2023 CVE Vulnerabilities
31,442 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-27205 | CRITICAL | 9.8 | 0.8% | Mar 9, 2023 | Best POS Management System 1.0 was discovered to contain a SQL injection vulnerability via the month parameter at /kruxt... |
| CVE-2023-27204 | CRITICAL | 9.8 | 0.8% | Mar 9, 2023 | Best POS Management System 1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /kruxton/... |
| CVE-2023-27203 | CRITICAL | 9.8 | 0.8% | Mar 9, 2023 | Best POS Management System 1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /billing/... |
| CVE-2023-27202 | CRITICAL | 9.8 | 0.8% | Mar 9, 2023 | Best POS Management System 1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /kruxton/... |
| CVE-2023-26957 | CRITICAL | 9.1 | 0.6% | Mar 9, 2023 | onekeyadmin v1.3.9 was discovered to contain an arbitrary file delete vulnerability via the component \admin\controller\... |
| CVE-2023-0223 | MEDIUM | 5.3 | 0.8% | Mar 9, 2023 | An issue has been discovered in GitLab affecting all versions starting from 15.5 before 15.7.8, all versions starting fr... |
| CVE-2023-1084 | LOW | 2.7 | 0.8% | Mar 9, 2023 | An issue has been discovered in GitLab CE/EE affecting all versions before 15.7.8, all versions starting from 15.8 befor... |
| CVE-2023-0483 | LOW | 3.8 | 0.6% | Mar 9, 2023 | An issue has been discovered in GitLab affecting all versions starting from 12.1 before 15.7.8, all versions starting fr... |
| CVE-2023-25814 | MEDIUM | 6.5 | 0.9% | Mar 9, 2023 | metersphere is an open source continuous testing platform. In versions prior to 2.7.1 a user who has permission to creat... |
| CVE-2023-25573 | HIGH | 7.5 | 49.9% | Mar 9, 2023 | metersphere is an open source continuous testing platform. In affected versions an improper access control vulnerability... |
| CVE-2023-1288 | HIGH | 7.5 | 0.5% | Mar 9, 2023 | An XML External Entity injection (XXE) vulnerability in ENOVIA Live Collaboration V6R2013xE allows an attacker t... |
| CVE-2023-1287 | CRITICAL | 9.8 | 1.0% | Mar 9, 2023 | An XSL template vulnerability in ENOVIA Live Collaboration V6R2013xE allows Remote Code Execution. |
| CVE-2023-0845 | MEDIUM | 6.5 | 1.0% | Mar 9, 2023 | Consul and Consul Enterprise allowed an authenticated user with service:write permissions to trigger a workflow that cau... |
| CVE-2023-26209 | MEDIUM | 5.3 | 1.7% | Mar 9, 2023 | A improper restriction of excessive authentication attempts vulnerability [CWE-307] in Fortinet FortiDeceptor 3.1.x and ... |
| CVE-2023-26208 | MEDIUM | 5.3 | 1.8% | Mar 9, 2023 | A improper restriction of excessive authentication attempts vulnerability [CWE-307] in Fortinet FortiAuthenticator 6.4.x... |
| CVE-2023-1294 | CRITICAL | 9.8 | 0.8% | Mar 9, 2023 | A vulnerability was found in SourceCodester File Tracker Manager System 1.0. It has been classified as critical. Affecte... |
| CVE-2023-1293 | HIGH | 8.1 | 0.6% | Mar 9, 2023 | A vulnerability was found in SourceCodester Online Graduate Tracer System 1.0 and classified as critical. This issue aff... |
| CVE-2023-1292 | CRITICAL | 9.8 | 0.8% | Mar 9, 2023 | A vulnerability has been found in SourceCodester Sales Tracker Management System 1.0 and classified as critical. This vu... |
| CVE-2023-1291 | CRITICAL | 9.8 | 0.8% | Mar 9, 2023 | A vulnerability, which was classified as critical, was found in SourceCodester Sales Tracker Management System 1.0. This... |
| CVE-2023-1290 | CRITICAL | 9.8 | 0.8% | Mar 9, 2023 | A vulnerability, which was classified as critical, has been found in SourceCodester Sales Tracker Management System 1.0.... |
| CVE-2023-1286 | MEDIUM | 4.8 | 0.4% | Mar 9, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/pimcore prior to 10.5.19. |
| CVE-2023-1251 | CRITICAL | 9.8 | 0.6% | Mar 9, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Akinsoft Wolvox. T... |
| CVE-2023-27986 | HIGH | 7.8 | 0.5% | Mar 9, 2023 | emacsclient-mail.desktop in Emacs 28.1 through 28.2 is vulnerable to Emacs Lisp code injections through a crafted mailto... |
| CVE-2023-27985 | HIGH | 7.8 | 1.1% | Mar 9, 2023 | emacsclient-mail.desktop in Emacs 28.1 through 28.2 is vulnerable to shell command injections through a crafted mailto: ... |
| CVE-2023-26110 | CRITICAL | 9.8 | 0.9% | Mar 9, 2023 | All versions of the package node-bluetooth are vulnerable to Buffer Overflow via the findSerialPortChannel method due to... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now