2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-49316 | HIGH | 7.5 | 0.8% | Nov 27, 2023 | In Math/BinaryField.php in phpseclib 3 before 3.0.34, excessively large degrees can lead to a denial of service. |
| CVE-2023-5906 | HIGH | 7.5 | 0.8% | Nov 27, 2023 | The Job Manager & Career WordPress plugin before 1.4.4 contains a vulnerability in the Directory Listings system, which ... |
| CVE-2023-5239 | HIGH | 7.5 | 0.7% | Nov 27, 2023 | The Security & Malware scan by CleanTalk WordPress plugin before 2.121 retrieves client IP addresses from potentially un... |
| CVE-2023-49047 | HIGH | 7.5 | 0.8% | Nov 27, 2023 | Tenda AX1803 v1.0.0.1 contains a stack overflow via the devName parameter in the function formSetDeviceName. |
| CVE-2023-41257 | HIGH | 8.8 | 1.6% | Nov 27, 2023 | A type confusion vulnerability exists in the way Foxit Reader 12.1.2.15356 handles field value properties. A specially ... |
| CVE-2023-40194 | HIGH | 8.8 | 2.0% | Nov 27, 2023 | An arbitrary file creation vulnerability exists in the Javascript exportDataObject API of Foxit Reader 12.1.3.15356 due ... |
| CVE-2023-39542 | HIGH | 8.8 | 3.3% | Nov 27, 2023 | A code execution vulnerability exists in the Javascript saveAs API of Foxit Reader 12.1.3.15356. A specially crafted mal... |
| CVE-2023-38573 | HIGH | 8.8 | 1.9% | Nov 27, 2023 | A use-after-free vulnerability exists in the way Foxit Reader 12.1.2.15356 handles a signature field. A specially crafte... |
| CVE-2023-35985 | HIGH | 8.8 | 2.7% | Nov 27, 2023 | An arbitrary file creation vulnerability exists in the Javascript exportDataObject API of Foxit Reader 12.1.3.15356 due ... |
| CVE-2023-32616 | HIGH | 8.8 | 1.8% | Nov 27, 2023 | A use-after-free vulnerability exists in the way Foxit Reader 12.1.2.15356 handles 3D annotations. A specially crafted J... |
| CVE-2023-31275 | HIGH | 7.8 | 1.7% | Nov 27, 2023 | An uninitialized pointer use vulnerability exists in the functionality of WPS Office 11.2.0.11537 that handles Data elem... |
| CVE-2023-4931 | HIGH | 7.8 | 0.2% | Nov 27, 2023 | Uncontrolled search path element vulnerability in Plesk Installer affects version 3.27.0.0. A local attacker could execu... |
| CVE-2023-5607 | HIGH | 7.2 | 0.9% | Nov 27, 2023 | An improper limitation of a path name to a restricted directory (path traversal) vulnerability in the TACC ePO extensio... |
| CVE-2023-40610 | HIGH | 8.8 | 1.3% | Nov 27, 2023 | Improper authorization check and possible privilege escalation on Apache Superset up to but excluding 2.1.2. Using the d... |
| CVE-2023-6254 | HIGH | 7.5 | 0.7% | Nov 27, 2023 | A Vulnerability in OTRS AgentInterface and ExternalInterface allows the reading of plain text passwords which are send b... |
| CVE-2023-49068 | HIGH | 7.5 | 1.1% | Nov 27, 2023 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache DolphinScheduler.This issue affects A... |
| CVE-2023-48268 | HIGH | 7.5 | 0.7% | Nov 27, 2023 | Mattermost fails to limit the amount of data extracted from compressed archives during board import in Mattermost Boards... |
| CVE-2023-40703 | HIGH | 7.5 | 0.7% | Nov 27, 2023 | Mattermost fails to properly limit the characters allowed in different fields of a block in Mattermost Boards allowing a... |
| CVE-2023-6312 | HIGH | 7.2 | 0.8% | Nov 27, 2023 | A vulnerability was found in SourceCodester Loan Management System 1.0. It has been classified as critical. Affected is ... |
| CVE-2023-6311 | HIGH | 7.2 | 0.8% | Nov 27, 2023 | A vulnerability was found in SourceCodester Loan Management System 1.0 and classified as critical. This issue affects th... |
| CVE-2023-6310 | HIGH | 7.2 | 0.8% | Nov 27, 2023 | A vulnerability has been found in SourceCodester Loan Management System 1.0 and classified as critical. This vulnerabili... |
| CVE-2023-6308 | HIGH | 8.8 | 1.0% | Nov 27, 2023 | A vulnerability, which was classified as critical, has been found in Xiamen Four-Faith Video Surveillance Management Sys... |
| CVE-2023-6304 | HIGH | 8 | 9.5% | Nov 27, 2023 | A vulnerability was found in Tecno 4G Portable WiFi TR118 TR118-M30E-RR-D-EnFrArSwHaPo-OP-V008-20220830. It has been dec... |
| CVE-2023-6302 | HIGH | 7.2 | 0.9% | Nov 27, 2023 | A vulnerability was found in CSZCMS 1.3.0 and classified as critical. Affected by this issue is some unknown functionali... |
| CVE-2023-49322 | HIGH | 7.5 | 0.7% | Nov 27, 2023 | Certain WithSecure products allow a Denial of Service because there is an unpack handler crash that can lead to a scanni... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now