2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-49316HIGH7.5In Math/BinaryField.php in phpseclib 3 before 3.0.34, excessively large degrees can lead to a denial of service.
CVE-2023-5906HIGH7.5The Job Manager & Career WordPress plugin before 1.4.4 contains a vulnerability in the Directory Listings system, which ...
CVE-2023-5239HIGH7.5The Security & Malware scan by CleanTalk WordPress plugin before 2.121 retrieves client IP addresses from potentially un...
CVE-2023-49047HIGH7.5Tenda AX1803 v1.0.0.1 contains a stack overflow via the devName parameter in the function formSetDeviceName.
CVE-2023-41257HIGH8.8A type confusion vulnerability exists in the way Foxit Reader 12.1.2.15356 handles field value properties. A specially ...
CVE-2023-40194HIGH8.8An arbitrary file creation vulnerability exists in the Javascript exportDataObject API of Foxit Reader 12.1.3.15356 due ...
CVE-2023-39542HIGH8.8A code execution vulnerability exists in the Javascript saveAs API of Foxit Reader 12.1.3.15356. A specially crafted mal...
CVE-2023-38573HIGH8.8A use-after-free vulnerability exists in the way Foxit Reader 12.1.2.15356 handles a signature field. A specially crafte...
CVE-2023-35985HIGH8.8An arbitrary file creation vulnerability exists in the Javascript exportDataObject API of Foxit Reader 12.1.3.15356 due ...
CVE-2023-32616HIGH8.8A use-after-free vulnerability exists in the way Foxit Reader 12.1.2.15356 handles 3D annotations. A specially crafted J...
CVE-2023-31275HIGH7.8An uninitialized pointer use vulnerability exists in the functionality of WPS Office 11.2.0.11537 that handles Data elem...
CVE-2023-4931HIGH7.8Uncontrolled search path element vulnerability in Plesk Installer affects version 3.27.0.0. A local attacker could execu...
CVE-2023-5607HIGH7.2 An improper limitation of a path name to a restricted directory (path traversal) vulnerability in the TACC ePO extensio...
CVE-2023-40610HIGH8.8Improper authorization check and possible privilege escalation on Apache Superset up to but excluding 2.1.2. Using the d...
CVE-2023-6254HIGH7.5A Vulnerability in OTRS AgentInterface and ExternalInterface allows the reading of plain text passwords which are send b...
CVE-2023-49068HIGH7.5Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache DolphinScheduler.This issue affects A...
CVE-2023-48268HIGH7.5Mattermost fails to limit the amount of data extracted from compressed archives during board import in Mattermost Boards...
CVE-2023-40703HIGH7.5Mattermost fails to properly limit the characters allowed in different fields of a block in Mattermost Boards allowing a...
CVE-2023-6312HIGH7.2A vulnerability was found in SourceCodester Loan Management System 1.0. It has been classified as critical. Affected is ...
CVE-2023-6311HIGH7.2A vulnerability was found in SourceCodester Loan Management System 1.0 and classified as critical. This issue affects th...
CVE-2023-6310HIGH7.2A vulnerability has been found in SourceCodester Loan Management System 1.0 and classified as critical. This vulnerabili...
CVE-2023-6308HIGH8.8A vulnerability, which was classified as critical, has been found in Xiamen Four-Faith Video Surveillance Management Sys...
CVE-2023-6304HIGH8A vulnerability was found in Tecno 4G Portable WiFi TR118 TR118-M30E-RR-D-EnFrArSwHaPo-OP-V008-20220830. It has been dec...
CVE-2023-6302HIGH7.2A vulnerability was found in CSZCMS 1.3.0 and classified as critical. Affected by this issue is some unknown functionali...
CVE-2023-49322HIGH7.5Certain WithSecure products allow a Denial of Service because there is an unpack handler crash that can lead to a scanni...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now