2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-1827 | CRITICAL | 9.8 | 0.7% | Apr 4, 2023 | A vulnerability has been found in SourceCodester Centralized Covid Vaccination Records System 1.0 and classified as crit... |
| CVE-2023-1671 | CRITICAL | 9.8 | 100.0% | Apr 4, 2023 | A pre-auth command injection vulnerability in the warn-proceed handler of Sophos Web Appliance older than version 4.3.10... |
| CVE-2023-1826 | CRITICAL | 9.8 | 4.4% | Apr 4, 2023 | A vulnerability, which was classified as critical, was found in SourceCodester Online Computer and Laptop Store 1.0. Thi... |
| CVE-2023-1728 | CRITICAL | 9.8 | 1.4% | Apr 4, 2023 | Unrestricted Upload of File with Dangerous Type vulnerability in Fernus Informatics LMS allows OS Command Injection, Ser... |
| CVE-2023-1765 | CRITICAL | 9.8 | 0.7% | Apr 3, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Akbim Computer Pan... |
| CVE-2023-26119 | CRITICAL | 9.8 | 2.5% | Apr 3, 2023 | Versions of the package net.sourceforge.htmlunit:htmlunit from 0 and before 3.0.0 are vulnerable to Remote Code Executio... |
| CVE-2023-28677 | CRITICAL | 9.8 | 0.8% | Apr 2, 2023 | Jenkins Convert To Pipeline Plugin 1.0 and earlier uses basic string concatenation to convert Freestyle projects' Build ... |
| CVE-2023-28668 | CRITICAL | 9.8 | 0.8% | Apr 2, 2023 | Jenkins Role-based Authorization Strategy Plugin 587.v2872c41fa_e51 and earlier grants permissions even after they've be... |
| CVE-2023-27286 | CRITICAL | 9.8 | 0.7% | Apr 2, 2023 | IBM Aspera Cargo 4.2.5 and IBM Aspera Connect 4.2.5 are vulnerable to a buffer overflow, caused by improper bounds check... |
| CVE-2023-27284 | CRITICAL | 9.8 | 0.7% | Apr 2, 2023 | IBM Aspera Cargo 4.2.5 and IBM Aspera Connect 4.2.5 are vulnerable to a buffer overflow, caused by improper bounds check... |
| CVE-2023-1800 | CRITICAL | 9.8 | 3.5% | Apr 2, 2023 | A vulnerability, which was classified as critical, has been found in sjqzhang go-fastdfs up to 1.4.3. Affected by this i... |
| CVE-2023-1797 | CRITICAL | 9.8 | 0.9% | Apr 2, 2023 | A vulnerability classified as critical was found in OTCMS 6.0.1. Affected by this vulnerability is an unknown functional... |
| CVE-2023-1793 | CRITICAL | 9.8 | 0.7% | Apr 2, 2023 | A vulnerability was found in SourceCodester Police Crime Record Management System 1.0. It has been classified as critica... |
| CVE-2023-1792 | CRITICAL | 9.8 | 0.7% | Apr 2, 2023 | A vulnerability was found in SourceCodester Simple Mobile Comparison Website 1.0 and classified as critical. Affected by... |
| CVE-2023-1791 | CRITICAL | 9.8 | 0.6% | Apr 2, 2023 | A vulnerability has been found in SourceCodester Simple Task Allocation System 1.0 and classified as critical. Affected ... |
| CVE-2023-26822 | CRITICAL | 9.8 | 3.4% | Apr 1, 2023 | D-Link Go-RT-AC750 revA_v101b03 was discovered to contain a command injection vulnerability via the service parameter at... |
| CVE-2023-1789 | CRITICAL | 9.8 | 0.3% | Apr 1, 2023 | Improper Input Validation in GitHub repository firefly-iii/firefly-iii prior to 6.0.0. |
| CVE-2023-27162 | CRITICAL | 9.1 | 1.0% | Mar 31, 2023 | openapi-generator up to v6.4.0 was discovered to contain a Server-Side Request Forgery (SSRF) via the component /api/gen... |
| CVE-2023-26858 | CRITICAL | 9.8 | 1.2% | Mar 31, 2023 | SQL injection vulnerability found in PrestaSHp faqs v.3.1.6 allows a remote attacker to escalate privileges via the faqs... |
| CVE-2023-1785 | CRITICAL | 9.8 | 0.7% | Mar 31, 2023 | A vulnerability was found in SourceCodester Earnings and Expense Tracker App 1.0. It has been classified as critical. Af... |
| CVE-2023-1784 | CRITICAL | 9.8 | 1.0% | Mar 31, 2023 | A vulnerability was found in jeecg-boot 3.5.0 and classified as critical. This issue affects some unknown processing of ... |
| CVE-2023-29141 | CRITICAL | 9.8 | 1.2% | Mar 31, 2023 | An issue was discovered in MediaWiki before 1.35.10, 1.36.x through 1.38.x before 1.38.6, and 1.39.x before 1.39.3. An a... |
| CVE-2023-23594 | CRITICAL | 9.8 | 1.5% | Mar 31, 2023 | An authentication bypass vulnerability in the web client interface for the CL4NX printer before firmware version 1.13.3-... |
| CVE-2023-28843 | CRITICAL | 9.8 | 1.2% | Mar 31, 2023 | PrestaShop/paypal is an open source module for the PrestaShop web commerce ecosystem which provides paypal payment suppo... |
| CVE-2023-28879 | CRITICAL | 9.8 | 6.3% | Mar 31, 2023 | In Artifex Ghostscript through 10.01.0, there is a buffer overflow leading to potential corruption of data internal to t... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now