2023 CVE Vulnerabilities

31,442 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-24811MEDIUM6.1Misskey is an open source, decentralized social media platform. In versions prior to 13.3.2 the URL preview function is ...
CVE-2023-24810MEDIUM6.1Misskey is an open source, decentralized social media platform. Due to insufficient validation of the redirect URL durin...
CVE-2023-24093CRITICAL9.8An access control issue in H3C A210-G A210-GV100R005 allows attackers to authenticate without a password.
CVE-2023-0966HIGH8.8A vulnerability classified as problematic was found in SourceCodester Online Eyewear Shop 1.0. Affected by this vulnerab...
CVE-2023-0941HIGH8.8Use after free in Prompts in Google Chrome prior to 110.0.5481.177 allowed a remote attacker to potentially exploit heap...
CVE-2023-0933HIGH8.8Integer overflow in PDF in Google Chrome prior to 110.0.5481.177 allowed a remote attacker to potentially exploit heap c...
CVE-2023-0932HIGH8.8Use after free in WebRTC in Google Chrome on Windows prior to 110.0.5481.177 allowed a remote attacker who convinced the...
CVE-2023-0931HIGH8.8Use after free in Video in Google Chrome prior to 110.0.5481.177 allowed a remote attacker to potentially exploit heap c...
CVE-2023-0930HIGH8.8Heap buffer overflow in Video in Google Chrome prior to 110.0.5481.177 allowed a remote attacker to potentially exploit ...
CVE-2023-0929HIGH8.8Use after free in Vulkan in Google Chrome prior to 110.0.5481.177 allowed a remote attacker to potentially exploit heap ...
CVE-2023-0928HIGH8.8Use after free in SwiftShader in Google Chrome prior to 110.0.5481.177 allowed a remote attacker to potentially exploit ...
CVE-2023-0927HIGH8.8Use after free in Web Payments API in Google Chrome on Android prior to 110.0.5481.177 allowed a remote attacker who had...
CVE-2023-25813CRITICAL9.8Sequelize is a Node.js ORM tool. In versions prior to 6.19.1 a SQL injection exploit exists related to replacements. Par...
CVE-2023-25579HIGH7.5Nextcloud server is a self hosted home cloud product. In affected versions the `OC\Files\Node\Folder::getFullPath()` fun...
CVE-2023-25154MEDIUM6.1Misskey is an open source, decentralized social media platform. In versions prior to 13.5.0 the link to the instance to ...
CVE-2023-0964HIGH8.1A vulnerability classified as critical has been found in SourceCodester Sales Tracker Management System 1.0. Affected is...
CVE-2023-0963CRITICAL9.8A vulnerability was found in SourceCodester Music Gallery Site 1.0. It has been rated as critical. This issue affects so...
CVE-2023-0962HIGH8.8A vulnerability was found in SourceCodester Music Gallery Site 1.0. It has been declared as critical. This vulnerability...
CVE-2023-0961CRITICAL9.8A vulnerability was found in SourceCodester Music Gallery Site 1.0. It has been classified as critical. This affects an ...
CVE-2023-0846MEDIUM6.1Unauthenticated, stored cross-site scripting in the display of alarm reduction keys in multiple versions of OpenNMS Hori...
CVE-2023-26214MEDIUM5.4The BusinessConnect UI component of TIBCO Software Inc.'s TIBCO BusinessConnect contains easily exploitable Reflected Cr...
CVE-2023-0960CRITICAL9.8A vulnerability was found in SeaCMS 11.6 and classified as problematic. Affected by this issue is some unknown functiona...
CVE-2023-23040HIGH7.5TP-Link router TL-WR940N V6 3.19.1 Build 180119 uses a deprecated MD5 algorithm to hash the admin password used for basi...
CVE-2023-23039MEDIUM5.7An issue was discovered in the Linux kernel through 6.2.0-rc2. drivers/tty/vcc.c has a race condition and resultant use-...
CVE-2023-23063HIGH7.5Cellinx NVT v1.0.6.002b was discovered to contain a local file disclosure vulnerability via the component /cgi-bin/GetFi...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now