2023 CVE Vulnerabilities
31,442 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-27089 | HIGH | 8.2 | 0.4% | Apr 4, 2023 | Cross Site Scripting vulnerability found in Ehuacui BBS allows attackers to cause a denial of service via a crafted payl... |
| CVE-2023-1752 | MEDIUM | 4.3 | 0.5% | Apr 4, 2023 | The listed versions of Nexx Smart Home devices could allow any user to register an already registered alarm or associate... |
| CVE-2023-1751 | MEDIUM | 5.3 | 0.6% | Apr 4, 2023 | The listed versions of Nexx Smart Home devices use a WebSocket server that does not validate if the bearer token in the ... |
| CVE-2023-1750 | HIGH | 7.1 | 0.5% | Apr 4, 2023 | The listed versions of Nexx Smart Home devices lack proper access control when executing actions. An attacker with a val... |
| CVE-2023-1749 | MEDIUM | 6.5 | 0.5% | Apr 4, 2023 | The listed versions of Nexx Smart Home devices lack proper access control when executing actions. An attacker with a val... |
| CVE-2023-1748 | CRITICAL | 10 | 0.8% | Apr 4, 2023 | The listed versions of Nexx Smart Home devices use hard-coded credentials. An attacker with unauthenticated access to th... |
| CVE-2023-28613 | CRITICAL | 9.8 | 1.2% | Apr 4, 2023 | An issue was discovered in Samsung Exynos Mobile Processor and Baseband Modem Processor for Exynos 1280, Exynos 2200, an... |
| CVE-2023-27487 | CRITICAL | 9.1 | 0.6% | Apr 4, 2023 | Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to versions 1.26.0, 1.25.3,... |
| CVE-2023-26974 | MEDIUM | 5.5 | 0.6% | Apr 4, 2023 | Irfanview v4.62 allows a user-mode write access violation via a crafted JPEG 2000 file starting at JPEG2000+0x0000000000... |
| CVE-2023-27771 | HIGH | 7.8 | 0.4% | Apr 4, 2023 | An issue found in Wondershare Technology Co.,Ltd Creative Centerr v.1.0.8 allows a remote attacker to execute arbitrary ... |
| CVE-2023-27770 | HIGH | 7.8 | 0.5% | Apr 4, 2023 | An issue found in Wondershare Technology Co.,Ltd Edraw-max v.12.0.4 allows a remote attacker to execute arbitrary comman... |
| CVE-2023-27769 | HIGH | 7.8 | 0.4% | Apr 4, 2023 | An issue found in Wondershare Technology Co.,Ltd PDF Reader v.1.0.1 allows a remote attacker to execute arbitrary comman... |
| CVE-2023-27768 | HIGH | 7.8 | 0.4% | Apr 4, 2023 | An issue found in Wondershare Technology Co.,Ltd PDFelement v9.1.1 allows a remote attacker to execute arbitrary command... |
| CVE-2023-27767 | HIGH | 7.8 | 0.4% | Apr 4, 2023 | An issue found in Wondershare Technology Co.,Ltd Dr.Fone v.12.4.9 allows a remote attacker to execute arbitrary commands... |
| CVE-2023-27766 | HIGH | 7.8 | 0.4% | Apr 4, 2023 | An issue found in Wondershare Technology Co.,Ltd Anireel 1.5.4 allows a remote attacker to execute arbitrary commands vi... |
| CVE-2023-27765 | HIGH | 7.8 | 0.4% | Apr 4, 2023 | An issue found in Wondershare Technology Co.,Ltd Recoverit v.10.6.3 allows a remote attacker to execute arbitrary comman... |
| CVE-2023-27764 | HIGH | 7.8 | 0.4% | Apr 4, 2023 | An issue found in Wondershare Technology Co.,Ltd Repairit v.3.5.4 allows a remote attacker to execute arbitrary commands... |
| CVE-2023-27763 | HIGH | 7.8 | 0.4% | Apr 4, 2023 | An issue found in Wondershare Technology Co.,Ltd MobileTrans v.4.0.2 allows a remote attacker to execute arbitrary comma... |
| CVE-2023-27762 | HIGH | 7.8 | 0.4% | Apr 4, 2023 | An issue found in Wondershare Technology Co., Ltd DemoCreator v.6.0.0 allows a remote attacker to execute arbitrary comm... |
| CVE-2023-27761 | HIGH | 7.8 | 0.4% | Apr 4, 2023 | An issue found in Wondershare Technology Co., Ltd UniConverter v.14.0.0 allows a remote attacker to execute arbitrary co... |
| CVE-2023-27760 | HIGH | 7.8 | 0.4% | Apr 4, 2023 | An issue found in Wondershare Technology Co, Ltd Filmora v.12.0.9 allows a remote attacker to execute arbitrary commands... |
| CVE-2023-27759 | HIGH | 7.8 | 0.4% | Apr 4, 2023 | An issue found in Wondershare Technology Co, Ltd Edrawmind v.10.0.6 allows a remote attacker to executea arbitrary comma... |
| CVE-2023-27734 | MEDIUM | 5.5 | 0.2% | Apr 4, 2023 | An issue found in Eteran edb-debugger v.1.3.0 allows a local attacker to causea denial of service via the collect_symbol... |
| CVE-2023-26991 | HIGH | 7.8 | 0.3% | Apr 4, 2023 | SWFTools v0.9.2 was discovered to contain a stack-use-after-scope in the swf_ReadSWF2 function in lib/rfxswf.c. |
| CVE-2023-26921 | CRITICAL | 9.8 | 2.7% | Apr 4, 2023 | OS Command Injection vulnerability in quectel AG550QCN allows attackers to execute arbitrary commands via ql_atfwd. |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now