2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-32753 | CRITICAL | 9.8 | 0.9% | Jun 16, 2023 | OMICARD EDM’s file uploading function does not restrict upload of file with dangerous type. An unauthenticated remote at... |
| CVE-2023-32752 | CRITICAL | 9.8 | 0.9% | Jun 16, 2023 | L7 Networks InstantScan IS-8000 & InstantQoS IQ-8000’s file uploading function does not restrict upload of file with dan... |
| CVE-2023-2080 | CRITICAL | 9.8 | 0.5% | Jun 15, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Forcepoint Cloud S... |
| CVE-2023-34800 | CRITICAL | 9.8 | 29.3% | Jun 15, 2023 | D-Link Go-RT-AC750 revA_v101b03 was discovered to contain a command injection vulnerability via the service parameter at... |
| CVE-2023-34852 | CRITICAL | 9.8 | 1.0% | Jun 15, 2023 | PublicCMS <=V4.0.202302 is vulnerable to Insecure Permissions. |
| CVE-2023-31672 | CRITICAL | 9.8 | 0.9% | Jun 15, 2023 | In the PrestaShop < 2.4.3 module "Length, weight or volume sell" (ailinear) there is a SQL injection vulnerability. |
| CVE-2023-2686 | CRITICAL | 9.8 | 0.8% | Jun 15, 2023 | Buffer overflow in Wi-Fi Commissioning MicriumOS example in Silicon Labs Gecko SDK v4.2.3 or earlier allows connected de... |
| CVE-2023-21130 | CRITICAL | 9.8 | 0.5% | Jun 15, 2023 | In btm_ble_periodic_adv_sync_lost of btm_ble_gap.cc, there is a possible remote code execution due to a buffer overflow.... |
| CVE-2023-34880 | CRITICAL | 9.8 | 1.1% | Jun 15, 2023 | cmseasy v7.7.7.7 20230520 was discovered to contain a path traversal vulnerability via the add_action method at lib/admi... |
| CVE-2023-3275 | CRITICAL | 9.8 | 0.5% | Jun 15, 2023 | A vulnerability classified as critical was found in PHPGurukul Rail Pass Management System 1.0. Affected by this vulnera... |
| CVE-2023-31746 | CRITICAL | 9.8 | 3.2% | Jun 14, 2023 | There is a command injection vulnerability in the adslr VW2100 router with firmware version M1DV1.0. An unauthenticated ... |
| CVE-2023-30150 | CRITICAL | 9.8 | 3.8% | Jun 14, 2023 | PrestaShop leocustomajax 1.0 and 1.0.0 are vulnerable to SQL Injection via modules/leocustomajax/leoajax.php. |
| CVE-2023-1329 | CRITICAL | 9.8 | 1.9% | Jun 14, 2023 | A potential security vulnerability has been identified for certain HP multifunction printers (MFPs). The vulnerability m... |
| CVE-2023-31671 | CRITICAL | 9.8 | 0.6% | Jun 14, 2023 | PrestaShop postfinance <= 17.1.13 is vulnerable to SQL Injection via PostfinanceValidationModuleFrontController::postPro... |
| CVE-2023-34095 | CRITICAL | 9.8 | 1.5% | Jun 14, 2023 | cpdb-libs provides frontend and backend libraries for the Common Printing Dialog Backends (CPDB) project. In versions 1.... |
| CVE-2023-25367 | CRITICAL | 9.8 | 1.7% | Jun 14, 2023 | Siglent SDS 1104X-E SDS1xx4X-E_V6.1.37R9.ADS allows unfiltered user input resulting in Remote Code Execution (RCE) with ... |
| CVE-2023-34540 | CRITICAL | 9.8 | 1.7% | Jun 14, 2023 | Langchain before v0.0.225 was discovered to contain a remote code execution (RCE) vulnerability in the component JiraAPI... |
| CVE-2023-34101 | CRITICAL | 9.1 | 0.5% | Jun 14, 2023 | Contiki-NG is an operating system for internet of things devices. In version 4.8 and prior, when processing ICMP DAO pac... |
| CVE-2023-34865 | CRITICAL | 9.8 | 1.2% | Jun 14, 2023 | Directory traversal vulnerability in ujcms 6.0.2 allows attackers to move files via the rename feature. |
| CVE-2023-34756 | CRITICAL | 9.8 | 4.2% | Jun 14, 2023 | bloofox v0.5.2.1 was discovered to contain a SQL injection vulnerability via the cid parameter at admin/index.php?mode=s... |
| CVE-2023-34755 | CRITICAL | 9.8 | 4.2% | Jun 14, 2023 | bloofox v0.5.2.1 was discovered to contain a SQL injection vulnerability via the userid parameter at admin/index.php?mod... |
| CVE-2023-34754 | CRITICAL | 9.8 | 3.4% | Jun 14, 2023 | bloofox v0.5.2.1 was discovered to contain a SQL injection vulnerability via the pid parameter at admin/index.php?mode=s... |
| CVE-2023-34753 | CRITICAL | 9.8 | 4.2% | Jun 14, 2023 | bloofox v0.5.2.1 was discovered to contain a SQL injection vulnerability via the tid parameter at admin/index.php?mode=s... |
| CVE-2023-34752 | CRITICAL | 9.8 | 5.5% | Jun 14, 2023 | bloofox v0.5.2.1 was discovered to contain a SQL injection vulnerability via the lid parameter at admin/index.php?mode=s... |
| CVE-2023-34751 | CRITICAL | 9.8 | 4.2% | Jun 14, 2023 | bloofox v0.5.2.1 was discovered to contain a SQL injection vulnerability via the gid parameter at admin/index.php?mode=u... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now