2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-34750 | CRITICAL | 9.8 | 1.0% | Jun 14, 2023 | bloofox v0.5.2.1 was discovered to contain a SQL injection vulnerability via the cid parameter at admin/index.php?mode=s... |
| CVE-2023-34747 | CRITICAL | 9.8 | 20.0% | Jun 14, 2023 | File upload vulnerability in ujcms 6.0.2 via /api/backend/core/web-file-upload/upload. |
| CVE-2023-3238 | CRITICAL | 9.8 | 0.7% | Jun 14, 2023 | A vulnerability, which was classified as critical, has been found in OTCMS up to 6.62. This issue affects some unknown p... |
| CVE-2023-3237 | CRITICAL | 9.8 | 0.9% | Jun 14, 2023 | A vulnerability classified as critical was found in OTCMS up to 6.62. This vulnerability affects unknown code. The manip... |
| CVE-2023-3234 | CRITICAL | 9.8 | 1.2% | Jun 14, 2023 | A vulnerability was found in Zhong Bang CRMEB up to 4.6.0. It has been declared as problematic. Affected by this vulnera... |
| CVE-2023-3232 | CRITICAL | 9.8 | 1.2% | Jun 14, 2023 | A vulnerability was found in Zhong Bang CRMEB up to 4.6.0 and classified as critical. This issue affects some unknown pr... |
| CVE-2023-32015 | CRITICAL | 9.8 | 2.0% | Jun 14, 2023 | Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability |
| CVE-2023-32014 | CRITICAL | 9.8 | 1.9% | Jun 14, 2023 | Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability |
| CVE-2023-29363 | CRITICAL | 9.8 | 2.0% | Jun 14, 2023 | Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability |
| CVE-2023-29357 | CRITICAL | 9.8 | 99.6% | Jun 14, 2023 | Microsoft SharePoint Server Elevation of Privilege Vulnerability |
| CVE-2023-24470 | CRITICAL | 9.1 | 0.9% | Jun 13, 2023 | Potential XML External Entity Injection in ArcSight Logger versions prior to 7.3.0. |
| CVE-2023-34944 | CRITICAL | 9.8 | 1.1% | Jun 13, 2023 | An arbitrary file upload vulnerability in the /fileUpload.lib.php component of Chamilo 1.11.* up to v1.11.18 allows atta... |
| CVE-2023-29562 | CRITICAL | 9.8 | 0.9% | Jun 13, 2023 | TP-Link TL-WPA7510 (EU)_V2_190125 was discovered to contain a stack overflow via the operation parameter at /admin/local... |
| CVE-2023-27836 | CRITICAL | 9.8 | 2.4% | Jun 13, 2023 | TP-Link TL-WPA8630P (US)_ V2_ Version 171011 was discovered to contain a command injection vulnerability via the deviceP... |
| CVE-2023-3224 | CRITICAL | 9.8 | 58.6% | Jun 13, 2023 | Code Injection in GitHub repository nuxt/nuxt prior to 3.5.3. |
| CVE-2023-34249 | CRITICAL | 9.8 | 0.6% | Jun 13, 2023 | benjjvi/PyBB is an open source bulletin board. Prior to commit dcaeccd37198ecd3e41ea766d1099354b60d69c2, benjjvi/PyBB is... |
| CVE-2023-31541 | CRITICAL | 9.8 | 1.8% | Jun 13, 2023 | A unrestricted file upload vulnerability was discovered in the ‘Browse and upload images’ feature of the CKEditor v1.2.3... |
| CVE-2023-27837 | CRITICAL | 9.8 | 2.4% | Jun 13, 2023 | TP-Link TL-WPA8630P (US)_ V2_ Version 171011 was discovered to contain a command injection vulnerability via the key par... |
| CVE-2023-35064 | CRITICAL | 9.8 | 0.7% | Jun 13, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Satos Satos Mobile... |
| CVE-2023-3050 | CRITICAL | 9.8 | 1.3% | Jun 13, 2023 | Reliance on Cookies without Validation and Integrity Checking in a Security Decision vulnerability in TMT Lockcell allow... |
| CVE-2023-3049 | CRITICAL | 9.8 | 3.7% | Jun 13, 2023 | Unrestricted Upload of File with Dangerous Type vulnerability in TMT Lockcell allows Command Injection. This issue affe... |
| CVE-2023-3048 | CRITICAL | 9.8 | 1.3% | Jun 13, 2023 | Authorization Bypass Through User-Controlled Key vulnerability in TMT Lockcell allows Authentication Abuse, Authenticati... |
| CVE-2023-3047 | CRITICAL | 9.8 | 1.7% | Jun 13, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TMT Lockcell allow... |
| CVE-2023-2807 | CRITICAL | 9.8 | 0.6% | Jun 13, 2023 | Authentication Bypass by Spoofing vulnerability in the password reset process of Pandora FMS allows an unauthenticated a... |
| CVE-2023-30766 | CRITICAL | 9.8 | 0.7% | Jun 13, 2023 | Hidden functionality issue exists in KB-AHR series and KB-IRIP series. If this vulnerability is exploited, an arbitrary ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now