2023 CVE Vulnerabilities
31,440 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-29067 | HIGH | 7.8 | 0.3% | Apr 14, 2023 | A maliciously crafted X_B file when parsed through Autodesk® AutoCAD® 2023 could lead to memory corruption vulnerability... |
| CVE-2023-29018 | HIGH | 8.8 | 0.7% | Apr 14, 2023 | The OpenFeature Operator allows users to expose feature flags to applications. Assuming the pre-existence of a vulnerabi... |
| CVE-2023-29013 | HIGH | 7.5 | 1.1% | Apr 14, 2023 | Traefik (pronounced traffic) is a modern HTTP reverse proxy and load balancer for deploying microservices. There is a vu... |
| CVE-2023-27915 | HIGH | 7.8 | 0.2% | Apr 14, 2023 | A maliciously crafted X_B file when parsed through Autodesk® AutoCAD® 2023 could lead to memory corruption vulnerability... |
| CVE-2023-27914 | HIGH | 7.8 | 0.2% | Apr 14, 2023 | A maliciously crafted X_B file when parsed through Autodesk® AutoCAD® 2023 can be used to write beyond the allocated buf... |
| CVE-2023-27913 | HIGH | 7.8 | 0.2% | Apr 14, 2023 | A maliciously crafted X_B file when parsed through Autodesk® AutoCAD® 2023 can be used to cause an Integer Overflow. A m... |
| CVE-2023-27912 | HIGH | 7.8 | 0.2% | Apr 14, 2023 | A maliciously crafted X_B file when parsed through Autodesk® AutoCAD® 2023 can force an Out-of-Bound Read. A malicious a... |
| CVE-2023-30459 | HIGH | 7.2 | 2.1% | Apr 14, 2023 | SmartPTT SCADA 1.1.0.0 allows remote code execution (when the attacker has administrator privileges) by writing a malici... |
| CVE-2023-2059 | MEDIUM | 5.3 | 2.4% | Apr 14, 2023 | A vulnerability was found in DedeCMS 5.7.87. It has been rated as problematic. Affected by this issue is some unknown fu... |
| CVE-2023-28091 | MEDIUM | 5.5 | 0.2% | Apr 14, 2023 | HPE OneView virtual appliance "Migrate server hardware" option may expose sensitive information in an HPE OneView suppor... |
| CVE-2023-28085 | MEDIUM | 5.5 | 0.2% | Apr 14, 2023 | An HPE OneView Global Dashboard (OVGD) appliance dump may expose OVGD user account credentials |
| CVE-2023-2058 | MEDIUM | 6.1 | 0.6% | Apr 14, 2023 | A vulnerability was found in EyouCms up to 1.6.2. It has been declared as problematic. Affected by this vulnerability is... |
| CVE-2023-2057 | MEDIUM | 6.1 | 0.6% | Apr 14, 2023 | A vulnerability was found in EyouCms 1.5.4. It has been classified as problematic. Affected is an unknown function of th... |
| CVE-2023-2056 | CRITICAL | 9.8 | 1.0% | Apr 14, 2023 | A vulnerability was found in DedeCMS up to 5.7.87 and classified as critical. This issue affects the function GetSystemF... |
| CVE-2023-29850 | HIGH | 7.5 | 0.7% | Apr 14, 2023 | SENAYAN Library Management System (SLiMS) Bulian v9.5.2 does not strip exif data from uploaded images. This allows attac... |
| CVE-2023-29847 | MEDIUM | 5.4 | 0.4% | Apr 14, 2023 | AeroCMS v0.0.1 was discovered to contain multiple stored cross-site scripting (XSS) vulnerabilities via the comment_auth... |
| CVE-2023-29805 | CRITICAL | 9.8 | 2.4% | Apr 14, 2023 | WFS-SR03 v1.0.3 was discovered to contain a command injection vulnerability via the pro_stor_canceltrans_handler_part_19... |
| CVE-2023-29804 | HIGH | 8.8 | 17.5% | Apr 14, 2023 | WFS-SR03 v1.0.3 was discovered to contain a command injection vulnerability via the sys_smb_pwdmod function. |
| CVE-2023-29803 | CRITICAL | 9.8 | 2.2% | Apr 14, 2023 | TOTOLINK X18 V9.1.0cu.2024_B20220329 was discovered to contain a command injection vulnerability via the pid parameter i... |
| CVE-2023-29802 | CRITICAL | 9.8 | 2.0% | Apr 14, 2023 | TOTOLINK X18 V9.1.0cu.2024_B20220329 was discovered to contain a command injection vulnerability via the ip parameter in... |
| CVE-2023-29801 | CRITICAL | 9.8 | 2.0% | Apr 14, 2023 | TOTOLINK X18 V9.1.0cu.2024_B20220329 was discovered to contain multiple command injection vulnerabilities via the rtLogE... |
| CVE-2023-29800 | CRITICAL | 9.8 | 2.0% | Apr 14, 2023 | TOTOLINK X18 V9.1.0cu.2024_B20220329 was discovered to contain a command injection vulnerability via the FileName parame... |
| CVE-2023-29799 | CRITICAL | 9.8 | 2.0% | Apr 14, 2023 | TOTOLINK X18 V9.1.0cu.2024_B20220329 was discovered to contain a command injection vulnerability via the hostname parame... |
| CVE-2023-29798 | CRITICAL | 9.8 | 2.0% | Apr 14, 2023 | TOTOLINK X18 V9.1.0cu.2024_B20220329 was discovered to contain a command injection vulnerability via the command paramet... |
| CVE-2023-22949 | MEDIUM | 4.9 | 0.4% | Apr 14, 2023 | An issue was discovered in TigerGraph Enterprise Free Edition 3.x. There is logging of user credentials. All authenticat... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now