2023 CVE Vulnerabilities

31,440 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-2043CRITICAL9.8A vulnerability, which was classified as problematic, was found in Control iD RHiD 23.3.19.0. This affects an unknown pa...
CVE-2023-2042HIGH8.8A vulnerability, which was classified as problematic, has been found in DataGear up to 4.7.0/5.1.0. Affected by this iss...
CVE-2023-2041HIGH8.8A vulnerability classified as critical was found in novel-plus 3.6.2. Affected by this vulnerability is an unknown funct...
CVE-2023-2040HIGH8.8A vulnerability classified as critical has been found in novel-plus 3.6.2. Affected is an unknown function of the file /...
CVE-2023-1863CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Eskom Water Meteri...
CVE-2023-2039HIGH8.8A vulnerability was found in novel-plus 3.6.2. It has been rated as critical. This issue affects some unknown processing...
CVE-2023-2038HIGH7.5A vulnerability was found in Campcodes Video Sharing Website 1.0. It has been declared as critical. This vulnerability a...
CVE-2023-2037CRITICAL9.8A vulnerability was found in Campcodes Video Sharing Website 1.0. It has been classified as critical. This affects an un...
CVE-2023-2036HIGH7.5A vulnerability was found in Campcodes Video Sharing Website 1.0 and classified as critical. Affected by this issue is s...
CVE-2023-2035HIGH7.5A vulnerability has been found in Campcodes Video Sharing Website 1.0 and classified as critical. Affected by this vulne...
CVE-2023-26123MEDIUM6.1Versions of the package raysan5/raylib before 4.5.0 are vulnerable to Cross-site Scripting (XSS) such that the SetClipbo...
CVE-2023-1285MEDIUM5.9Signal Handler Race Condition vulnerability in Mitsubishi Electric India GC-ENET-COM whose first 2 digits of 11-digit se...
CVE-2023-29627HIGH8.8Online Pizza Ordering v1.0 was discovered to contain an arbitrary file upload vulnerability which allows attackers to ex...
CVE-2023-29626HIGH7.5Yoga Class Registration System 1.0 was discovered to contain a SQL injection vulnerability via the cid parameter at /adm...
CVE-2023-29625HIGH8.8Employee Performance Evaluation System v1.0 was discovered to contain an arbitrary file upload vulnerability which allow...
CVE-2023-29623MEDIUM6.1Purchase Order Management v1.0 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the pa...
CVE-2023-29622CRITICAL9.8Purchase Order Management v1.0 was discovered to contain a SQL injection vulnerability via the password parameter at /pu...
CVE-2023-29621HIGH8.8Purchase Order Management v1.0 was discovered to contain an arbitrary file upload vulnerability which allows attackers t...
CVE-2023-26969HIGH7.5Atropim 1.5.26 is vulnerable to Directory Traversal.
CVE-2023-2034HIGH8.8Unrestricted Upload of File with Dangerous Type in GitHub repository froxlor/froxlor prior to 2.0.14.
CVE-2023-29491HIGH7.8ncurses before 6.4 20230408, when used by a setuid application, allows local users to trigger security-relevant memory c...
CVE-2023-29132MEDIUM5.3Irssi 1.3.x and 1.4.x before 1.4.4 has a use-after-free because of use of a stale special collector reference. This occu...
CVE-2023-27890MEDIUM5.4The Export User plugin through 2.0 for MyBB allows XSS during the process of an admin generating DSGVO data for a user, ...
CVE-2023-30638HIGH7.2Atos Unify OpenScape SBC 10 before 10R3.1.3, OpenScape Branch 10 before 10R3.1.2, and OpenScape BCF 10 before 10R10.7.0 ...
CVE-2023-26918CRITICAL9.8Diasoft File Replication Pro 7.5.0 allows attackers to escalate privileges by replacing a legitimate file with a Trojan ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now