2023 CVE Vulnerabilities

31,442 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-1946MEDIUM6.1A vulnerability was found in SourceCodester Survey Application System 1.0 and classified as problematic. This issue affe...
CVE-2023-27180HIGH7.5GDidees CMS v3.9.1 was discovered to contain a source code disclosure vulnerability by the backup feature which is acces...
CVE-2023-27033CRITICAL9.8Prestashop cdesigner v3.1.3 to v3.1.8 was discovered to contain a code injection vulnerability via the component Cdesign...
CVE-2023-1801MEDIUM6.5The SMB protocol decoder in tcpdump version 4.99.3 can perform an out-of-bounds write when decoding a crafted network pa...
CVE-2023-23762MEDIUM5.3An incorrect comparison vulnerability was identified in GitHub Enterprise Server that allowed commit smuggling by displa...
CVE-2023-23761MEDIUM5.3An improper authentication vulnerability was identified in GitHub Enterprise Server that allowed an unauthorized actor t...
CVE-2023-1942CRITICAL9.8A vulnerability has been found in SourceCodester Online Computer and Laptop Store 1.0 and classified as critical. Affect...
CVE-2023-1941CRITICAL9.8A vulnerability, which was classified as critical, has been found in SourceCodester Simple and Beautiful Shopping Cart S...
CVE-2023-1940CRITICAL9.1A vulnerability classified as critical was found in SourceCodester Simple and Beautiful Shopping Cart System 1.0. This v...
CVE-2023-1909MEDIUM6.5A vulnerability, which was classified as critical, was found in PHPGurukul BP Monitoring Management System 1.0. Affected...
CVE-2023-29388MEDIUM6.1Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in impleCode Product Catalog Simple plugin <= 1.6.17 versions...
CVE-2023-29172MEDIUM6.1Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in PropertyHive plugin <= 1.5.46 versions.
CVE-2023-29171MEDIUM6.1Unauth. Reflected Cross-site Scripting (XSS) vulnerability in Magic Post Thumbnail plugin <= 4.1.10 versions.
CVE-2023-29170MEDIUM4.8Auth. (admin+) Stored Cross-site Scripting (XSS) vulnerability in PI Websolution Product Enquiry for WooCommerce, WooCom...
CVE-2023-28792MEDIUM6.1Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in I Thirteen Web Solution Continuous Image Carousel With Lig...
CVE-2023-28789MEDIUM6.1Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Cimatti Consulting WordPress Contact Forms by Cimatti plug...
CVE-2023-28781MEDIUM6.1Unauth. Stored Cross-Site Scripting (XSS) vulnerability in Cimatti Consulting WordPress Contact Forms by Cimatti plugin ...
CVE-2023-28710HIGH7.5Improper Input Validation vulnerability in Apache Software Foundation Apache Airflow Spark Provider.This issue affects A...
CVE-2023-28707HIGH7.5Improper Input Validation vulnerability in Apache Software Foundation Apache Airflow Drill Provider.This issue affects A...
CVE-2023-28706CRITICAL9.8Improper Control of Generation of Code ('Code Injection') vulnerability in Apache Software Foundation Apache Airflow Hiv...
CVE-2023-27876HIGH7.1IBM TRIRIGA 4.0 is vulnerable to an XML external entity injection (XXE) attack when processing XML data. A remote attack...
CVE-2023-27810MEDIUM4.9H3C Magic R100 R100V100R005.bin was discovered to contain a stack overflow via the ipqos_lanip_editlist interface at /go...
CVE-2023-27808MEDIUM4.9H3C Magic R100 R100V100R005.bin was discovered to contain a stack overflow via the DeltriggerList interface at /goform/a...
CVE-2023-27807MEDIUM4.9H3C Magic R100 R100V100R005.bin was discovered to contain a stack overflow via the Delstlist interface at /goform/aspFor...
CVE-2023-27806MEDIUM4.9H3C Magic R100 R100V100R005.bin was discovered to contain a stack overflow via the ipqos_lanip_dellist interface at /gof...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now