2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-6437 | CRITICAL | 9.8 | 1.4% | Mar 28, 2024 | Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in TP-Link TP-L... |
| CVE-2023-0582 | CRITICAL | 9.8 | 0.8% | Mar 27, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in ForgeRock Access Managem... |
| CVE-2023-6153 | CRITICAL | 9.8 | 0.7% | Mar 27, 2024 | Authentication Bypass by Primary Weakness vulnerability in TeoSOFT Software TeoBASE allows Authentication Bypass. This ... |
| CVE-2023-6173 | CRITICAL | 9.8 | 0.6% | Mar 27, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeoSOFT Software T... |
| CVE-2023-49815 | CRITICAL | 10 | 0.6% | Mar 27, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in WappPress Team WappPress.This issue affects WappPress: ... |
| CVE-2023-31634 | CRITICAL | 9.8 | 0.9% | Mar 27, 2024 | In TeslaMate before 1.27.2, there is unauthorized access to port 4000 for remote viewing and operation of user data. Aft... |
| CVE-2023-45924 | CRITICAL | 9.8 | 0.9% | Mar 27, 2024 | libglxproto.c in OpenGL libglvnd bb06db5a was discovered to contain a segmentation violation via the function glXGetDraw... |
| CVE-2023-45929 | CRITICAL | 9.1 | 0.7% | Mar 27, 2024 | S-Lang 2.3.2 was discovered to contain a segmentation fault via the function fixup_tgetstr(). |
| CVE-2023-45927 | CRITICAL | 9.1 | 0.8% | Mar 27, 2024 | S-Lang 2.3.2 was discovered to contain an arithmetic exception via the function tt_sprintf(). |
| CVE-2023-47842 | CRITICAL | 9.1 | 0.6% | Mar 26, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in Zachary Segal CataBlog.This issue affects CataBlog: fro... |
| CVE-2023-38388 | CRITICAL | 9.8 | 1.4% | Mar 26, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in Artbees JupiterX Core.This issue affects JupiterX Core:... |
| CVE-2023-29386 | CRITICAL | 9.1 | 0.8% | Mar 26, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in Julien Crego Manager for Icomoon.This issue affects Man... |
| CVE-2023-28787 | CRITICAL | 9.3 | 2.0% | Mar 26, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in ExpressTech Quiz A... |
| CVE-2023-23656 | CRITICAL | 10 | 0.8% | Mar 26, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in MainWP MainWP File Uploader Extension.This issue affect... |
| CVE-2023-27608 | CRITICAL | 9.8 | 0.5% | Mar 25, 2024 | Missing Authorization vulnerability in WP Swings Points and Rewards for WooCommerce.This issue affects Points and Reward... |
| CVE-2023-48902 | CRITICAL | 9.8 | 1.3% | Mar 21, 2024 | An issue was discovered in tramyardg autoexpress version 1.3.0, allows unauthenticated remote attackers to escalate priv... |
| CVE-2023-48901 | CRITICAL | 9.8 | 1.0% | Mar 21, 2024 | A SQL injection vulnerability in tramyardg Autoexpress version 1.3.0, allows remote unauthenticated attackers to execute... |
| CVE-2023-35899 | CRITICAL | 9.8 | 0.6% | Mar 21, 2024 | IBM Cloud Pak for Automation 18.0.0, 18.0.1, 18.0.2, 19.0.1, 19.0.2, 19.0.3, 20.0.1, 20.0.2, 20.0.3, 21.0.1, 21.0.2, 21.... |
| CVE-2023-44092 | CRITICAL | 9.1 | 0.8% | Mar 19, 2024 | Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Pandora FMS ... |
| CVE-2023-44091 | CRITICAL | 9.8 | 0.5% | Mar 19, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Pandora FMS on all... |
| CVE-2023-40276 | CRITICAL | 9.1 | 0.7% | Mar 19, 2024 | An issue was discovered in OpenClinic GA 5.247.01. An Unauthenticated File Download vulnerability has been discovered in... |
| CVE-2023-40275 | CRITICAL | 9.1 | 0.9% | Mar 19, 2024 | An issue was discovered in OpenClinic GA 5.247.01. It allows retrieval of patient lists via queries such as findFirstnam... |
| CVE-2023-7248 | CRITICAL | 9.8 | 0.3% | Mar 15, 2024 | Certain functionality in OpenText Vertica Management console might be prone to bypass via crafted requests. The vulne... |
| CVE-2023-7017 | CRITICAL | 9.8 | 0.3% | Mar 15, 2024 | Sciener locks' firmware update mechanism do not authenticate or validate firmware updates if passed to the lock through ... |
| CVE-2023-7006 | CRITICAL | 9.1 | 0.5% | Mar 15, 2024 | The unlockKey character in a lock using Sciener firmware can be brute forced through repeated challenge requests, compro... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now