2023 CVE Vulnerabilities
31,442 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-28106 | MEDIUM | 4.8 | 0.7% | Mar 16, 2023 | Pimcore is an open source data and experience management platform. Prior to version 10.5.19, an attacker can use cross-s... |
| CVE-2023-28105 | HIGH | 8.8 | 0.6% | Mar 16, 2023 | go-used-util has commonly used utility functions for Go. Versions prior to 0.0.34 have a ZipSlip issue when using fsutil... |
| CVE-2023-27041 | CRITICAL | 9.8 | 0.8% | Mar 16, 2023 | School Registration and Fee System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at/... |
| CVE-2023-28104 | HIGH | 7.5 | 1.1% | Mar 16, 2023 | `silverstripe/graphql` serves Silverstripe data as GraphQL representations. In versions 4.2.2 and 4.1.1, an attacker cou... |
| CVE-2023-28101 | MEDIUM | 4.3 | 0.9% | Mar 16, 2023 | Flatpak is a system for building, distributing, and running sandboxed desktop applications on Linux. In versions prior t... |
| CVE-2023-28100 | MEDIUM | 6.5 | 0.9% | Mar 16, 2023 | Flatpak is a system for building, distributing, and running sandboxed desktop applications on Linux. Versions prior to 1... |
| CVE-2023-27040 | CRITICAL | 9.8 | 2.0% | Mar 16, 2023 | Simple Image Gallery v1.0 was discovered to contain a remote code execution (RCE) vulnerability via the username paramet... |
| CVE-2023-28155 | MEDIUM | 6.1 | 0.7% | Mar 16, 2023 | The Request package through 2.88.1 for Node.js allows a bypass of SSRF mitigations via an attacker-controller server tha... |
| CVE-2023-27789 | HIGH | 7.5 | 1.5% | Mar 16, 2023 | An issue found in TCPprep v.4.4.3 allows a remote attacker to cause a denial of service via the cidr2cidr function at th... |
| CVE-2023-27788 | HIGH | 7.5 | 1.4% | Mar 16, 2023 | An issue found in TCPrewrite v.4.4.3 allows a remote attacker to cause a denial of service via the ports2PORT function a... |
| CVE-2023-27787 | HIGH | 7.5 | 1.5% | Mar 16, 2023 | An issue found in TCPprep v.4.4.3 allows a remote attacker to cause a denial of service via the parse_list function at t... |
| CVE-2023-27786 | HIGH | 7.5 | 1.5% | Mar 16, 2023 | An issue found in TCPprep v.4.4.3 allows a remote attacker to cause a denial of service via the macinstring function. |
| CVE-2023-27785 | HIGH | 7.5 | 1.5% | Mar 16, 2023 | An issue found in TCPreplay TCPprep v.4.4.3 allows a remote attacker to cause a denial of service via the parse endpoint... |
| CVE-2023-27784 | HIGH | 7.5 | 1.5% | Mar 16, 2023 | An issue found in TCPReplay v.4.4.3 allows a remote attacker to cause a denial of service via the read_hexstring functio... |
| CVE-2023-27783 | HIGH | 7.5 | 1.5% | Mar 16, 2023 | An issue found in TCPreplay tcprewrite v.4.4.3 allows a remote attacker to cause a denial of service via the tcpedit_dlt... |
| CVE-2023-27711 | MEDIUM | 4.8 | 0.7% | Mar 16, 2023 | Cross Site Scripting vulnerability found in Typecho v.1.2.0 allows a remote attacker to execute arbitrary code via the C... |
| CVE-2023-27709 | HIGH | 7.2 | 1.3% | Mar 16, 2023 | SQL injection vulnerability found in DedeCMS v.5.7.106 allows a remote attacker to execute arbitrary code via the rank_*... |
| CVE-2023-27707 | HIGH | 7.2 | 1.3% | Mar 16, 2023 | SQL injection vulnerability found in DedeCMS v.5.7.106 allows a remote attacker to execute arbitrary code via the rank_*... |
| CVE-2023-27131 | MEDIUM | 4.8 | 0.6% | Mar 16, 2023 | Cross Site Scripting vulnerability found in Typecho v.1.2.0 allows a remote attacker to execute arbitrary code viathe Po... |
| CVE-2023-27130 | MEDIUM | 4.8 | 0.6% | Mar 16, 2023 | Cross Site Scripting vulnerability found in Typecho v.1.2.0 allows a remote attacker to execute arbitrary code via an ar... |
| CVE-2023-27037 | HIGH | 8.8 | 1.5% | Mar 16, 2023 | Qibosoft QiboCMS v7 was discovered to contain a remote code execution (RCE) vulnerability via the Get_Title function at ... |
| CVE-2023-26769 | HIGH | 7.5 | 1.5% | Mar 16, 2023 | Buffer Overflow vulnerability found in Liblouis Lou_Trace v.3.24.0 allows a remote attacker to cause a denial of service... |
| CVE-2023-26768 | HIGH | 7.5 | 1.3% | Mar 16, 2023 | Buffer Overflow vulnerability found in Liblouis v.3.24.0 allows a remote attacker to cause a denial of service via the c... |
| CVE-2023-26767 | HIGH | 7.5 | 1.3% | Mar 16, 2023 | Buffer Overflow vulnerability found in Liblouis v.3.24.0 allows a remote attacker to cause a denial of service via the l... |
| CVE-2023-27875 | HIGH | 7.5 | 0.6% | Mar 16, 2023 | IBM Aspera Faspex 5.0.4 could allow a user to change other user's credentials due to improper access controls. IBM X-Fo... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now