2023 CVE Vulnerabilities

31,442 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-22599CRITICAL9.1 InHand Networks InRouter 302, prior to version IR302 V3.5.56, and InRouter 615, prior to version InRouter6XX-S-V2.3.0.r...
CVE-2023-22598HIGH7.2 InHand Networks InRouter 302, prior to version IR302 V3.5.56, and InRouter 615, prior to version InRouter6XX-S-V2.3.0.r...
CVE-2023-22597MEDIUM5.9 InHand Networks InRouter 302, prior to version IR302 V3.5.56, and InRouter 615, prior to version InRouter6XX-S-V2.3.0.r...
CVE-2023-0258MEDIUM6.1A vulnerability was found in SourceCodester Online Food Ordering System 2.0. It has been rated as problematic. Affected ...
CVE-2023-0257CRITICAL9.8A vulnerability was found in SourceCodester Online Food Ordering System 2.0. It has been declared as critical. Affected ...
CVE-2023-0256CRITICAL9.8A vulnerability was found in SourceCodester Online Food Ordering System 2.0. It has been classified as critical. Affecte...
CVE-2023-22488MEDIUM5.4Flarum is a forum software for building communities. Using the notifications feature, one can read restricted/private co...
CVE-2023-23457MEDIUM5.5A Segmentation fault was found in UPX in PackLinuxElf64::invert_pt_dynamic() in p_lx_elf.cpp. An attacker with a crafted...
CVE-2023-23456MEDIUM5.5A heap-based buffer overflow issue was discovered in UPX in PackTmt::pack() in p_tmt.cpp file. The flow allows an attack...
CVE-2023-0254MEDIUM4.9The Simple Membership WP user Import plugin for WordPress is vulnerable to SQL Injection via the ‘orderby’ parameter in ...
CVE-2023-0247HIGH7.8Uncontrolled Search Path Element in GitHub repository bits-and-blooms/bloom prior to 3.3.1.
CVE-2023-0246MEDIUM5.4A vulnerability, which was classified as problematic, was found in earclink ESPCMS P8.21120101. Affected is an unknown f...
CVE-2023-0245CRITICAL9.8A vulnerability, which was classified as critical, has been found in SourceCodester Online Flight Booking Management Sys...
CVE-2023-0244CRITICAL9.8A vulnerability classified as critical was found in TuziCMS 2.0.6. This vulnerability affects the function delall of the...
CVE-2023-0243CRITICAL9.8A vulnerability classified as critical has been found in TuziCMS 2.0.6. This affects the function index of the file App\...
CVE-2023-23455MEDIUM5.5atm_tc_enqueue in net/sched/sch_atm.c in the Linux kernel through 6.1.4 allows attackers to cause a denial of service be...
CVE-2023-23454MEDIUM5.5cbq_classify in net/sched/sch_cbq.c in the Linux kernel through 6.1.4 allows attackers to cause a denial of service (sla...
CVE-2023-0042MEDIUM6.1An issue has been discovered in GitLab CE/EE affecting all versions starting from 11.4 prior to 15.5.7, 15.6 prior to 15...
CVE-2023-0227MEDIUM6.5Insufficient Session Expiration in GitHub repository pyload/pyload prior to 0.5.0b3.dev36.
CVE-2023-22492MEDIUM5.9ZITADEL is a combination of Auth0 and Keycloak. RefreshTokens is an OAuth 2.0 feature that allows applications to retrie...
CVE-2023-22487MEDIUM4.3Flarum is a forum software for building communities. Using the mentions feature provided by the flarum/mentions extensio...
CVE-2023-22952HIGH8.8In SugarCRM before 12.0. Hotfix 91155, a crafted request can inject custom PHP code through the EmailTemplates because o...
CVE-2023-22885Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes:...
CVE-2023-20532MEDIUM5.3Insufficient input validation in the SMU may allow an attacker to improperly lock resources, potentially resulting in a ...
CVE-2023-20531HIGH7.5Insufficient bound checks in the SMU may allow an attacker to update the SRAM from/to address space to an invalid value ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now