2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2023-38431CRITICAL9.1An issue was discovered in the Linux kernel before 6.3.8. fs/smb/server/connection.c in ksmbd does not validate the rela...
CVE-2023-38430CRITICAL9.1An issue was discovered in the Linux kernel before 6.3.9. ksmbd does not validate the SMB request protocol ID, leading t...
CVE-2023-38429CRITICAL9.8An issue was discovered in the Linux kernel before 6.3.4. fs/ksmbd/connection.c in ksmbd has an off-by-one error in memo...
CVE-2023-38428CRITICAL9.1An issue was discovered in the Linux kernel before 6.3.4. fs/ksmbd/smb2pdu.c in ksmbd does not properly check the UserNa...
CVE-2023-38427CRITICAL9.8An issue was discovered in the Linux kernel before 6.3.8. fs/smb/server/smb2pdu.c in ksmbd has an integer underflow and ...
CVE-2023-38426CRITICAL9.1An issue was discovered in the Linux kernel before 6.3.4. ksmbd has an out-of-bounds read in smb2_find_context_vals when...
CVE-2023-37266CRITICAL9.8CasaOS is an open-source Personal Cloud system. Unauthenticated attackers can craft arbitrary JWTs and access features t...
CVE-2023-37265CRITICAL9.8CasaOS is an open-source Personal Cloud system. Due to a lack of IP address verification an unauthenticated attackers ca...
CVE-2023-37461CRITICAL9.8Metersphere is an opensource testing framework. Files uploaded to Metersphere may define a `belongType` value with a rel...
CVE-2023-37791CRITICAL9.8D-Link DIR-619L v2.04(TW) was discovered to contain a stack overflow via the curTime parameter at /goform/formLogin.
CVE-2023-2958CRITICAL9.8Authorization Bypass Through User-Controlled Key vulnerability in Origin Software ATS Pro allows Authentication Abuse, A...
CVE-2023-3376CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Digital Strategy Z...
CVE-2023-3186CRITICAL9.8The Popup by Supsystic WordPress plugin before 1.10.19 has a prototype pollution vulnerability that could allow an attac...
CVE-2023-2963CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Oliva Expertise Ol...
CVE-2023-26512CRITICAL9.8CWE-502 Deserialization of Untrusted Data at the rabbitmq-connector plugin module in Apache EventMesh (incubating) V1.7....
CVE-2023-3696CRITICAL9.8Prototype Pollution in GitHub repository automattic/mongoose prior to 7.3.4.
CVE-2023-3695CRITICAL9.8A vulnerability classified as critical has been found in Campcodes Beauty Salon Management System 1.0. Affected is an un...
CVE-2023-3694CRITICAL9.8A vulnerability, which was classified as critical, has been found in SourceCodester/projectworlds House Rental and Prope...
CVE-2023-3693CRITICAL9.8A vulnerability classified as critical was found in SourceCodester Life Insurance Management System 1.0. This vulnerabil...
CVE-2023-38378CRITICAL9.8The web interface on the RIGOL MSO5000 digital oscilloscope with firmware 00.01.03.00.03 allows remote attackers to exec...
CVE-2023-3690CRITICAL9.8A vulnerability, which was classified as critical, has been found in Bylancer QuickOrder 6.3.7. Affected by this issue i...
CVE-2023-3689CRITICAL9.8A vulnerability classified as critical was found in Bylancer QuickQR 6.3.7. Affected by this vulnerability is an unknown...
CVE-2023-3688CRITICAL9.8A vulnerability classified as critical has been found in Bylancer QuickJob 6.1. Affected is an unknown function of the c...
CVE-2023-3687CRITICAL9.8A vulnerability was found in Bylancer QuickVCard 2.1. It has been rated as critical. This issue affects some unknown pro...
CVE-2023-3686CRITICAL9.8A vulnerability was found in Bylancer QuickAI OpenAI 3.8.1. It has been declared as critical. This vulnerability affects...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now