2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-39021 | CRITICAL | 9.8 | 0.9% | Jul 28, 2023 | wix-embedded-mysql v4.6.1 and below was discovered to contain a code injection vulnerability in the component com.wix.my... |
| CVE-2023-39020 | CRITICAL | 9.8 | 0.9% | Jul 28, 2023 | stanford-parser v3.9.2 and below was discovered to contain a code injection vulnerability in the component edu.stanford.... |
| CVE-2023-39018 | CRITICAL | 9.8 | 0.8% | Jul 28, 2023 | FFmpeg 0.7.0 and below was discovered to contain a code injection vulnerability in the component net.bramp.ffmpeg.FFmpeg... |
| CVE-2023-39017 | CRITICAL | 9.8 | 1.0% | Jul 28, 2023 | quartz-jobs 2.3.2 and below was discovered to contain a code injection vulnerability in the component org.quartz.jobs.ee... |
| CVE-2023-39016 | CRITICAL | 9.8 | 0.7% | Jul 28, 2023 | bboss-persistent v6.0.9 and below was discovered to contain a code injection vulnerability in the component com.framewor... |
| CVE-2023-39015 | CRITICAL | 9.8 | 0.7% | Jul 28, 2023 | webmagic-extension v0.9.0 and below was discovered to contain a code injection vulnerability via the component us.codecr... |
| CVE-2023-39013 | CRITICAL | 9.8 | 0.7% | Jul 28, 2023 | Duke v1.2 and below was discovered to contain a code injection vulnerability via the component no.priv.garshol.duke.serv... |
| CVE-2023-39010 | CRITICAL | 9.8 | 0.7% | Jul 28, 2023 | BoofCV 0.42 was discovered to contain a code injection vulnerability via the component boofcv.io.calibration.Calibration... |
| CVE-2023-38992 | CRITICAL | 9.8 | 72.0% | Jul 28, 2023 | jeecg-boot v3.5.1 was discovered to contain a SQL injection vulnerability via the title parameter at /sys/dict/loadTreeD... |
| CVE-2023-37754 | CRITICAL | 9.8 | 26.9% | Jul 28, 2023 | PowerJob v4.3.3 was discovered to contain a remote command execution (RCE) vulnerability via the instanceId parameter at... |
| CVE-2023-3988 | CRITICAL | 9.8 | 0.7% | Jul 28, 2023 | A vulnerability was found in Cafe Billing System 1.0. It has been declared as critical. Affected by this vulnerability i... |
| CVE-2023-3987 | CRITICAL | 9.8 | 0.7% | Jul 28, 2023 | A vulnerability was found in SourceCodester Simple Online Mens Salon Management System 1.0. It has been classified as cr... |
| CVE-2023-3985 | CRITICAL | 9.8 | 0.8% | Jul 28, 2023 | A vulnerability has been found in SourceCodester Online Jewelry Store 1.0 and classified as critical. This vulnerability... |
| CVE-2023-38604 | CRITICAL | 9.8 | 1.2% | Jul 28, 2023 | An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in watchOS 9.6, macOS Big... |
| CVE-2023-38598 | CRITICAL | 9.8 | 1.1% | Jul 28, 2023 | A use-after-free issue was addressed with improved memory management. This issue is fixed in watchOS 9.6, macOS Big Sur ... |
| CVE-2023-37285 | CRITICAL | 9.8 | 0.9% | Jul 28, 2023 | An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 15.7.8 and iPadOS 15.7.8, ... |
| CVE-2023-36495 | CRITICAL | 9.8 | 1.1% | Jul 28, 2023 | An integer overflow was addressed with improved input validation. This issue is fixed in watchOS 9.6, macOS Monterey 12.... |
| CVE-2023-34425 | CRITICAL | 9.8 | 1.1% | Jul 28, 2023 | The issue was addressed with improved memory handling. This issue is fixed in watchOS 9.6, macOS Monterey 12.6.8, iOS 15... |
| CVE-2023-3984 | CRITICAL | 9.8 | 0.4% | Jul 28, 2023 | A vulnerability, which was classified as critical, was found in phpscriptpoint RecipePoint 1.9. This affects an unknown ... |
| CVE-2023-33745 | CRITICAL | 9.8 | 0.8% | Jul 27, 2023 | TeleAdapt RoomCast TA-2400 1.0 through 3.1 is vulnerable to Improper Privilege Management: from the shell available afte... |
| CVE-2023-33744 | CRITICAL | 9.8 | 0.8% | Jul 27, 2023 | TeleAdapt RoomCast TA-2400 1.0 through 3.1 suffers from Use of a Hard-coded Password (PIN): 385521, 843646, and 592671. |
| CVE-2023-33743 | CRITICAL | 9.8 | 0.9% | Jul 27, 2023 | TeleAdapt RoomCast TA-2400 1.0 through 3.1 is vulnerable to Improper Access Control; specifically, Android Debug Bridge ... |
| CVE-2023-38495 | CRITICAL | 9.8 | 0.7% | Jul 27, 2023 | Crossplane is a framework for building cloud native control planes without needing to write code. In versions prior to 1... |
| CVE-2023-3975 | CRITICAL | 9.8 | 1.9% | Jul 27, 2023 | OS Command Injection in GitHub repository jgraph/drawio prior to 21.5.0. |
| CVE-2023-3974 | CRITICAL | 9.8 | 1.1% | Jul 27, 2023 | OS Command Injection in GitHub repository jgraph/drawio prior to 21.4.0. |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now