2023 CVE Vulnerabilities
31,440 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-29849 | HIGH | 8.8 | 3.2% | Apr 24, 2023 | Bang Resto 1.0 was discovered to contain multiple SQL injection vulnerabilities via the btnMenuItemID, itemID, itemPrice... |
| CVE-2023-29848 | MEDIUM | 4.8 | 1.9% | Apr 24, 2023 | Bang Resto 1.0 was discovered to contain a stored cross-site scripting (XSS) vulnerability via the itemName parameter in... |
| CVE-2023-29480 | HIGH | 7.5 | 0.4% | Apr 24, 2023 | Ribose RNP before 0.16.3 sometimes lets secret keys remain unlocked after use. |
| CVE-2023-29479 | MEDIUM | 5.3 | 0.9% | Apr 24, 2023 | Ribose RNP before 0.16.3 may hang when the input is malformed. |
| CVE-2023-24820 | HIGH | 7.5 | 0.9% | Apr 24, 2023 | RIOT-OS, an operating system that supports Internet of Things devices, contains a network stack with the ability to proc... |
| CVE-2023-24819 | CRITICAL | 9.8 | 1.0% | Apr 24, 2023 | RIOT-OS, an operating system that supports Internet of Things devices, contains a network stack with the ability to proc... |
| CVE-2023-24818 | HIGH | 7.5 | 1.2% | Apr 24, 2023 | RIOT-OS, an operating system that supports Internet of Things devices, contains a network stack with the ability to proc... |
| CVE-2023-30369 | CRITICAL | 9.8 | 0.8% | Apr 24, 2023 | Tenda AC15 V15.03.05.19 is vulnerable to Buffer Overflow. |
| CVE-2023-30368 | CRITICAL | 9.8 | 0.8% | Apr 24, 2023 | Tenda AC5 V15.03.06.28 is vulnerable to Buffer Overflow via the initWebs function. |
| CVE-2023-29570 | MEDIUM | 5.5 | 0.3% | Apr 24, 2023 | Cesanta MJS v2.20.0 was discovered to contain a SEGV vulnerability via mjs_ffi_cb_free at src/mjs_ffi.c. This vulnerabil... |
| CVE-2023-23892 | MEDIUM | 5.4 | 0.4% | Apr 24, 2023 | Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Jamie Poitra M Chart plugin <= 1.9.4 versions. |
| CVE-2023-1731 | HIGH | 7.2 | 1.0% | Apr 24, 2023 | In Meinbergs LTOS versions prior to V7.06.013, the configuration file upload function would not correctly validate the i... |
| CVE-2023-29583 | MEDIUM | 5.5 | 0.3% | Apr 24, 2023 | yasm 1.3.0.55.g101bc was discovered to contain a stack overflow via the function parse_expr5 at /nasm/nasm-parse.c. Note... |
| CVE-2023-29582 | MEDIUM | 5.5 | 0.3% | Apr 24, 2023 | yasm 1.3.0.55.g101bc was discovered to contain a stack overflow via the function parse_expr1 at /nasm/nasm-parse.c. Note... |
| CVE-2023-29579 | MEDIUM | 5.5 | 0.3% | Apr 24, 2023 | yasm 1.3.0.55.g101bc was discovered to contain a stack overflow via the component yasm/yasm+0x43b466 in vsprintf. Note: ... |
| CVE-2023-29578 | HIGH | 8.8 | 0.8% | Apr 24, 2023 | mp4v2 v2.0.0 was discovered to contain a heap buffer overflow via the mp4v2::impl::MP4StringProperty::~MP4StringProperty... |
| CVE-2023-25133 | CRITICAL | 9.8 | 1.0% | Apr 24, 2023 | Improper privilege management vulnerability in default.cmd file in PowerPanel Business Local/Remote for Windows v4.8.6 a... |
| CVE-2023-25132 | CRITICAL | 9.8 | 1.1% | Apr 24, 2023 | Unrestricted upload of file with dangerous type vulnerability in default.cmd file in PowerPanel Business Local/Remote fo... |
| CVE-2023-25131 | CRITICAL | 9.8 | 1.0% | Apr 24, 2023 | Use of default password vulnerability in PowerPanel Business Local/Remote for Windows v4.8.6 and earlier, PowerPanel Bus... |
| CVE-2023-22581 | CRITICAL | 9.8 | 0.7% | Apr 24, 2023 | White Rabbit Switch contains a vulnerability which makes it possible for an attacker to perform system commands under th... |
| CVE-2023-22577 | HIGH | 7.5 | 0.7% | Apr 24, 2023 | Within White Rabbit Switch it's possible as an unauthenticated user to retrieve sensitive information such as password h... |
| CVE-2023-31045 | MEDIUM | 4.8 | 0.5% | Apr 24, 2023 | A stored Cross-site scripting (XSS) issue in Text Editors and Formats in Backdrop CMS before 1.24.2 allows remote attack... |
| CVE-2023-30533 | HIGH | 7.8 | 1.0% | Apr 24, 2023 | SheetJS Community Edition before 0.19.3 allows Prototype Pollution via a crafted file. In other words. 0.19.2 and earlie... |
| CVE-2023-30458 | MEDIUM | 5.3 | 0.8% | Apr 24, 2023 | A username enumeration issue was discovered in Medicine Tracker System 1.0. The login functionality allows a malicious u... |
| CVE-2023-31085 | MEDIUM | 5.5 | 0.4% | Apr 24, 2023 | An issue was discovered in drivers/mtd/ubi/cdev.c in the Linux kernel 6.2. There is a divide-by-zero error in do_div(sz,... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now