2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-5038 | HIGH | 7.5 | 0.4% | Jun 25, 2024 | badmonkey, a Security Researcher has found a flaw that allows for a unauthenticated DoS attack on the camera. An attacke... |
| CVE-2023-6198 | CRITICAL | 9.3 | 0.4% | Jun 25, 2024 | Use of Hard-coded Credentials vulnerability in Baicells Snap Router BaiCE_BMI on EP3011 (User Passwords modules) allows ... |
| CVE-2023-50029 | CRITICAL | 10 | 0.8% | Jun 24, 2024 | PHP Injection vulnerability in the module "M4 PDF Extensions" (m4pdf) up to version 3.3.2 from PrestaAddons for PrestaSh... |
| CVE-2023-45195 | MEDIUM | 5.3 | 0.4% | Jun 24, 2024 | Adminer and AdminerEvo are vulnerable to SSRF via database connection fields. This could allow an unauthenticated remote... |
| CVE-2023-45196 | HIGH | 7.5 | 0.6% | Jun 24, 2024 | Adminer and AdminerEvo allow an unauthenticated remote attacker to cause a denial of service by connecting to an attacke... |
| CVE-2023-49793 | MEDIUM | 6.5 | 0.7% | Jun 24, 2024 | CodeChecker is an analyzer tooling, defect database and viewer extension for the Clang Static Analyzer and Clang Tidy. Z... |
| CVE-2023-45673 | CRITICAL | 9 | 1.0% | Jun 21, 2024 | Joplin is a free, open source note taking and to-do application. A remote code execution (RCE) vulnerability in affected... |
| CVE-2023-39517 | MEDIUM | 5.4 | 0.5% | Jun 21, 2024 | Joplin is a free, open source note taking and to-do application. A Cross site scripting (XSS) vulnerability in affected ... |
| CVE-2023-38506 | MEDIUM | 5.4 | 0.4% | Jun 21, 2024 | Joplin is a free, open source note taking and to-do application. A Cross-site Scripting (XSS) vulnerability allows pasti... |
| CVE-2023-37898 | MEDIUM | 5.4 | 0.4% | Jun 21, 2024 | Joplin is a free, open source note taking and to-do application. A Cross-site Scripting (XSS) vulnerability allows an un... |
| CVE-2023-38389 | CRITICAL | 9.8 | 1.2% | Jun 21, 2024 | Incorrect Authorization vulnerability in Artbees JupiterX Core allows Accessing Functionality Not Properly Constrained b... |
| CVE-2023-45197 | CRITICAL | 9.8 | 0.7% | Jun 21, 2024 | The file upload plugin in Adminer and AdminerEvo allows an attacker to upload a file with a table name of “..” to the ro... |
| CVE-2023-51375 | HIGH | 8.8 | 0.3% | Jun 21, 2024 | Missing Authorization vulnerability in WPDeveloper EmbedPress.This issue affects EmbedPress: from n/a through 3.8.3. |
| CVE-2023-52884 | MEDIUM | 4.4 | 0.2% | Jun 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: Input: cyapa - add missing input core locking to su... |
| CVE-2023-3352 | MEDIUM | 4.3 | 0.3% | Jun 21, 2024 | The Smush plugin for WordPress is vulnerable to unauthorized deletion of the resmush list due to a missing capability ch... |
| CVE-2023-3353 | — | — | — | Jun 20, 2024 | Rejected reason: ** REJECT ** Developer patched two issues with a single patch, so only one CVE is necessary. Please use... |
| CVE-2023-49113 | HIGH | 7.8 | 0.2% | Jun 20, 2024 | The Kiuwan Local Analyzer (KLA) Java scanning application contains several hard-coded secrets in plain text format. In ... |
| CVE-2023-49112 | MEDIUM | 6.5 | 0.5% | Jun 20, 2024 | Kiuwan provides an API endpoint /saas/rest/v1/info/application to get information about any application, providing on... |
| CVE-2023-49111 | MEDIUM | 6.5 | 0.6% | Jun 20, 2024 | For Kiuwan installations with SSO (single sign-on) enabled, an unauthenticated reflected cross-site scripting attack ca... |
| CVE-2023-49110 | HIGH | 7.2 | 0.8% | Jun 20, 2024 | When the Kiuwan Local Analyzer uploads the scan results to the Kiuwan SAST web application (either on-premises or cloud... |
| CVE-2023-52883 | HIGH | 7.5 | 0.6% | Jun 20, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Fix possible null pointer dereference ... |
| CVE-2023-25646 | MEDIUM | 6.4 | 0.2% | Jun 20, 2024 | There is an unauthorized access vulnerability in ZTE H388X. If H388X is caused by brute-force serial port cracking,attac... |
| CVE-2023-3204 | MEDIUM | 6.5 | 0.4% | Jun 20, 2024 | The Materialis theme for WordPress is vulnerable to limited arbitrary options updates in versions up to, and including, ... |
| CVE-2023-39312 | HIGH | 8.8 | 0.5% | Jun 19, 2024 | Missing Authorization vulnerability in ThemeFusion Avada.This issue affects Avada: from n/a through 7.11.1. |
| CVE-2023-38394 | HIGH | 8.8 | 0.4% | Jun 19, 2024 | Missing Authorization vulnerability in Artbees JupiterX Core.This issue affects JupiterX Core: from 3.0.0 through 3.3.0. |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now