2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2023-2037CRITICAL9.8A vulnerability was found in Campcodes Video Sharing Website 1.0. It has been classified as critical. This affects an un...
CVE-2023-29622CRITICAL9.8Purchase Order Management v1.0 was discovered to contain a SQL injection vulnerability via the password parameter at /pu...
CVE-2023-26918CRITICAL9.8Diasoft File Replication Pro 7.5.0 allows attackers to escalate privileges by replacing a legitimate file with a Trojan ...
CVE-2023-27748CRITICAL9.8BlackVue DR750-2CH LTE v.1.012_2022.10.26 does not employ authenticity check for uploaded firmware. This can allow attac...
CVE-2023-27746CRITICAL9.8BlackVue DR750-2CH LTE v.1.012_2022.10.26 was discovered to contain a weak default passphrase which can be easily cracke...
CVE-2023-27667CRITICAL9.8Auto Dealer Management System v1.0 was discovered to contain a SQL injection vulnerability.
CVE-2023-27779CRITICAL9.8AM Presencia v3.7.3 was discovered to contain a SQL injection vulnerability via the user parameter in the login form.
CVE-2023-29598CRITICAL9.8lmxcms v1.4.1 was discovered to contain a SQL injection vulnerability via the setbook parameter at index.php.
CVE-2023-27812CRITICAL9.1bloofox v0.5.2 was discovered to contain an arbitrary file deletion vulnerability via the delete_file() function.
CVE-2023-28121CRITICAL9.8An issue in WooCommerce Payments plugin for WordPress (versions 5.6.1 and lower) allows an unauthenticated attacker to s...
CVE-2023-27830CRITICAL9TightVNC before v2.8.75 allows attackers to escalate privileges on the host operating system via replacing legitimate fi...
CVE-2023-27032CRITICAL9.8Prestashop advancedpopupcreator v1.1.21 to v1.1.24 was discovered to contain a SQL injection vulnerability via the compo...
CVE-2023-28808CRITICAL9.8Some Hikvision Hybrid SAN/Cluster Storage products have an access control vulnerability which can be used to obtain the ...
CVE-2023-28250CRITICAL9.8Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability
CVE-2023-21554CRITICAL9.8Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
CVE-2023-1984CRITICAL9.8A vulnerability classified as critical was found in SourceCodester Complaint Management System 1.0. This vulnerability a...
CVE-2023-1983CRITICAL9.8A vulnerability was found in SourceCodester Sales Tracker Management System 1.0. It has been rated as critical. Affected...
CVE-2023-27192CRITICAL9.8An issue found in DUALSPACE Super Secuirty v.2.3.7 allows an attacker to cause a denial of service via the key_wifi_safe...
CVE-2023-0645CRITICAL9.1An out of bounds read exists in libjxl. An attacker using a specifically crafted file could cause an out of bounds read ...
CVE-2023-27645CRITICAL9.8An issue found in POWERAMP audioplayer build 925 bundle play and build 954 allows a remote attacker to gain privileges v...
CVE-2023-28489CRITICAL9.8A vulnerability has been identified in CP-8031 MASTER MODULE (All versions < CPCI85 V05), CP-8050 MASTER MODULE (All ver...
CVE-2023-29492CRITICAL9.8Novi Survey before 8.9.43676 allows remote attackers to execute arbitrary code on the server in the context of the servi...
CVE-2023-26122CRITICAL10All versions of the package safe-eval are vulnerable to Sandbox Bypass due to improper input sanitization. The vulnerabi...
CVE-2023-26121CRITICAL10All versions of the package safe-eval are vulnerable to Prototype Pollution via the safeEval function, due to improper s...
CVE-2023-28765CRITICAL9.8An attacker with basic privileges in SAP BusinessObjects Business Intelligence Platform (Promotion Management) - version...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now