2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2023-24838CRITICAL9.8HGiga PowerStation has a vulnerability of Information Leakage. An unauthenticated remote attacker can exploit this vulne...
CVE-2023-28883CRITICAL9.8In Cerebrate 1.13, a blind SQL injection exists in the searchAll API endpoint.
CVE-2023-26802CRITICAL9.8An issue in the component /network_config/nsg_masq.cgi of DCN (Digital China Networks) DCBI-Netlog-LAB v1.0 allows attac...
CVE-2023-26801CRITICAL9.8LB-LINK BL-AC1900_2.0 v1.0.1, LB-LINK BL-WR9000 v2.4.9, LB-LINK BL-X26 v1.2.5, and LB-LINK BL-LTE300 v1.0.8 were discove...
CVE-2023-26800CRITICAL9.8Ruijie Networks RG-EW1200 Wireless Routers EW_3.0(1)B11P204 was discovered to contain a command injetion vulnerability v...
CVE-2023-1458CRITICAL9.8A vulnerability has been found in Ubiquiti EdgeRouter X 2.0.9-hotfix.6 and classified as critical. Affected by this vuln...
CVE-2023-1457CRITICAL9.8A vulnerability, which was classified as critical, was found in Ubiquiti EdgeRouter X 2.0.9-hotfix.6. Affected is an unk...
CVE-2023-1456CRITICAL9.8A vulnerability, which was classified as critical, has been found in Ubiquiti EdgeRouter X 2.0.9-hotfix.6. This issue af...
CVE-2023-1634CRITICAL9.8A vulnerability was found in OTCMS 6.72. It has been classified as critical. Affected is the function UseCurl of the fil...
CVE-2023-28437CRITICAL9.8Dataease is an open source data visualization and analysis tool. The blacklist for SQL injection protection is missing e...
CVE-2023-25668CRITICAL9.8TensorFlow is an open source platform for machine learning. Attackers using Tensorflow prior to 2.12.0 or 2.11.1 can acc...
CVE-2023-25664CRITICAL9.8TensorFlow is an open source platform for machine learning. Prior to versions 2.12.0 and 2.11.1, there is a heap buffer ...
CVE-2023-23149CRITICAL9.8DEK-1705 <=Firmware:34.23.1 device was discovered to have a command execution vulnerability.
CVE-2023-28150CRITICAL9.8An issue was discovered in Independentsoft JODF before 1.1.110. The API is prone to XML external entity (XXE) injection ...
CVE-2023-26864CRITICAL9.8SQL injection vulnerability found in PrestaShop smplredirectionsmanager v.1.1.19 and before allow a remote attacker to g...
CVE-2023-28151CRITICAL9.8An issue was discovered in Independentsoft JSpreadsheet before 1.1.110. The API is prone to XML external entity (XXE) in...
CVE-2023-21058CRITICAL9.8In lcsm_SendRrAcquiAssist of lcsm_bcm_assist.c, there is a possible out of bounds write due to a missing bounds check. T...
CVE-2023-21057CRITICAL9.8In ProfSixDecomTcpSACKoption of RohcPacketCommon, there is a possible out of bounds write due to a missing bounds check....
CVE-2023-20954CRITICAL9.8In SDP_AddAttribute of sdp_db.cc, there is a possible out of bounds write due to an incorrect bounds check. This could l...
CVE-2023-20951CRITICAL9.8In gatt_process_prep_write_rsp of gatt_cl.cc, there is a possible out of bounds write due to a missing bounds check. Thi...
CVE-2023-28152CRITICAL9.8An issue was discovered in Independentsoft JWord before 1.1.110. The API is prone to XML external entity (XXE) injection...
CVE-2023-1177CRITICAL9.8Path Traversal: '\..\filename' in GitHub repository mlflow/mlflow prior to 2.2.1.
CVE-2023-28445CRITICAL9.8Deno is a runtime for JavaScript and TypeScript that uses V8 and is built in Rust. Resizable ArrayBuffers passed to asyn...
CVE-2023-27034CRITICAL9.8PrestaShop jmsblog 2.5.5 was discovered to contain a SQL injection vulnerability.
CVE-2023-28611CRITICAL9.8Incorrect authorization in OMICRON StationGuard 1.10 through 2.20 and StationScout 1.30 through 2.20 allows an attacker ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now