0.3% | May 10, 2023 | Shinseiyo Sogo Soft (7.9A) and earlier improperly restricts XML external entity references (XXE). By processing a specia... |
| CVE-2023-27510 | HIGH | 7.5 | 0.7% | May 10, 2023 | JB Inquiry form contains an exposure of private personal information to an unauthorized actor vulnerability, which may a... |
| CVE-2023-27385 | HIGH | 7.8 | 0.2% | May 10, 2023 | Heap-based buffer overflow vulnerability exists in CX-Drive All models all versions. By having a user open a specially c... |
| CVE-2023-25184 | HIGH | 7.5 | 1.0% | May 10, 2023 | Use of weak credentials exists in Seiko Solutions SkyBridge and SkySpider series, which may allow a remote unauthenticat... |
| CVE-2023-25072 | HIGH | 7.5 | 0.8% | May 10, 2023 | Use of weak credentials exists in SkyBridge MB-A100/110 firmware Ver. 4.2.0 and earlier, which may allow a remote unauth... |
| CVE-2023-25070 | MEDIUM | 6.5 | 0.5% | May 10, 2023 | Cleartext transmission of sensitive information exists in SkyBridge MB-A100/110 firmware Ver. 4.2.0 and earlier. If the ... |
| CVE-2023-24586 | MEDIUM | 6.5 | 0.5% | May 10, 2023 | Cleartext storage of sensitive information exists in SkyBridge MB-A100/110 firmware Ver. 4.2.0 and earlier, which may al... |
| CVE-2023-23906 | HIGH | 7.5 | 1.3% | May 10, 2023 | Missing authentication for critical function exists in SkyBridge MB-A100/110 firmware Ver. 4.2.0 and earlier, which may ... |
| CVE-2023-23901 | MEDIUM | 6.5 | 0.5% | May 10, 2023 | Improper following of a certificate's chain of trust exists in SkyBridge MB-A200 firmware Ver. 01.00.05 and earlier, and... |
| CVE-2023-23578 | HIGH | 7.5 | 2.0% | May 10, 2023 | Improper access control vulnerability in SkyBridge MB-A200 firmware Ver. 01.00.05 and earlier allows a remote unauthenti... |
| CVE-2023-22441 | HIGH | 8.6 | 1.0% | May 10, 2023 | Missing authentication for critical function exists in Seiko Solutions SkyBridge series, which may allow a remote attack... |
| CVE-2023-22361 | MEDIUM | 6.5 | 35.9% | May 10, 2023 | Improper privilege management vulnerability in SkyBridge MB-A100/110 firmware Ver. 4.2.0 and earlier allows a remote aut... |
| CVE-2023-32570 | MEDIUM | 5.9 | 0.7% | May 10, 2023 | VideoLAN dav1d before 1.2.0 has a thread_task.c race condition that can lead to an application crash, related to dav1d_d... |
| CVE-2023-32569 | CRITICAL | 9.8 | 0.6% | May 10, 2023 | An issue was discovered in Veritas InfoScale Operations Manager (VIOM) before 7.4.2.800 and 8.x before 8.0.410. The Info... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now