2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-39476 | CRITICAL | 9.8 | 1.8% | May 3, 2024 | Inductive Automation Ignition JavaSerializationCodec Deserialization of Untrusted Data Remote Code Execution Vulnerabili... |
| CVE-2023-39475 | CRITICAL | 9.8 | 3.1% | May 3, 2024 | Inductive Automation Ignition ParameterVersionJavaSerializationCodec Deserialization of Untrusted Data Remote Code Execu... |
| CVE-2023-39457 | CRITICAL | 9.8 | 1.6% | May 3, 2024 | Triangle MicroWorks SCADA Data Gateway Missing Authentication Vulnerability. This vulnerability allows remote attackers ... |
| CVE-2023-38121 | CRITICAL | 9 | 1.1% | May 3, 2024 | Inductive Automation Ignition OPC UA Quick Client Cross-Site Scripting Remote Code Execution Vulnerability. This vulnera... |
| CVE-2023-38096 | CRITICAL | 9.8 | 83.0% | May 3, 2024 | NETGEAR ProSAFE Network Management System MyHandlerInterceptor Authentication Bypass Vulnerability. This vulnerability a... |
| CVE-2023-32174 | CRITICAL | 9.1 | 1.9% | May 3, 2024 | Unified Automation UaGateway NodeManagerOpcUa Use-After-Free Remote Code Execution Vulnerability. This vulnerability all... |
| CVE-2023-32169 | CRITICAL | 9.8 | 56.1% | May 3, 2024 | D-Link D-View Use of Hard-coded Cryptographic Key Authentication Bypass Vulnerability. This vulnerability allows remote ... |
| CVE-2023-32165 | CRITICAL | 9.8 | 73.3% | May 3, 2024 | D-Link D-View TftpReceiveFileHandler Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows ... |
| CVE-2023-27335 | CRITICAL | 9.6 | 1.2% | May 3, 2024 | Softing edgeAggregator Client Cross-Site Scripting Remote Code Execution Vulnerability. This vulnerability allows remote... |
| CVE-2023-28798 | CRITICAL | 9.8 | 0.4% | May 2, 2024 | An out-of-bounds write to heap in the pacparser library on Zscaler Client Connector on Mac may lead to arbitrary code ex... |
| CVE-2023-46295 | CRITICAL | 9.8 | 0.9% | May 1, 2024 | An issue was discovered in Teledyne FLIR M300 2.00-19. Unauthenticated remote code execution can occur in the web server... |
| CVE-2023-26793 | CRITICAL | 9.8 | 0.7% | May 1, 2024 | libmodbus v3.1.10 has a heap-based buffer overflow vulnerability in read_io_status function in src/modbus.c. |
| CVE-2023-49606 | CRITICAL | 9.8 | 63.1% | May 1, 2024 | A use-after-free vulnerability exists in the HTTP Connection Headers parsing in Tinyproxy 1.11.1 and Tinyproxy 1.10.0. A... |
| CVE-2023-47212 | CRITICAL | 9.8 | 1.4% | May 1, 2024 | A heap-based buffer overflow vulnerability exists in the comment functionality of stb _vorbis.c v1.22. A specially craft... |
| CVE-2023-49473 | CRITICAL | 9.8 | 0.5% | Apr 30, 2024 | Shenzhen JF6000 Cloud Media Collaboration Processing Platform firmware version V1.2.0 and software version V2.0.0 build ... |
| CVE-2023-50434 | CRITICAL | 9.8 | 0.6% | Apr 29, 2024 | emdns_resolve_raw in emdns.c in emdns through fbd1eef calls strlen with an input that may not be '\0' terminated, leadin... |
| CVE-2023-47222 | CRITICAL | 9.8 | 0.5% | Apr 26, 2024 | An exposure of sensitive information vulnerability has been reported to affect Media Streaming add-on. If exploited, the... |
| CVE-2023-51484 | CRITICAL | 9.8 | 0.7% | Apr 25, 2024 | Improper Authentication vulnerability in wp-buy Login as User or Customer (User Switching) allows Privilege Escalation.T... |
| CVE-2023-51482 | CRITICAL | 9.9 | 0.7% | Apr 25, 2024 | Improper Authentication vulnerability in EazyPlugins Eazy Plugin Manager allows Accessing Functionality Not Properly Con... |
| CVE-2023-51478 | CRITICAL | 9.8 | 0.7% | Apr 25, 2024 | Improper Authentication vulnerability in Abdul Hakeem Build App Online allows Privilege Escalation.This issue affects Bu... |
| CVE-2023-51477 | CRITICAL | 9.8 | 0.7% | Apr 24, 2024 | Improper Authentication vulnerability in BUDDYBOSS DMCC BuddyBoss Theme allows Accessing Functionality Not Properly Cons... |
| CVE-2023-51472 | CRITICAL | 9.8 | 0.7% | Apr 24, 2024 | Improper Authentication vulnerability in Mestres do WP Checkout Mestres WP allows Privilege Escalation.This issue affect... |
| CVE-2023-51425 | CRITICAL | 9.8 | 0.6% | Apr 24, 2024 | Improper Privilege Management vulnerability in Jacques Malgrange Rencontre – Dating Site allows Privilege Escalation.Thi... |
| CVE-2023-51405 | CRITICAL | 9.8 | 0.7% | Apr 24, 2024 | Improper Authentication vulnerability in Repute Infosystems BookingPress allows Accessing Functionality Not Properly Con... |
| CVE-2023-47504 | CRITICAL | 9.8 | 1.5% | Apr 24, 2024 | Improper Authentication vulnerability in Elementor Elementor Website Builder allows Accessing Functionality Not Properly... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now