2023 CVE Vulnerabilities

31,442 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-0460HIGH7.3The YouTube Embedded 1.2 SDK binds to a service within the YouTube Main App. After binding, a remote context is created ...
CVE-2023-0594MEDIUM5.4Grafana is an open-source platform for monitoring and observability. Starting with the 7.0 branch, Grafana had a store...
CVE-2023-0507MEDIUM5.4Grafana is an open-source platform for monitoring and observability. Starting with the 8.1 branch, Grafana had a store...
CVE-2023-25544MEDIUM6.5 Dell NetWorker versions 19.5 and earlier contain 'Apache Tomcat' version disclosure vulnerability. A NetWorker server u...
CVE-2023-25222HIGH8.8A heap-based buffer overflow vulnerability exits in GNU LibreDWG v0.12.5 via the bit_read_RC function at bits.c.
CVE-2023-25221HIGH7.8Libde265 v1.0.10 was discovered to contain a heap-buffer-overflow vulnerability in the derive_spatial_luma_vector_predic...
CVE-2023-24758MEDIUM5.5libde265 v1.0.10 was discovered to contain a NULL pointer dereference in the ff_hevc_put_weighted_pred_avg_8_sse functio...
CVE-2023-24757MEDIUM5.5libde265 v1.0.10 was discovered to contain a NULL pointer dereference in the put_unweighted_pred_16_fallback function at...
CVE-2023-24756MEDIUM5.5libde265 v1.0.10 was discovered to contain a NULL pointer dereference in the ff_hevc_put_unweighted_pred_8_sse function ...
CVE-2023-24755MEDIUM5.5libde265 v1.0.10 was discovered to contain a NULL pointer dereference in the put_weighted_pred_8_fallback function at fa...
CVE-2023-24754MEDIUM5.5libde265 v1.0.10 was discovered to contain a NULL pointer dereference in the ff_hevc_put_weighted_pred_avg_8_sse functio...
CVE-2023-24752MEDIUM5.5libde265 v1.0.10 was discovered to contain a NULL pointer dereference in the ff_hevc_put_hevc_epel_pixels_8_sse function...
CVE-2023-24751MEDIUM6.5libde265 v1.0.10 was discovered to contain a NULL pointer dereference in the mc_chroma function at motion.cc. This vulne...
CVE-2023-24567MEDIUM6.5 Dell NetWorker versions 19.5 and earlier contain 'RabbitMQ' version disclosure vulnerability. A NetWorker server user w...
CVE-2023-23315CRITICAL9.8The PrestaShop e-commerce platform module stripejs contains a Blind SQL injection vulnerability up to version 4.5.5. The...
CVE-2023-1117MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/pimcore prior to 10.5.18.
CVE-2023-1116MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/pimcore prior to 10.5.18.
CVE-2023-1115MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/pimcore prior to 10.5.18.
CVE-2023-23984MEDIUM5.4Cross-Site Request Forgery (CSRF) vulnerability in Wow-Company Bubble Menu – circle floating menu plugin <= 3.0.1 leadin...
CVE-2023-23974MEDIUM5.4Cross-Site Request Forgery (CSRF) vulnerability in Fullworks Quick Event Manager plugin <= 9.7.4 affecting all registrat...
CVE-2023-23973MEDIUM6.5Cross-Site Request Forgery (CSRF) vulnerability in a3rev Software Contact Us Page – Contact People plugin <= 3.7.0.
CVE-2023-1114CRITICAL9.8Missing Authorization vulnerability in Eskom e-Belediye allows Information Elicitation. This issue affects e-Belediye: ...
CVE-2023-1064CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Uzay Baskul Weighb...
CVE-2023-1113MEDIUM4.8A vulnerability was found in SourceCodester Simple Payroll System 1.0. It has been declared as problematic. Affected by ...
CVE-2023-1112CRITICAL9.8A vulnerability was found in Drag and Drop Multiple File Upload Contact Form 7 5.0.6.1 on WordPress. It has been classif...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now