2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2023-27497CRITICAL9.8Due to missing authentication and input sanitization of code the EventLogServiceCollector of SAP Diagnostics Agent - ver...
CVE-2023-27178CRITICAL9.8An arbitrary file upload vulnerability in the upload function of GDidees CMS 3.9.1 allows attackers to execute arbitrary...
CVE-2023-27076CRITICAL9.8Command injection vulnerability found in Tenda G103 v.1.0.0.5 allows attacker to execute arbitrary code via a the langua...
CVE-2023-26070CRITICAL9.8Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 4 of 4).
CVE-2023-26069CRITICAL9.8Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 3 of 4).
CVE-2023-26068CRITICAL9.8Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 2 of 4).
CVE-2023-26066CRITICAL9.8Certain Lexmark devices through 2023-02-19 have Improper Validation of an Array Index.
CVE-2023-26065CRITICAL9.8Certain Lexmark devices through 2023-02-19 have an Integer Overflow.
CVE-2023-26064CRITICAL9.8Certain Lexmark devices through 2023-02-19 have an Out-of-bounds Write.
CVE-2023-26063CRITICAL9.8Certain Lexmark devices through 2023-02-19 access a Resource By Using an Incompatible Type.
CVE-2023-27650CRITICAL9.8An issue found in APUS Group Launcher v.3.10.73 and v.3.10.88 allows a remote attacker to execute arbitrary code via the...
CVE-2023-1969CRITICAL9.8A vulnerability classified as critical was found in SourceCodester Online Eyewear Shop 1.0. This vulnerability affects u...
CVE-2023-29375CRITICAL9.8An issue was discovered in Progress Sitefinity 13.3 before 13.3.7647, 14.0 before 14.0.7736, 14.1 before 14.1.7826, 14.2...
CVE-2023-1478CRITICAL9.8The Hummingbird WordPress plugin before 3.4.2 does not validate the generated file path for page cache files before writ...
CVE-2023-29216CRITICAL9.8In Apache Linkis <=1.3.1, because the parameters are not effectively filtered, the attacker uses the MySQL data source a...
CVE-2023-29215CRITICAL9.8In Apache Linkis <=1.3.1, due to the lack of effective filtering of parameters, an attacker configuring malicious Mysql ...
CVE-2023-27987CRITICAL9.1 In Apache Linkis <=1.3.1, due to the default token generated by Linkis Gateway deployment being too simple, it is easy ...
CVE-2023-27603CRITICAL9.8 In Apache Linkis <=1.3.1, due to the Manager module engineConn material upload does not check the zip path, This is a...
CVE-2023-27602CRITICAL9.8In Apache Linkis <=1.3.1, The PublicService module uploads files without restrictions on the path to the uploaded files,...
CVE-2023-27720CRITICAL9.8D-Link DIR878 1.30B08 was discovered to contain a stack overflow in the sub_48d630 function. This vulnerability allows a...
CVE-2023-27719CRITICAL9.8D-Link DIR878 1.30B08 was discovered to contain a stack overflow in the sub_478360 function. This vulnerability allows a...
CVE-2023-27718CRITICAL9.8D-Link DIR878 1.30B08 was discovered to contain a stack overflow in the sub_498308 function. This vulnerability allows a...
CVE-2023-1964CRITICAL9.1A vulnerability classified as critical has been found in PHPGurukul Bank Locker Management System 1.0. Affected is an un...
CVE-2023-1963CRITICAL9.8A vulnerability was found in PHPGurukul Bank Locker Management System 1.0. It has been rated as critical. This issue aff...
CVE-2023-1962CRITICAL9.8A vulnerability classified as critical was found in SourceCodester Best Online News Portal 1.0. Affected by this vulnera...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now