2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-28333 | CRITICAL | 9.8 | 1.2% | Mar 23, 2023 | The Mustache pix helper contained a potential Mustache injection risk if combined with user input (note: This did not ap... |
| CVE-2023-1612 | CRITICAL | 9.8 | 0.7% | Mar 23, 2023 | A vulnerability, which was classified as critical, was found in Rebuild up to 3.2.3. This affects an unknown part of the... |
| CVE-2023-26359 | CRITICAL | 9.8 | 17.9% | Mar 23, 2023 | Adobe ColdFusion versions 2018 Update 15 (and earlier) and 2021 Update 5 (and earlier) are affected by a Deserialization... |
| CVE-2023-25655 | CRITICAL | 9.8 | 1.1% | Mar 23, 2023 | baserCMS is a Content Management system. Prior to version 4.7.5, any file may be uploaded on the management system of ba... |
| CVE-2023-25654 | CRITICAL | 9.8 | 1.5% | Mar 23, 2023 | baserCMS is a Content Management system. Prior to version 4.7.5, there is a Remote Code Execution (RCE) Vulnerability in... |
| CVE-2023-1610 | CRITICAL | 9.8 | 0.7% | Mar 23, 2023 | A vulnerability, which was classified as critical, has been found in Rebuild up to 3.2.3. Affected by this issue is some... |
| CVE-2023-1608 | CRITICAL | 9.8 | 0.6% | Mar 23, 2023 | A vulnerability was found in Zhong Bang CRMEB Java up to 1.3.4. It has been declared as critical. This vulnerability aff... |
| CVE-2023-1606 | CRITICAL | 9.8 | 0.9% | Mar 23, 2023 | A vulnerability was found in novel-plus 3.6.2 and classified as critical. Affected by this issue is some unknown functio... |
| CVE-2023-28610 | CRITICAL | 9.8 | 0.6% | Mar 23, 2023 | The update process in OMICRON StationGuard and OMICRON StationScout before 2.21 can be exploited by providing a modified... |
| CVE-2023-27135 | CRITICAL | 9.8 | 2.0% | Mar 23, 2023 | TOTOlink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the enabled param... |
| CVE-2023-27078 | CRITICAL | 9.8 | 2.5% | Mar 23, 2023 | A command injection issue was found in TP-Link MR3020 v.1_150921 that allows a remote attacker to execute arbitrary comm... |
| CVE-2023-1594 | CRITICAL | 9.8 | 1.0% | Mar 23, 2023 | A vulnerability, which was classified as critical, was found in novel-plus 3.6.2. Affected is the function MenuService o... |
| CVE-2023-1592 | CRITICAL | 9.8 | 0.5% | Mar 23, 2023 | A vulnerability classified as critical was found in SourceCodester Automatic Question Paper Generator System 1.0. This v... |
| CVE-2023-1591 | CRITICAL | 9.8 | 0.5% | Mar 23, 2023 | A vulnerability classified as critical has been found in SourceCodester Automatic Question Paper Generator System 1.0. T... |
| CVE-2023-1590 | CRITICAL | 9.8 | 0.8% | Mar 23, 2023 | A vulnerability was found in SourceCodester Online Tours & Travels Management System 1.0 and classified as critical. Thi... |
| CVE-2023-1589 | CRITICAL | 9.8 | 0.8% | Mar 23, 2023 | A vulnerability has been found in SourceCodester Online Tours & Travels Management System 1.0 and classified as critical... |
| CVE-2023-1050 | CRITICAL | 9.8 | 0.6% | Mar 23, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in As Koc Energy Web ... |
| CVE-2023-26114 | CRITICAL | 9.3 | 0.3% | Mar 23, 2023 | Versions of the package code-server before 4.10.1 are vulnerable to Missing Origin Validation in WebSockets handshakes. ... |
| CVE-2023-26496 | CRITICAL | 9.8 | 24.1% | Mar 23, 2023 | An issue was discovered in Samsung Baseband Modem Chipset for Exynos Modem 5123, Exynos Modem 5300, Exynos 980, Exynos 1... |
| CVE-2023-26498 | CRITICAL | 9.8 | 24.1% | Mar 23, 2023 | An issue was discovered in Samsung Baseband Modem Chipset for Exynos Modem 5123, Exynos Modem 5300, Exynos 980, Exynos 1... |
| CVE-2023-24655 | CRITICAL | 9.8 | 1.0% | Mar 23, 2023 | Simple Customer Relationship Management System v1.0 was discovered to contain a SQL injection vulnerability via the name... |
| CVE-2023-27100 | CRITICAL | 9.8 | 9.8% | Mar 22, 2023 | Improper restriction of excessive authentication attempts in the SSHGuard component of Netgate pfSense Plus software v22... |
| CVE-2023-27060 | CRITICAL | 9.8 | 1.3% | Mar 22, 2023 | LightCMS v1.3.7 was discovered to contain a remote code execution (RCE) vulnerability via the image:make function. |
| CVE-2023-28667 | CRITICAL | 9.8 | 1.1% | Mar 22, 2023 | The Lead Generated WordPress Plugin, version <= 1.23, was affected by an unauthenticated insecure deserialization issue.... |
| CVE-2023-28662 | CRITICAL | 9.8 | 42.2% | Mar 22, 2023 | The Gift Cards (Gift Vouchers and Packages) WordPress Plugin, version <= 4.3.1, is affected by an unauthenticated SQL in... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now