2023 CVE Vulnerabilities
31,440 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-30112 | HIGH | 7.5 | 0.6% | Apr 26, 2023 | Medicine Tracker System in PHP 1.0.0 is vulnerable to SQL Injection. |
| CVE-2023-22728 | MEDIUM | 4.3 | 0.5% | Apr 26, 2023 | Silverstripe Framework is the Model-View-Controller framework that powers the Silverstripe content management system. Pr... |
| CVE-2023-1387 | HIGH | 7.5 | 1.5% | Apr 26, 2023 | Grafana is an open-source platform for monitoring and observability. Starting with the 9.1 branch, Grafana introduced ... |
| CVE-2023-29257 | HIGH | 7.2 | 1.5% | Apr 26, 2023 | IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to remote code exec... |
| CVE-2023-24796 | CRITICAL | 9.8 | 1.6% | Apr 26, 2023 | Password vulnerability found in Vinga WR-AC1200 81.102.1.4370 and before allows a remote attacker to execute arbitrary c... |
| CVE-2023-26286 | HIGH | 7.8 | 0.3% | Apr 26, 2023 | IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the AIX runtim... |
| CVE-2023-2273 | HIGH | 7.5 | 0.7% | Apr 26, 2023 | Rapid7 Insight Agent token handler versions 3.2.6 and below, suffer from a Directory Traversal vulnerability whereby uns... |
| CVE-2023-2294 | MEDIUM | 6.1 | 0.5% | Apr 26, 2023 | A vulnerability was found in UCMS 1.6.0. It has been classified as problematic. This affects an unknown part of the file... |
| CVE-2023-30404 | CRITICAL | 9.8 | 2.4% | Apr 26, 2023 | Aigital Wireless-N Repeater Mini_Router v0.131229 was discovered to contain a remote code execution (RCE) vulnerability ... |
| CVE-2023-30111 | MEDIUM | 6.1 | 0.4% | Apr 26, 2023 | Medicine Tracker System in PHP 1.0.0 is vulnerable to Cross Site Scripting (XSS). |
| CVE-2023-30106 | MEDIUM | 6.1 | 0.5% | Apr 26, 2023 | Sourcecodester Medicine Tracker System in PHP 1.0.0 is vulnerable to Cross Site Scripting (XSS) via page=about. |
| CVE-2023-27843 | CRITICAL | 9.8 | 1.2% | Apr 26, 2023 | SQL injection vulnerability found in PrestaShop askforaquote v.5.4.2 and before allow a remote attacker to gain privileg... |
| CVE-2023-26735 | HIGH | 7.5 | 0.9% | Apr 26, 2023 | blackbox_exporter v0.23.0 was discovered to contain an access control issue in its probe interface. This vulnerability a... |
| CVE-2023-26560 | MEDIUM | 6.5 | 0.5% | Apr 26, 2023 | Northern.tech CFEngine Enterprise before 3.21.1 allows a subset of authenticated users to leverage the Scheduled Reports... |
| CVE-2023-31223 | MEDIUM | 5.4 | 0.5% | Apr 25, 2023 | Dradis before 4.8.0 allows persistent XSS by authenticated author users, related to avatars. |
| CVE-2023-0045 | HIGH | 7.5 | 2.4% | Apr 25, 2023 | The current implementation of the prctl syscall does not issue an IBPB immediately during the syscall. The ib_prctl_set ... |
| CVE-2023-30842 | — | — | — | Apr 25, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2023-25313. Reason: This candidate is a reservation d... |
| CVE-2023-20870 | MEDIUM | 6 | 0.4% | Apr 25, 2023 | VMware Workstation and Fusion contain an out-of-bounds read vulnerability that exists in the functionality for sharing h... |
| CVE-2023-20869 | HIGH | 8.2 | 2.0% | Apr 25, 2023 | VMware Workstation (17.x) and VMware Fusion (13.x) contain a stack-based buffer-overflow vulnerability that exists in th... |
| CVE-2023-30609 | MEDIUM | 4.7 | 0.6% | Apr 25, 2023 | matrix-react-sdk is a react-based SDK for inserting a Matrix chat/VoIP client into a web page. Prior to version 3.71.0, ... |
| CVE-2023-30549 | HIGH | 7.8 | 0.4% | Apr 25, 2023 | Apptainer is an open source container platform for Linux. There is an ext4 use-after-free flaw that is exploitable throu... |
| CVE-2023-2293 | MEDIUM | 4.8 | 0.6% | Apr 25, 2023 | A vulnerability was found in SourceCodester Purchase Order Management System 1.0. It has been classified as problematic.... |
| CVE-2023-2269 | MEDIUM | 4.4 | 0.2% | Apr 25, 2023 | A denial of service problem was found, due to a possible recursive locking scenario, resulting in a deadlock in table_cl... |
| CVE-2023-29012 | HIGH | 7.8 | 0.4% | Apr 25, 2023 | Git for Windows is the Windows port of Git. Prior to version 2.40.1, any user of Git CMD who starts the command in an un... |
| CVE-2023-29011 | HIGH | 7.8 | 0.4% | Apr 25, 2023 | Git for Windows, the Windows port of Git, ships with an executable called `connect.exe`, which implements a SOCKS5 proxy... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now