2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2023-30149CRITICAL9.8SQL injection vulnerability in the City Autocomplete (cityautocomplete) module from ebewe.net for PrestaShop, prior to v...
CVE-2023-3062CRITICAL9.8A vulnerability was found in code-projects Agro-School Management System 1.0. It has been classified as critical. Affect...
CVE-2023-3061CRITICAL9.8A vulnerability was found in code-projects Agro-School Management System 1.0 and classified as critical. This issue affe...
CVE-2023-34362CRITICAL9.8In Progress MOVEit Transfer before 2021.0.6 (13.0.6), 2021.1.4 (13.1.4), 2022.0.4 (14.0.4), 2022.1.5 (14.1.5), and 2023....
CVE-2023-33476CRITICAL9.8ReadyMedia (MiniDLNA) versions from 1.1.15 up to 1.3.2 is vulnerable to Buffer Overflow. The vulnerability is caused by ...
CVE-2023-3059CRITICAL9.8A vulnerability, which was classified as critical, was found in SourceCodester Online Exam Form Submission 1.0. This aff...
CVE-2023-3057CRITICAL9.8A vulnerability was found in YFCMF up to 3.0.4. It has been rated as problematic. This issue affects some unknown proces...
CVE-2023-3056CRITICAL9.8A vulnerability was found in YFCMF up to 3.0.4. It has been declared as problematic. This vulnerability affects unknown ...
CVE-2023-30604CRITICAL9.8It is identified a vulnerability of insufficient authentication in the system configuration interface of Hitron Technolo...
CVE-2023-30603CRITICAL9.8Hitron Technologies CODA-5310 Telnet function with the default account and password, and there is no warning or prompt t...
CVE-2023-28701CRITICAL9.8ELITE TECHNOLOGY CORP. Web Fax has a vulnerability of SQL Injection. An unauthenticated remote attacker can inject SQL c...
CVE-2023-28698CRITICAL9.8Wade Graphic Design FANTSY has a vulnerability of insufficient authorization check. An unauthenticated remote user can e...
CVE-2023-3000CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Erikoglu Technolog...
CVE-2023-29746CRITICAL9.8An issue found in The Thaiger v.1.2 for Android allows unauthorized apps to cause a code execution attack by manipulatin...
CVE-2023-29736CRITICAL9.8Keyboard Themes 1.275.1.164 for Android contains a dictionary traversal vulnerability that allows unauthorized apps to o...
CVE-2023-29722CRITICAL9.1The Glitter Unicorn Wallpaper app for Android 7.0 thru 8.0 allows unauthorized apps to actively request permission to mo...
CVE-2023-32713CRITICAL9.9In Splunk App for Stream versions below 8.1.1, a low-privileged user could use a vulnerability in the streamfwd process ...
CVE-2023-33963CRITICAL9.8DataEase is an open source data visualization and analysis tool. Prior to version 1.18.7, a deserialization vulnerabilit...
CVE-2023-3028CRITICAL9.8Insufficient authentication in the MQTT backend (broker) allows an attacker to access and even manipulate the telemetry ...
CVE-2023-24584CRITICAL9.8 Controller 6000 is vulnerable to a buffer overflow via the Controller diagnostic web interface upload feature. Thi...
CVE-2023-33778CRITICAL9.8Draytek Vigor Routers firmware versions below 3.9.6/4.2.4, Access Points firmware versions below v1.4.0, Switches firmwa...
CVE-2023-23952CRITICAL9.8Advanced Secure Gateway and Content Analysis, prior to 7.3.13.1 / 3.1.6.0, may be susceptible to a Command Injection vul...
CVE-2023-34257CRITICAL9.8An issue was discovered in BMC Patrol through 23.1.00. The agent's configuration can be remotely modified (and, by defau...
CVE-2023-33735CRITICAL9.8D-Link DIR-846 v1.00A52 was discovered to contain a remote command execution (RCE) vulnerability via the tomography_ping...
CVE-2023-33730CRITICAL9.8Privilege Escalation in the "GetUserCurrentPwd" function in Microworld Technologies eScan Management Console 14.0.1400.2...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now