2023 CVE Vulnerabilities

31,442 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-26076CRITICAL9.8An issue was discovered in Samsung Mobile Chipset and Baseband Modem Chipset for Exynos 1280, Exynos 2200, Exynos Modem ...
CVE-2023-25973HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Lucian Apostol Auto Affiliate Links plugin <= 6.3.0.2 versions.
CVE-2023-23711MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in A2 Hosting A2 Optimized WP plugin <= 3.0.4 versions.
CVE-2023-22700MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in PixelYourSite PixelYourSite – Your smart PIXEL (TAG) Manager plugin <...
CVE-2023-27065HIGH7.5Tenda V15V1.0 V15.11.0.14(1521_3190_1058) was discovered to contain a buffer overflow vulnerability via the picName para...
CVE-2023-27064HIGH7.5Tenda V15V1.0 V15.11.0.14(1521_3190_1058) was discovered to contain a buffer overflow vulnerability via the index parame...
CVE-2023-27063CRITICAL9.8Tenda V15V1.0 V15.11.0.14(1521_3190_1058) was discovered to contain a buffer overflow vulnerability via the DNSDomainNam...
CVE-2023-27062HIGH7.5Tenda V15V1.0 was discovered to contain a buffer overflow vulnerability via the gotoUrl parameter in the formPortalAuth ...
CVE-2023-27061CRITICAL9.8Tenda V15V1.0 V15.11.0.14(1521_3190_1058) was discovered to contain a buffer overflow vulnerability via the wifiFilterLi...
CVE-2023-26073CRITICAL9.8An issue was discovered in Samsung Mobile Chipset and Baseband Modem Chipset for Exynos 850, Exynos 980, Exynos 1080, Ex...
CVE-2023-25991HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in RegistrationMagic plugin <= 5.1.9.2 versions.
CVE-2023-24762CRITICAL9.8OS Command injection vulnerability in D-Link DIR-867 DIR_867_FW1.30B07 allows attackers to execute arbitrary commands vi...
CVE-2023-0978MEDIUM6.7 A command injection vulnerability in Trellix Intelligent Sandbox CLI for version 5.2 and earlier, allows a local user t...
CVE-2023-26074CRITICAL9.8An issue was discovered in Samsung Mobile Chipset and Baseband Modem Chipset for Exynos 850, Exynos 980, Exynos 1080, Ex...
CVE-2023-24579MEDIUM5.5McAfee Total Protection prior to 16.0.51 allows attackers to trick a victim into uninstalling the application via the co...
CVE-2023-24578MEDIUM5.5McAfee Total Protection prior to 16.0.49 allows attackers to elevate user privileges due to DLL sideloading. This could ...
CVE-2023-24577MEDIUM5.5McAfee Total Protection prior to 16.0.50 allows attackers to elevate user privileges due to Improper Link Resolution via...
CVE-2023-1374MEDIUM4.8The Solidres plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'currency_name' parameter in vers...
CVE-2023-1372MEDIUM6.1The WH Testimonials plugin for WordPress is vulnerable to Stored Cross-Site Scripting via several parameters such as wh...
CVE-2023-26072CRITICAL9.8An issue was discovered in Samsung Mobile Chipset and Baseband Modem Chipset for Exynos 850, Exynos 980, Exynos 1080, Ex...
CVE-2023-25283HIGH7.5A stack overflow vulnerability in D-Link DIR820LA1_FW106B02 allows attackers to cause a denial of service via the reserv...
CVE-2023-24033CRITICAL9.8The Samsung Exynos Modem 5123, Exynos Modem 5300, Exynos 980, Exynos 1080, and Exynos Auto T512 baseband modem chipsets ...
CVE-2023-0629HIGH7.1Docker Desktop before 4.17.0 allows an unprivileged user to bypass Enhanced Container Isolation (ECI) restrictions by se...
CVE-2023-0628HIGH7.8Docker Desktop before 4.17.0 allows an attacker to execute an arbitrary command inside a Dev Environments container duri...
CVE-2023-1369MEDIUM5.5A vulnerability was found in TG Soft Vir.IT eXplorer 9.4.86.0. It has been rated as problematic. This issue affects the ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now