2023 CVE Vulnerabilities
31,442 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-28371 | CRITICAL | 9.8 | 1.5% | Mar 15, 2023 | In Stellarium through 1.2, attackers can write to files that are typically unintended, such as ones with absolute pathna... |
| CVE-2023-27757 | CRITICAL | 9.8 | 0.9% | Mar 15, 2023 | An arbitrary file upload vulnerability in the /admin/user/uploadImg component of PerfreeBlog v3.1.1 allows attackers to ... |
| CVE-2023-1327 | CRITICAL | 9.8 | 0.9% | Mar 14, 2023 | Netgear RAX30 (AX2400), prior to version 1.0.6.74, was affected by an authentication bypass vulnerability, allowing an u... |
| CVE-2023-27590 | HIGH | 7.8 | 0.3% | Mar 14, 2023 | Rizin is a UNIX-like reverse engineering framework and command-line toolset. In version 0.5.1 and prior, converting a GD... |
| CVE-2023-26511 | CRITICAL | 9.8 | 0.9% | Mar 14, 2023 | A Hard Coded Admin Credentials issue in the Web-UI Admin Panel in Propius MachineSelector 6.6.0 and 6.6.1 allows remote ... |
| CVE-2023-26262 | HIGH | 7.2 | 1.7% | Mar 14, 2023 | An issue was discovered in Sitecore XP/XM 10.3. As an authenticated Sitecore user, a unrestricted language file upload v... |
| CVE-2023-28343 | CRITICAL | 9.8 | 85.3% | Mar 14, 2023 | OS command injection affects Altenergy Power Control Software C1.2.5 via shell metacharacters in the index.php/managemen... |
| CVE-2023-28339 | HIGH | 8.8 | 0.6% | Mar 14, 2023 | OpenDoas through 6.8.2, when TIOCSTI is available, allows privilege escalation because of sharing a terminal with the or... |
| CVE-2023-28144 | HIGH | 7 | 0.3% | Mar 14, 2023 | KDAB Hotspot 1.3.x and 1.4.x through 1.4.1, in a non-default configuration, allows privilege escalation because of race ... |
| CVE-2023-27589 | MEDIUM | 6.5 | 0.9% | Mar 14, 2023 | Minio is a Multi-Cloud Object Storage framework. Starting with RELEASE.2020-12-23T02-24-12Z and prior to RELEASE.2023-03... |
| CVE-2023-27588 | HIGH | 7.5 | 1.3% | Mar 14, 2023 | Hasura is an open-source product that provides users GraphQL or REST APIs. A path traversal vulnerability has been disco... |
| CVE-2023-27585 | HIGH | 7.5 | 2.3% | Mar 14, 2023 | PJSIP is a free and open source multimedia communication library written in C. A buffer overflow vulnerability in versio... |
| CVE-2023-25206 | HIGH | 8.8 | 0.9% | Mar 14, 2023 | PrestaShop ws_productreviews < 3.6.2 is vulnerable to SQL Injection. |
| CVE-2023-24930 | HIGH | 7.8 | 0.5% | Mar 14, 2023 | Microsoft OneDrive for MacOS Elevation of Privilege Vulnerability |
| CVE-2023-24923 | MEDIUM | 5.5 | 0.8% | Mar 14, 2023 | Microsoft OneDrive for Android Information Disclosure Vulnerability |
| CVE-2023-24922 | MEDIUM | 6.5 | 1.5% | Mar 14, 2023 | Microsoft Dynamics 365 (On-Premises) Information Disclosure Vulnerability |
| CVE-2023-24921 | MEDIUM | 5.4 | 0.6% | Mar 14, 2023 | Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability |
| CVE-2023-24920 | MEDIUM | 5.4 | 0.3% | Mar 14, 2023 | Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability |
| CVE-2023-24919 | MEDIUM | 5.4 | 0.6% | Mar 14, 2023 | Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability |
| CVE-2023-24913 | HIGH | 8.8 | 1.3% | Mar 14, 2023 | Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability |
| CVE-2023-24911 | MEDIUM | 4.3 | 1.1% | Mar 14, 2023 | Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability |
| CVE-2023-24910 | HIGH | 7.8 | 0.4% | Mar 14, 2023 | Windows Graphics Component Elevation of Privilege Vulnerability |
| CVE-2023-24909 | HIGH | 8.8 | 1.3% | Mar 14, 2023 | Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability |
| CVE-2023-24908 | HIGH | 8.1 | 1.0% | Mar 14, 2023 | Remote Procedure Call Runtime Remote Code Execution Vulnerability |
| CVE-2023-24907 | HIGH | 8.8 | 1.3% | Mar 14, 2023 | Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now