2023 CVE Vulnerabilities

31,442 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-26070CRITICAL9.8Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 4 of 4).
CVE-2023-26069CRITICAL9.8Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 3 of 4).
CVE-2023-26068CRITICAL9.8Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 2 of 4).
CVE-2023-26067HIGH8.1Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 1 of 4).
CVE-2023-26066CRITICAL9.8Certain Lexmark devices through 2023-02-19 have Improper Validation of an Array Index.
CVE-2023-26065CRITICAL9.8Certain Lexmark devices through 2023-02-19 have an Integer Overflow.
CVE-2023-26064CRITICAL9.8Certain Lexmark devices through 2023-02-19 have an Out-of-bounds Write.
CVE-2023-26063CRITICAL9.8Certain Lexmark devices through 2023-02-19 access a Resource By Using an Incompatible Type.
CVE-2023-28206HIGH8.6An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in macOS Monterey 12.6.5,...
CVE-2023-28205HIGH8.8A use after free issue was addressed with improved memory management. This issue is fixed in Safari 16.4.1, iOS 15.7.5 a...
CVE-2023-27650CRITICAL9.8An issue found in APUS Group Launcher v.3.10.73 and v.3.10.88 allows a remote attacker to execute arbitrary code via the...
CVE-2023-1971MEDIUM4.9** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as critical, was found in yuan1994 tpAdmin 1.3.12....
CVE-2023-26986HIGH7.8An issue in China Mobile OA Mailbox PC v2.9.23 allows remote attackers to execute arbitrary commands on a victim host vi...
CVE-2023-26919HIGH7.2delight-nashorn-sandbox 0.2.4 and 0.2.5 is vulnerable to sandbox escape. When allowExitFunctions is set to false, the lo...
CVE-2023-1970HIGH7.2** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as problematic, has been found in yuan1994 tpAdmin...
CVE-2023-1969CRITICAL9.8A vulnerability classified as critical was found in SourceCodester Online Eyewear Shop 1.0. This vulnerability affects u...
CVE-2023-29376MEDIUM5.4An issue was discovered in Progress Sitefinity 13.3 before 13.3.7647, 14.0 before 14.0.7736, 14.1 before 14.1.7826, 14.2...
CVE-2023-29375CRITICAL9.8An issue was discovered in Progress Sitefinity 13.3 before 13.3.7647, 14.0 before 14.0.7736, 14.1 before 14.1.7826, 14.2...
CVE-2023-1381HIGH8.8The WP Meta SEO WordPress plugin before 4.5.5 does not validate image file paths before attempting to manipulate the ima...
CVE-2023-25392MEDIUM5.9Allegro Tech BigFlow <1.6 is vulnerable to Missing SSL Certificate Validation.
CVE-2023-24181MEDIUM5.4LuCI openwrt-22.03 branch git-22.361.69894-438c598 was discovered to contain a reflected cross-site scripting (XSS) vuln...
CVE-2023-1478CRITICAL9.8The Hummingbird WordPress plugin before 3.4.2 does not validate the generated file path for page cache files before writ...
CVE-2023-1426MEDIUM6.5The WP Tiles WordPress plugin through 1.1.2 does not ensure that posts to be displayed are not draft/private, allowing a...
CVE-2023-1425HIGH7.2The WordPress CRM, Email & Marketing Automation for WordPress | Award Winner — Groundhogg WordPress plugin before 2.7.9....
CVE-2023-1406HIGH8.8The JetEngine WordPress plugin before 3.1.3.1 includes uploaded files without adequately ensuring that they are not exec...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now