2023 CVE Vulnerabilities
31,442 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-0059 | MEDIUM | 5.4 | 0.5% | Feb 21, 2023 | The Youzify WordPress plugin before 1.2.2 does not validate and escape some of its shortcode attributes before outputtin... |
| CVE-2023-24575 | HIGH | 7.8 | 0.2% | Feb 21, 2023 | Dell Multifunction Printer E525w Driver and Software Suite, versions prior to 1.047.2022, A05, contain a local privileg... |
| CVE-2023-26266 | HIGH | 7.3 | 0.4% | Feb 21, 2023 | In AFL++ 4.05c, the CmpLog component uses the current working directory to resolve and execute unprefixed fuzzing target... |
| CVE-2023-26265 | MEDIUM | 5.3 | 0.6% | Feb 21, 2023 | The Borg theme before 1.1.19 for Backdrop CMS does not sufficiently sanitize path arguments that are passed in via a URL... |
| CVE-2023-26253 | HIGH | 7.5 | 0.9% | Feb 21, 2023 | In Gluster GlusterFS 11.0, there is an xlators/mount/fuse/src/fuse-bridge.c notify stack-based buffer over-read. |
| CVE-2023-26249 | HIGH | 7.5 | 0.7% | Feb 21, 2023 | Knot Resolver before 5.6.0 enables attackers to consume its resources, launching amplification attacks and potentially c... |
| CVE-2023-26242 | HIGH | 7.8 | 0.2% | Feb 21, 2023 | afu_mmio_region_get_by_offset in drivers/fpga/dfl-afu-region.c in the Linux kernel through 6.1.12 has an integer overflo... |
| CVE-2023-26235 | MEDIUM | 6.1 | 0.4% | Feb 21, 2023 | JD-GUI 1.6.6 allows XSS via util/net/InterProcessCommunicationUtil.java. |
| CVE-2023-26234 | CRITICAL | 9.8 | 0.8% | Feb 21, 2023 | JD-GUI 1.6.6 allows deserialization via UIMainWindowPreferencesProvider.singleInstance. |
| CVE-2023-23453 | CRITICAL | 9.8 | 1.1% | Feb 20, 2023 | Missing Authentication for Critical Function in SICK FX0-GENT v3 Firmware Version V3.04 and V3.05 allows an unprivileged... |
| CVE-2023-23452 | CRITICAL | 9.8 | 1.1% | Feb 20, 2023 | Missing Authentication for Critical Function in SICK FX0-GPNT v3 Firmware Version V3.04 and V3.05 allows an unprivileged... |
| CVE-2023-25805 | CRITICAL | 9.8 | 1.6% | Feb 20, 2023 | versionn, software for changing version information across multiple files, has a command injection vulnerability in all ... |
| CVE-2023-25656 | HIGH | 7.5 | 0.4% | Feb 20, 2023 | notation-go is a collection of libraries for supporting Notation sign, verify, push, and pull of oci artifacts. Prior to... |
| CVE-2023-25613 | CRITICAL | 9.8 | 1.5% | Feb 20, 2023 | An LDAP Injection vulnerability exists in the LdapIdentityBackend of Apache Kerby before 2.0.3. |
| CVE-2023-25570 | HIGH | 7.5 | 0.8% | Feb 20, 2023 | Apollo is a configuration management system. Prior to version 2.1.0, there are potential security issues if users expose... |
| CVE-2023-25569 | MEDIUM | 5.7 | 0.4% | Feb 20, 2023 | Apollo is a configuration management system. Prior to version 2.1.0, a low-privileged user can create a special web page... |
| CVE-2023-24998 | HIGH | 7.5 | 46.8% | Feb 20, 2023 | Apache Commons FileUpload before 1.5 does not limit the number of request parts to be processed resulting in the possibi... |
| CVE-2023-26093 | CRITICAL | 9.8 | 0.9% | Feb 20, 2023 | Liima before 1.17.28 allows Hibernate query language (HQL) injection, related to colToSort in the deployment filter. |
| CVE-2023-26092 | CRITICAL | 9.8 | 0.9% | Feb 20, 2023 | Liima before 1.17.28 allows server-side template injection. |
| CVE-2023-26081 | HIGH | 7.5 | 1.2% | Feb 20, 2023 | In Epiphany (aka GNOME Web) through 43.0, untrusted web content can trick users into exfiltrating passwords, because aut... |
| CVE-2023-0919 | LOW | 3.5 | 0.5% | Feb 19, 2023 | Missing Authentication for Critical Function in GitHub repository kareadita/kavita prior to 0.7.0. |
| CVE-2023-0918 | CRITICAL | 9.8 | 0.7% | Feb 19, 2023 | A vulnerability has been found in codeprojects Pharmacy Management System 1.0 and classified as critical. This vulnerabi... |
| CVE-2023-0917 | CRITICAL | 9.8 | 0.9% | Feb 19, 2023 | A vulnerability, which was classified as critical, was found in SourceCodester Simple Customer Relationship Management S... |
| CVE-2023-0916 | HIGH | 8.8 | 3.1% | Feb 19, 2023 | A vulnerability classified as critical was found in SourceCodester Auto Dealer Management System 1.0. Affected by this v... |
| CVE-2023-0915 | HIGH | 8.8 | 1.7% | Feb 19, 2023 | A vulnerability classified as critical has been found in SourceCodester Auto Dealer Management System 1.0. Affected is a... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now