2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-45121HIGH8.8Online Examination System v1.0 is vulnerable to multiple Authenticated SQL Injection vulnerabilities. The 'desc' paramet...
CVE-2023-45120HIGH8.8Online Examination System v1.0 is vulnerable to multiple Authenticated SQL Injection vulnerabilities. The 'qid' paramete...
CVE-2023-45119HIGH8.8Online Examination System v1.0 is vulnerable to multiple Authenticated SQL Injection vulnerabilities. The 'n' parameter ...
CVE-2023-45118HIGH8.8Online Examination System v1.0 is vulnerable to multiple Authenticated SQL Injection vulnerabilities. The 'fdid' paramet...
CVE-2023-45117HIGH8.8Online Examination System v1.0 is vulnerable to multiple Authenticated SQL Injection vulnerabilities. The 'eid' paramete...
CVE-2023-45116HIGH8.8Online Examination System v1.0 is vulnerable to multiple Authenticated SQL Injection vulnerabilities. The 'demail' param...
CVE-2023-45115HIGH8.8Online Examination System v1.0 is vulnerable to multiple Authenticated SQL Injection vulnerabilities. The 'ch' parameter...
CVE-2023-51442HIGH8.6Navidrome is an open source web-based music collection server and streamer. A security vulnerability has been identified...
CVE-2023-22674HIGH8.8Missing Authorization, Cross-Site Request Forgery (CSRF) vulnerability in Hal Gatewood Dashicons + Custom Post Types.Thi...
CVE-2023-49162HIGH7.5Exposure of Sensitive Information to an Unauthorized Actor vulnerability in BigCommerce BigCommerce For WordPress.This i...
CVE-2023-48288HIGH7.5Exposure of Sensitive Information to an Unauthorized Actor vulnerability in HM Plugin WordPress Job Board and Recruitmen...
CVE-2023-2487HIGH7.5Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Smackcoders Export All Posts, Products, Orde...
CVE-2023-28421HIGH7.5Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Winwar Media WordPress Email Marketing Plugi...
CVE-2023-49762HIGH7.5Exposure of Sensitive Information to an Unauthorized Actor vulnerability in AppMySite AppMySite – Create an app with the...
CVE-2023-5594HIGH8.6Improper validation of the server’s certificate chain in secure traffic scanning feature considered intermediate certifi...
CVE-2023-50481HIGH7.5An issue was discovered in blinksocks version 3.3.8, allows remote attackers to obtain sensitive information via weak en...
CVE-2023-2585HIGH8.1Keycloak's device authorization grant does not correctly validate the device code and client ID. An attacker client coul...
CVE-2023-7025HIGH7.8A vulnerability was found in KylinSoft hedron-domain-hook up to 3.8.0.12-0k0.5. It has been declared as critical. This v...
CVE-2023-51390HIGH7.5journalpump is a daemon that takes log messages from journald and pumps them to a given output. A logging vulnerability ...
CVE-2023-46131HIGH7.5Grails is a framework used to build web applications with the Groovy programming language. A specially crafted web reque...
CVE-2023-45703HIGH7.5HCL Launch may mishandle input validation of an uploaded archive file leading to a denial of service due to resource exh...
CVE-2023-23970HIGH8.8Unrestricted Upload of File with Dangerous Type vulnerability in WooRockets Corsa.This issue affects Corsa: from n/a thr...
CVE-2023-49814HIGH7.2Unrestricted Upload of File with Dangerous Type vulnerability in Symbiostock symbiostock.This issue affects Symbiostock:...
CVE-2023-47784HIGH8.8Unrestricted Upload of File with Dangerous Type vulnerability in ThemePunch OHG Slider Revolution.This issue affects Sli...
CVE-2023-46149HIGH8.8Unrestricted Upload of File with Dangerous Type vulnerability in Themify Themify Ultra.This issue affects Themify Ultra:...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now