2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2023-32753CRITICAL9.8OMICARD EDM’s file uploading function does not restrict upload of file with dangerous type. An unauthenticated remote at...
CVE-2023-32752CRITICAL9.8L7 Networks InstantScan IS-8000 & InstantQoS IQ-8000’s file uploading function does not restrict upload of file with dan...
CVE-2023-2080CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Forcepoint Cloud S...
CVE-2023-34800CRITICAL9.8D-Link Go-RT-AC750 revA_v101b03 was discovered to contain a command injection vulnerability via the service parameter at...
CVE-2023-34852CRITICAL9.8PublicCMS <=V4.0.202302 is vulnerable to Insecure Permissions.
CVE-2023-31672CRITICAL9.8In the PrestaShop < 2.4.3 module "Length, weight or volume sell" (ailinear) there is a SQL injection vulnerability.
CVE-2023-2686CRITICAL9.8Buffer overflow in Wi-Fi Commissioning MicriumOS example in Silicon Labs Gecko SDK v4.2.3 or earlier allows connected de...
CVE-2023-21130CRITICAL9.8In btm_ble_periodic_adv_sync_lost of btm_ble_gap.cc, there is a possible remote code execution due to a buffer overflow....
CVE-2023-34880CRITICAL9.8cmseasy v7.7.7.7 20230520 was discovered to contain a path traversal vulnerability via the add_action method at lib/admi...
CVE-2023-3275CRITICAL9.8A vulnerability classified as critical was found in PHPGurukul Rail Pass Management System 1.0. Affected by this vulnera...
CVE-2023-31746CRITICAL9.8There is a command injection vulnerability in the adslr VW2100 router with firmware version M1DV1.0. An unauthenticated ...
CVE-2023-30150CRITICAL9.8PrestaShop leocustomajax 1.0 and 1.0.0 are vulnerable to SQL Injection via modules/leocustomajax/leoajax.php.
CVE-2023-1329CRITICAL9.8A potential security vulnerability has been identified for certain HP multifunction printers (MFPs). The vulnerability m...
CVE-2023-31671CRITICAL9.8PrestaShop postfinance <= 17.1.13 is vulnerable to SQL Injection via PostfinanceValidationModuleFrontController::postPro...
CVE-2023-34095CRITICAL9.8cpdb-libs provides frontend and backend libraries for the Common Printing Dialog Backends (CPDB) project. In versions 1....
CVE-2023-25367CRITICAL9.8Siglent SDS 1104X-E SDS1xx4X-E_V6.1.37R9.ADS allows unfiltered user input resulting in Remote Code Execution (RCE) with ...
CVE-2023-34540CRITICAL9.8Langchain before v0.0.225 was discovered to contain a remote code execution (RCE) vulnerability in the component JiraAPI...
CVE-2023-34101CRITICAL9.1Contiki-NG is an operating system for internet of things devices. In version 4.8 and prior, when processing ICMP DAO pac...
CVE-2023-34865CRITICAL9.8Directory traversal vulnerability in ujcms 6.0.2 allows attackers to move files via the rename feature.
CVE-2023-34756CRITICAL9.8bloofox v0.5.2.1 was discovered to contain a SQL injection vulnerability via the cid parameter at admin/index.php?mode=s...
CVE-2023-34755CRITICAL9.8bloofox v0.5.2.1 was discovered to contain a SQL injection vulnerability via the userid parameter at admin/index.php?mod...
CVE-2023-34754CRITICAL9.8bloofox v0.5.2.1 was discovered to contain a SQL injection vulnerability via the pid parameter at admin/index.php?mode=s...
CVE-2023-34753CRITICAL9.8bloofox v0.5.2.1 was discovered to contain a SQL injection vulnerability via the tid parameter at admin/index.php?mode=s...
CVE-2023-34752CRITICAL9.8bloofox v0.5.2.1 was discovered to contain a SQL injection vulnerability via the lid parameter at admin/index.php?mode=s...
CVE-2023-34751CRITICAL9.8bloofox v0.5.2.1 was discovered to contain a SQL injection vulnerability via the gid parameter at admin/index.php?mode=u...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now