2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-38431 | CRITICAL | 9.1 | 1.1% | Jul 18, 2023 | An issue was discovered in the Linux kernel before 6.3.8. fs/smb/server/connection.c in ksmbd does not validate the rela... |
| CVE-2023-38430 | CRITICAL | 9.1 | 1.1% | Jul 18, 2023 | An issue was discovered in the Linux kernel before 6.3.9. ksmbd does not validate the SMB request protocol ID, leading t... |
| CVE-2023-38429 | CRITICAL | 9.8 | 1.1% | Jul 18, 2023 | An issue was discovered in the Linux kernel before 6.3.4. fs/ksmbd/connection.c in ksmbd has an off-by-one error in memo... |
| CVE-2023-38428 | CRITICAL | 9.1 | 3.0% | Jul 18, 2023 | An issue was discovered in the Linux kernel before 6.3.4. fs/ksmbd/smb2pdu.c in ksmbd does not properly check the UserNa... |
| CVE-2023-38427 | CRITICAL | 9.8 | 1.1% | Jul 18, 2023 | An issue was discovered in the Linux kernel before 6.3.8. fs/smb/server/smb2pdu.c in ksmbd has an integer underflow and ... |
| CVE-2023-38426 | CRITICAL | 9.1 | 2.4% | Jul 18, 2023 | An issue was discovered in the Linux kernel before 6.3.4. ksmbd has an out-of-bounds read in smb2_find_context_vals when... |
| CVE-2023-37266 | CRITICAL | 9.8 | 5.9% | Jul 17, 2023 | CasaOS is an open-source Personal Cloud system. Unauthenticated attackers can craft arbitrary JWTs and access features t... |
| CVE-2023-37265 | CRITICAL | 9.8 | 6.4% | Jul 17, 2023 | CasaOS is an open-source Personal Cloud system. Due to a lack of IP address verification an unauthenticated attackers ca... |
| CVE-2023-37461 | CRITICAL | 9.8 | 0.5% | Jul 17, 2023 | Metersphere is an opensource testing framework. Files uploaded to Metersphere may define a `belongType` value with a rel... |
| CVE-2023-37791 | CRITICAL | 9.8 | 11.5% | Jul 17, 2023 | D-Link DIR-619L v2.04(TW) was discovered to contain a stack overflow via the curTime parameter at /goform/formLogin. |
| CVE-2023-2958 | CRITICAL | 9.8 | 0.6% | Jul 17, 2023 | Authorization Bypass Through User-Controlled Key vulnerability in Origin Software ATS Pro allows Authentication Abuse, A... |
| CVE-2023-3376 | CRITICAL | 9.8 | 0.5% | Jul 17, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Digital Strategy Z... |
| CVE-2023-3186 | CRITICAL | 9.8 | 1.2% | Jul 17, 2023 | The Popup by Supsystic WordPress plugin before 1.10.19 has a prototype pollution vulnerability that could allow an attac... |
| CVE-2023-2963 | CRITICAL | 9.8 | 0.5% | Jul 17, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Oliva Expertise Ol... |
| CVE-2023-26512 | CRITICAL | 9.8 | 1.0% | Jul 17, 2023 | CWE-502 Deserialization of Untrusted Data at the rabbitmq-connector plugin module in Apache EventMesh (incubating) V1.7.... |
| CVE-2023-3696 | CRITICAL | 9.8 | 1.0% | Jul 17, 2023 | Prototype Pollution in GitHub repository automattic/mongoose prior to 7.3.4. |
| CVE-2023-3695 | CRITICAL | 9.8 | 0.5% | Jul 17, 2023 | A vulnerability classified as critical has been found in Campcodes Beauty Salon Management System 1.0. Affected is an un... |
| CVE-2023-3694 | CRITICAL | 9.8 | 0.7% | Jul 17, 2023 | A vulnerability, which was classified as critical, has been found in SourceCodester/projectworlds House Rental and Prope... |
| CVE-2023-3693 | CRITICAL | 9.8 | 0.7% | Jul 16, 2023 | A vulnerability classified as critical was found in SourceCodester Life Insurance Management System 1.0. This vulnerabil... |
| CVE-2023-38378 | CRITICAL | 9.8 | 1.2% | Jul 16, 2023 | The web interface on the RIGOL MSO5000 digital oscilloscope with firmware 00.01.03.00.03 allows remote attackers to exec... |
| CVE-2023-3690 | CRITICAL | 9.8 | 0.4% | Jul 16, 2023 | A vulnerability, which was classified as critical, has been found in Bylancer QuickOrder 6.3.7. Affected by this issue i... |
| CVE-2023-3689 | CRITICAL | 9.8 | 0.4% | Jul 16, 2023 | A vulnerability classified as critical was found in Bylancer QuickQR 6.3.7. Affected by this vulnerability is an unknown... |
| CVE-2023-3688 | CRITICAL | 9.8 | 0.4% | Jul 16, 2023 | A vulnerability classified as critical has been found in Bylancer QuickJob 6.1. Affected is an unknown function of the c... |
| CVE-2023-3687 | CRITICAL | 9.8 | 0.4% | Jul 16, 2023 | A vulnerability was found in Bylancer QuickVCard 2.1. It has been rated as critical. This issue affects some unknown pro... |
| CVE-2023-3686 | CRITICAL | 9.8 | 0.4% | Jul 16, 2023 | A vulnerability was found in Bylancer QuickAI OpenAI 3.8.1. It has been declared as critical. This vulnerability affects... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now