2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2023-6437CRITICAL9.8Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in TP-Link TP-L...
CVE-2023-0582CRITICAL9.8Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in ForgeRock Access Managem...
CVE-2023-6153CRITICAL9.8Authentication Bypass by Primary Weakness vulnerability in TeoSOFT Software TeoBASE allows Authentication Bypass. This ...
CVE-2023-6173CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeoSOFT Software T...
CVE-2023-49815CRITICAL10Unrestricted Upload of File with Dangerous Type vulnerability in WappPress Team WappPress.This issue affects WappPress: ...
CVE-2023-31634CRITICAL9.8In TeslaMate before 1.27.2, there is unauthorized access to port 4000 for remote viewing and operation of user data. Aft...
CVE-2023-45924CRITICAL9.8libglxproto.c in OpenGL libglvnd bb06db5a was discovered to contain a segmentation violation via the function glXGetDraw...
CVE-2023-45929CRITICAL9.1S-Lang 2.3.2 was discovered to contain a segmentation fault via the function fixup_tgetstr().
CVE-2023-45927CRITICAL9.1S-Lang 2.3.2 was discovered to contain an arithmetic exception via the function tt_sprintf().
CVE-2023-47842CRITICAL9.1Unrestricted Upload of File with Dangerous Type vulnerability in Zachary Segal CataBlog.This issue affects CataBlog: fro...
CVE-2023-38388CRITICAL9.8Unrestricted Upload of File with Dangerous Type vulnerability in Artbees JupiterX Core.This issue affects JupiterX Core:...
CVE-2023-29386CRITICAL9.1Unrestricted Upload of File with Dangerous Type vulnerability in Julien Crego Manager for Icomoon.This issue affects Man...
CVE-2023-28787CRITICAL9.3Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in ExpressTech Quiz A...
CVE-2023-23656CRITICAL10Unrestricted Upload of File with Dangerous Type vulnerability in MainWP MainWP File Uploader Extension.This issue affect...
CVE-2023-27608CRITICAL9.8Missing Authorization vulnerability in WP Swings Points and Rewards for WooCommerce.This issue affects Points and Reward...
CVE-2023-48902CRITICAL9.8An issue was discovered in tramyardg autoexpress version 1.3.0, allows unauthenticated remote attackers to escalate priv...
CVE-2023-48901CRITICAL9.8A SQL injection vulnerability in tramyardg Autoexpress version 1.3.0, allows remote unauthenticated attackers to execute...
CVE-2023-35899CRITICAL9.8IBM Cloud Pak for Automation 18.0.0, 18.0.1, 18.0.2, 19.0.1, 19.0.2, 19.0.3, 20.0.1, 20.0.2, 20.0.3, 21.0.1, 21.0.2, 21....
CVE-2023-44092CRITICAL9.1Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Pandora FMS ...
CVE-2023-44091CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Pandora FMS on all...
CVE-2023-40276CRITICAL9.1An issue was discovered in OpenClinic GA 5.247.01. An Unauthenticated File Download vulnerability has been discovered in...
CVE-2023-40275CRITICAL9.1An issue was discovered in OpenClinic GA 5.247.01. It allows retrieval of patient lists via queries such as findFirstnam...
CVE-2023-7248CRITICAL9.8 Certain functionality in OpenText Vertica Management console might be prone to bypass via crafted requests.  The vulne...
CVE-2023-7017CRITICAL9.8Sciener locks' firmware update mechanism do not authenticate or validate firmware updates if passed to the lock through ...
CVE-2023-7006CRITICAL9.1The unlockKey character in a lock using Sciener firmware can be brute forced through repeated challenge requests, compro...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now