2023 CVE Vulnerabilities
31,442 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-1010 | MEDIUM | 5.5 | 0.4% | Feb 24, 2023 | A vulnerability classified as critical was found in vox2png 1.0. Affected by this vulnerability is an unknown functional... |
| CVE-2023-1009 | MEDIUM | 5.5 | 15.7% | Feb 24, 2023 | ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability classified as critical has been found in DrayTek Vigor 2960 1.5.1.4/1.5.... |
| CVE-2023-1008 | MEDIUM | 5.5 | 0.4% | Feb 24, 2023 | A vulnerability was found in Twister Antivirus 8.17. It has been rated as problematic. This issue affects the function 0... |
| CVE-2023-1007 | HIGH | 7.8 | 0.5% | Feb 24, 2023 | A vulnerability was found in Twister Antivirus 8.17. It has been declared as critical. This vulnerability affects the fu... |
| CVE-2023-0595 | MEDIUM | 5.3 | 0.4% | Feb 24, 2023 | A CWE-117: Improper Output Neutralization for Logs vulnerability exists that could cause the misinterpretation of log fi... |
| CVE-2023-1006 | MEDIUM | 5.4 | 0.3% | Feb 24, 2023 | A vulnerability was found in SourceCodester Medical Certificate Generator App 1.0. It has been classified as problematic... |
| CVE-2023-1005 | HIGH | 7.8 | 0.4% | Feb 24, 2023 | A vulnerability was found in JP1016 Markdown-Electron and classified as critical. Affected by this issue is some unknown... |
| CVE-2023-1004 | HIGH | 7.8 | 0.4% | Feb 24, 2023 | A vulnerability has been found in MarkText up to 0.17.1 on Windows and classified as critical. Affected by this vulnerab... |
| CVE-2023-1002 | MEDIUM | 6.5 | 1.0% | Feb 24, 2023 | A vulnerability, which was classified as problematic, has been found in MuYuCMS 2.2. This issue affects some unknown pro... |
| CVE-2023-0999 | HIGH | 8.8 | 0.5% | Feb 24, 2023 | A vulnerability classified as problematic was found in SourceCodester Sales Tracker Management System 1.0. This vulnerab... |
| CVE-2023-0998 | MEDIUM | 5.3 | 0.9% | Feb 24, 2023 | A vulnerability classified as critical has been found in SourceCodester Alphaware Simple E-Commerce System 1.0. This aff... |
| CVE-2023-0997 | HIGH | 8.8 | 0.9% | Feb 24, 2023 | A vulnerability was found in SourceCodester Moosikay E-Commerce System 1.0. It has been rated as critical. Affected by t... |
| CVE-2023-22427 | MEDIUM | 4.8 | 0.8% | Feb 24, 2023 | Stored cross-site scripting vulnerability in Theme switching function of SHIRASAGI v1.16.2 and earlier versions allows a... |
| CVE-2023-22425 | MEDIUM | 5.4 | 0.8% | Feb 24, 2023 | Stored cross-site scripting vulnerability in Schedule function of SHIRASAGI v1.16.2 and earlier versions allows a remote... |
| CVE-2023-26102 | HIGH | 8.2 | 0.8% | Feb 24, 2023 | All versions of the package rangy are vulnerable to Prototype Pollution when using the extend() function in file rangy-c... |
| CVE-2023-0996 | HIGH | 7.8 | 0.3% | Feb 24, 2023 | There is a vulnerability in the strided image data parsing code in the emscripten wrapper for libheif. An attacker coul... |
| CVE-2023-0995 | MEDIUM | 5.4 | 0.5% | Feb 24, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository unilogies/bumsys prior to v2.0.1. |
| CVE-2023-0994 | HIGH | 7.5 | 1.0% | Feb 24, 2023 | Exposure of Sensitive Information to an Unauthorized Actor in GitHub repository francoisjacquet/rosariosis prior to 10.8... |
| CVE-2023-26468 | CRITICAL | 9.1 | 0.6% | Feb 24, 2023 | Cerebrate 1.12 does not properly consider organisation_id during creation of API keys. |
| CVE-2023-24212 | CRITICAL | 9.8 | 1.1% | Feb 23, 2023 | Tenda AX3 V16.03.12.11 was discovered to contain a stack overflow via the timeType function at /goform/SetSysTimeCfg. |
| CVE-2023-23296 | MEDIUM | 6.5 | 0.8% | Feb 23, 2023 | Korenix JetWave 4200 Series 1.3.0 and JetWave 3200 Series 1.6.0 are vulnerable to Denial of Service via /goform/formDefa... |
| CVE-2023-23295 | HIGH | 8.8 | 3.8% | Feb 23, 2023 | Korenix Jetwave 4200 Series 1.3.0 and JetWave 3000 Series 1.6.0 are vulnerable to Command Injection via /goform/formSysC... |
| CVE-2023-23294 | HIGH | 8.8 | 2.7% | Feb 23, 2023 | Korenix JetWave 4200 Series 1.3.0 and JetWave 3000 Series 1.6.0 are vulnerable to Command Injection. An attacker can mod... |
| CVE-2023-25824 | HIGH | 7.5 | 1.1% | Feb 23, 2023 | Mod_gnutls is a TLS module for Apache HTTPD based on GnuTLS. Versions from 0.9.0 to 0.12.0 (including) did not properly ... |
| CVE-2023-25823 | CRITICAL | 9.8 | 0.6% | Feb 23, 2023 | Gradio is an open-source Python library to build machine learning and data science demos and web applications. Versions ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now