2023 CVE Vulnerabilities

31,411 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-30840HIGH7.8Fluid is an open source Kubernetes-native distributed dataset orchestrator and accelerator for data-intensive applicatio...
CVE-2023-30837HIGH7.5Vyper is a pythonic smart contract language for the EVM. The storage allocator does not guard against allocation overflo...
CVE-2023-2583CRITICAL10Code Injection in GitHub repository jsreport/jsreport prior to 3.11.3.
CVE-2023-1979MEDIUM6.5The Web Stories for WordPress plugin supports the WordPress built-in functionality of protecting content with a password...
CVE-2023-30551HIGH7.5Rekor is an open source software supply chain transparency log. Rekor prior to version 1.1.1 may crash due to out of mem...
CVE-2023-30092CRITICAL9.8SourceCodester Online Pizza Ordering System v1.0 is vulnerable to SQL Injection via the QTY parameter.
CVE-2023-30019MEDIUM5.3imgproxy <=3.14.0 is vulnerable to Server-Side Request Forgery (SSRF) due to a lack of sanitization of the imageURL para...
CVE-2023-29696CRITICAL9.8H3C GR-1200W MiniGRW1A0V100R006 was discovered to contain a stack overflow via the function version_set.
CVE-2023-29693CRITICAL9.8H3C GR-1200W MiniGRW1A0V100R006 was discovered to contain a stack overflow via the function set_tftp_upgrad.
CVE-2023-28493MEDIUM5.4Auth (subscriber+) Reflected Cross-Site Scripting (XSS) vulnerability in Macho Themes NewsMag theme <= 2.4.4 versions.
CVE-2023-24408MEDIUM5.4Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Ecwid Ecommerce Ecwid Ecommerce Shopping Cart pl...
CVE-2023-22791MEDIUM4.8A vulnerability exists in Aruba InstantOS and ArubaOS 10 where an edge-case combination of network configuration, a spec...
CVE-2023-22790HIGH8.8Multiple authenticated command injection vulnerabilities exist in the Aruba InstantOS and ArubaOS 10 command line interf...
CVE-2023-22789HIGH8.8Multiple authenticated command injection vulnerabilities exist in the Aruba InstantOS and ArubaOS 10 command line interf...
CVE-2023-22788HIGH8.8Multiple authenticated command injection vulnerabilities exist in the Aruba InstantOS and ArubaOS 10 command line interf...
CVE-2023-22787HIGH7.5An unauthenticated Denial of Service (DoS) vulnerability exists in a service accessed via the PAPI protocol provided by ...
CVE-2023-22786CRITICAL9.8There are buffer overflow vulnerabilities in multiple underlying services that could lead to unauthenticated remote code...
CVE-2023-22785CRITICAL9.8There are buffer overflow vulnerabilities in multiple underlying services that could lead to unauthenticated remote code...
CVE-2023-22784CRITICAL9.8There are buffer overflow vulnerabilities in multiple underlying services that could lead to unauthenticated remote code...
CVE-2023-22783CRITICAL9.8There are buffer overflow vulnerabilities in multiple underlying services that could lead to unauthenticated remote code...
CVE-2023-22782CRITICAL9.8There are buffer overflow vulnerabilities in multiple underlying services that could lead to unauthenticated remote code...
CVE-2023-22781CRITICAL9.8There are buffer overflow vulnerabilities in multiple underlying services that could lead to unauthenticated remote code...
CVE-2023-22780CRITICAL9.8There are buffer overflow vulnerabilities in multiple underlying services that could lead to unauthenticated remote code...
CVE-2023-22779CRITICAL9.8There are buffer overflow vulnerabilities in multiple underlying services that could lead to unauthenticated remote code...
CVE-2023-2114HIGH7.2The NEX-Forms WordPress plugin before 8.4 does not properly escape the `table` parameter, which is populated with user i...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now