2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2023-39021CRITICAL9.8wix-embedded-mysql v4.6.1 and below was discovered to contain a code injection vulnerability in the component com.wix.my...
CVE-2023-39020CRITICAL9.8stanford-parser v3.9.2 and below was discovered to contain a code injection vulnerability in the component edu.stanford....
CVE-2023-39018CRITICAL9.8FFmpeg 0.7.0 and below was discovered to contain a code injection vulnerability in the component net.bramp.ffmpeg.FFmpeg...
CVE-2023-39017CRITICAL9.8quartz-jobs 2.3.2 and below was discovered to contain a code injection vulnerability in the component org.quartz.jobs.ee...
CVE-2023-39016CRITICAL9.8bboss-persistent v6.0.9 and below was discovered to contain a code injection vulnerability in the component com.framewor...
CVE-2023-39015CRITICAL9.8webmagic-extension v0.9.0 and below was discovered to contain a code injection vulnerability via the component us.codecr...
CVE-2023-39013CRITICAL9.8Duke v1.2 and below was discovered to contain a code injection vulnerability via the component no.priv.garshol.duke.serv...
CVE-2023-39010CRITICAL9.8BoofCV 0.42 was discovered to contain a code injection vulnerability via the component boofcv.io.calibration.Calibration...
CVE-2023-38992CRITICAL9.8jeecg-boot v3.5.1 was discovered to contain a SQL injection vulnerability via the title parameter at /sys/dict/loadTreeD...
CVE-2023-37754CRITICAL9.8PowerJob v4.3.3 was discovered to contain a remote command execution (RCE) vulnerability via the instanceId parameter at...
CVE-2023-3988CRITICAL9.8A vulnerability was found in Cafe Billing System 1.0. It has been declared as critical. Affected by this vulnerability i...
CVE-2023-3987CRITICAL9.8A vulnerability was found in SourceCodester Simple Online Mens Salon Management System 1.0. It has been classified as cr...
CVE-2023-3985CRITICAL9.8A vulnerability has been found in SourceCodester Online Jewelry Store 1.0 and classified as critical. This vulnerability...
CVE-2023-38604CRITICAL9.8An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in watchOS 9.6, macOS Big...
CVE-2023-38598CRITICAL9.8A use-after-free issue was addressed with improved memory management. This issue is fixed in watchOS 9.6, macOS Big Sur ...
CVE-2023-37285CRITICAL9.8An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 15.7.8 and iPadOS 15.7.8, ...
CVE-2023-36495CRITICAL9.8An integer overflow was addressed with improved input validation. This issue is fixed in watchOS 9.6, macOS Monterey 12....
CVE-2023-34425CRITICAL9.8The issue was addressed with improved memory handling. This issue is fixed in watchOS 9.6, macOS Monterey 12.6.8, iOS 15...
CVE-2023-3984CRITICAL9.8A vulnerability, which was classified as critical, was found in phpscriptpoint RecipePoint 1.9. This affects an unknown ...
CVE-2023-33745CRITICAL9.8TeleAdapt RoomCast TA-2400 1.0 through 3.1 is vulnerable to Improper Privilege Management: from the shell available afte...
CVE-2023-33744CRITICAL9.8TeleAdapt RoomCast TA-2400 1.0 through 3.1 suffers from Use of a Hard-coded Password (PIN): 385521, 843646, and 592671.
CVE-2023-33743CRITICAL9.8TeleAdapt RoomCast TA-2400 1.0 through 3.1 is vulnerable to Improper Access Control; specifically, Android Debug Bridge ...
CVE-2023-38495CRITICAL9.8Crossplane is a framework for building cloud native control planes without needing to write code. In versions prior to 1...
CVE-2023-3975CRITICAL9.8OS Command Injection in GitHub repository jgraph/drawio prior to 21.5.0.
CVE-2023-3974CRITICAL9.8OS Command Injection in GitHub repository jgraph/drawio prior to 21.4.0.

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now