2023 CVE Vulnerabilities
31,442 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-26070 | CRITICAL | 9.8 | 0.7% | Apr 10, 2023 | Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 4 of 4). |
| CVE-2023-26069 | CRITICAL | 9.8 | 0.7% | Apr 10, 2023 | Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 3 of 4). |
| CVE-2023-26068 | CRITICAL | 9.8 | 11.6% | Apr 10, 2023 | Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 2 of 4). |
| CVE-2023-26067 | HIGH | 8.1 | 37.8% | Apr 10, 2023 | Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 1 of 4). |
| CVE-2023-26066 | CRITICAL | 9.8 | 0.7% | Apr 10, 2023 | Certain Lexmark devices through 2023-02-19 have Improper Validation of an Array Index. |
| CVE-2023-26065 | CRITICAL | 9.8 | 0.7% | Apr 10, 2023 | Certain Lexmark devices through 2023-02-19 have an Integer Overflow. |
| CVE-2023-26064 | CRITICAL | 9.8 | 0.7% | Apr 10, 2023 | Certain Lexmark devices through 2023-02-19 have an Out-of-bounds Write. |
| CVE-2023-26063 | CRITICAL | 9.8 | 0.7% | Apr 10, 2023 | Certain Lexmark devices through 2023-02-19 access a Resource By Using an Incompatible Type. |
| CVE-2023-28206 | HIGH | 8.6 | 24.5% | Apr 10, 2023 | An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in macOS Monterey 12.6.5,... |
| CVE-2023-28205 | HIGH | 8.8 | 27.1% | Apr 10, 2023 | A use after free issue was addressed with improved memory management. This issue is fixed in Safari 16.4.1, iOS 15.7.5 a... |
| CVE-2023-27650 | CRITICAL | 9.8 | 2.1% | Apr 10, 2023 | An issue found in APUS Group Launcher v.3.10.73 and v.3.10.88 allows a remote attacker to execute arbitrary code via the... |
| CVE-2023-1971 | MEDIUM | 4.9 | 0.6% | Apr 10, 2023 | ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as critical, was found in yuan1994 tpAdmin 1.3.12.... |
| CVE-2023-26986 | HIGH | 7.8 | 0.5% | Apr 10, 2023 | An issue in China Mobile OA Mailbox PC v2.9.23 allows remote attackers to execute arbitrary commands on a victim host vi... |
| CVE-2023-26919 | HIGH | 7.2 | 0.6% | Apr 10, 2023 | delight-nashorn-sandbox 0.2.4 and 0.2.5 is vulnerable to sandbox escape. When allowExitFunctions is set to false, the lo... |
| CVE-2023-1970 | HIGH | 7.2 | 1.0% | Apr 10, 2023 | ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as problematic, has been found in yuan1994 tpAdmin... |
| CVE-2023-1969 | CRITICAL | 9.8 | 0.8% | Apr 10, 2023 | A vulnerability classified as critical was found in SourceCodester Online Eyewear Shop 1.0. This vulnerability affects u... |
| CVE-2023-29376 | MEDIUM | 5.4 | 0.4% | Apr 10, 2023 | An issue was discovered in Progress Sitefinity 13.3 before 13.3.7647, 14.0 before 14.0.7736, 14.1 before 14.1.7826, 14.2... |
| CVE-2023-29375 | CRITICAL | 9.8 | 0.8% | Apr 10, 2023 | An issue was discovered in Progress Sitefinity 13.3 before 13.3.7647, 14.0 before 14.0.7736, 14.1 before 14.1.7826, 14.2... |
| CVE-2023-1381 | HIGH | 8.8 | 1.7% | Apr 10, 2023 | The WP Meta SEO WordPress plugin before 4.5.5 does not validate image file paths before attempting to manipulate the ima... |
| CVE-2023-25392 | MEDIUM | 5.9 | 0.4% | Apr 10, 2023 | Allegro Tech BigFlow <1.6 is vulnerable to Missing SSL Certificate Validation. |
| CVE-2023-24181 | MEDIUM | 5.4 | 0.6% | Apr 10, 2023 | LuCI openwrt-22.03 branch git-22.361.69894-438c598 was discovered to contain a reflected cross-site scripting (XSS) vuln... |
| CVE-2023-1478 | CRITICAL | 9.8 | 1.1% | Apr 10, 2023 | The Hummingbird WordPress plugin before 3.4.2 does not validate the generated file path for page cache files before writ... |
| CVE-2023-1426 | MEDIUM | 6.5 | 0.8% | Apr 10, 2023 | The WP Tiles WordPress plugin through 1.1.2 does not ensure that posts to be displayed are not draft/private, allowing a... |
| CVE-2023-1425 | HIGH | 7.2 | 0.9% | Apr 10, 2023 | The WordPress CRM, Email & Marketing Automation for WordPress | Award Winner — Groundhogg WordPress plugin before 2.7.9.... |
| CVE-2023-1406 | HIGH | 8.8 | 1.5% | Apr 10, 2023 | The JetEngine WordPress plugin before 3.1.3.1 includes uploaded files without adequately ensuring that they are not exec... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now