2023 CVE Vulnerabilities
31,442 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-22707 | MEDIUM | 5.4 | 0.4% | Mar 27, 2023 | Auth. (author+) Cross-Site Scripting (XSS) vulnerability in Wpsoul Greenshift – animation and page builder blocks plugin... |
| CVE-2023-1659 | — | — | — | Mar 27, 2023 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2023-1655 | HIGH | 7.8 | 0.5% | Mar 27, 2023 | Heap-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.4.0. |
| CVE-2023-1145 | HIGH | 7.8 | 0.3% | Mar 27, 2023 | Delta Electronics InfraSuite Device Master versions prior to 1.0.5 are affected by a deserialization vulnerabilit... |
| CVE-2023-1144 | HIGH | 8.8 | 0.6% | Mar 27, 2023 | Delta Electronics InfraSuite Device Master versions prior to 1.0.5 contains an improper access control vulnerability in ... |
| CVE-2023-1143 | HIGH | 8.8 | 0.8% | Mar 27, 2023 | In Delta Electronics InfraSuite Device Master versions prior to 1.0.5, an attacker could use Lua scripts, which could al... |
| CVE-2023-1142 | CRITICAL | 9.8 | 1.1% | Mar 27, 2023 | In Delta Electronics InfraSuite Device Master versions prior to 1.0.5, an attacker could use URL decoding to retrieve sy... |
| CVE-2023-1141 | HIGH | 8.8 | 1.6% | Mar 27, 2023 | Delta Electronics InfraSuite Device Master versions prior to 1.0.5 contain a command injection vulnerability that could ... |
| CVE-2023-1140 | CRITICAL | 9.8 | 1.1% | Mar 27, 2023 | Delta Electronics InfraSuite Device Master versions prior to 1.0.5 contain a vulnerability that could allow an attacker ... |
| CVE-2023-1139 | HIGH | 8.8 | 1.3% | Mar 27, 2023 | Delta Electronics InfraSuite Device Master versions prior to 1.0.5 are affected by a deserialization vulnerability targe... |
| CVE-2023-1138 | HIGH | 7.5 | 0.6% | Mar 27, 2023 | Delta Electronics InfraSuite Device Master versions prior to 1.0.5 contain an improper access control vulnerability, whi... |
| CVE-2023-1137 | HIGH | 8.8 | 0.5% | Mar 27, 2023 | Delta Electronics InfraSuite Device Master versions prior to 1.0.5 contain a vulnerability in which a low-level user cou... |
| CVE-2023-1136 | HIGH | 7.5 | 0.7% | Mar 27, 2023 | In Delta Electronics InfraSuite Device Master versions prior to 1.0.5, an unauthenticated attacker could generate a vali... |
| CVE-2023-1135 | HIGH | 7.8 | 0.2% | Mar 27, 2023 | In Delta Electronics InfraSuite Device Master versions prior to 1.0.5, an attacker could set in... |
| CVE-2023-1134 | HIGH | 8.8 | 0.7% | Mar 27, 2023 | Delta Electronics InfraSuite Device Master versions prior to 1.0.5 are affected by a path traversal vulnerability, which... |
| CVE-2023-1133 | CRITICAL | 9.8 | 50.0% | Mar 27, 2023 | Delta Electronics InfraSuite Device Master versions prior to 1.0.5 contain a vulnerability in which the Device-status se... |
| CVE-2023-27096 | MEDIUM | 6.5 | 0.6% | Mar 27, 2023 | Insecure Permissions vulnerability found in OpenGoofy Hippo4j v.1.4.3 allows attacker to obtain sensitive information vi... |
| CVE-2023-26959 | CRITICAL | 9.8 | 0.8% | Mar 27, 2023 | Phpgurukul Park Ticketing Management System 1.0 is vulnerable to SQL Injection via the User Name parameter. |
| CVE-2023-26958 | MEDIUM | 4.8 | 0.5% | Mar 27, 2023 | Phpgurukul Park Ticketing Management System 1.0 is vulnerable to Cross Site Scripting (XSS) via the Admin Name parameter... |
| CVE-2023-24094 | HIGH | 7.5 | 1.1% | Mar 27, 2023 | An issue in the bridge2 component of MikroTik RouterOS v6.40.5 allows attackers to cause a Denial of Service (DoS) via c... |
| CVE-2023-28885 | MEDIUM | 6.8 | 0.4% | Mar 27, 2023 | The MyLink infotainment system (build 2021.3.26) in General Motors Chevrolet Equinox 2021 vehicles allows attackers to c... |
| CVE-2023-25909 | CRITICAL | 9.8 | 0.9% | Mar 27, 2023 | HGiga OAKlouds file uploading function does not restrict upload of file with dangerous type. An unauthenticated remote a... |
| CVE-2023-25018 | MEDIUM | 5.4 | 0.4% | Mar 27, 2023 | RIFARTEK IOT Wall transportation function has insufficient filtering for user input. An authenticated remote attacker wi... |
| CVE-2023-25017 | HIGH | 8.1 | 0.6% | Mar 27, 2023 | RIFARTEK IOT Wall has a vulnerability of incorrect authorization. An authenticated remote attacker with general user pri... |
| CVE-2023-24842 | MEDIUM | 5.3 | 0.6% | Mar 27, 2023 | HGiga MailSherlock has vulnerability of insufficient access control. An unauthenticated remote user can exploit this vul... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now