2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-1053 | CRITICAL | 9.8 | 0.5% | Feb 27, 2023 | A vulnerability was found in SourceCodester Music Gallery Site 1.0 and classified as critical. This issue affects some u... |
| CVE-2023-26602 | CRITICAL | 9.8 | 17.4% | Feb 26, 2023 | ASUS ASMB8 iKVM firmware through 1.14.51 allows remote attackers to execute arbitrary code by using SNMP to create exten... |
| CVE-2023-1040 | CRITICAL | 9.8 | 0.6% | Feb 26, 2023 | A vulnerability, which was classified as critical, has been found in SourceCodester Online Graduate Tracer System 1.0. A... |
| CVE-2023-1038 | CRITICAL | 9.8 | 0.8% | Feb 26, 2023 | A vulnerability classified as critical has been found in SourceCodester Online Reviewer Management System 1.0. Affected ... |
| CVE-2023-1037 | CRITICAL | 9.8 | 0.9% | Feb 26, 2023 | A vulnerability was found in SourceCodester Dental Clinic Appointment Reservation System 1.0. It has been rated as criti... |
| CVE-2023-26550 | CRITICAL | 9.8 | 0.8% | Feb 25, 2023 | A SQL injection vulnerability in BMC Control-M before 9.0.20.214 allows attackers to execute arbitrary SQL commands via ... |
| CVE-2023-26037 | CRITICAL | 9.8 | 0.6% | Feb 25, 2023 | ZoneMinder is a free, open source Closed-circuit television software application for Linux which supports IP, USB and An... |
| CVE-2023-26036 | CRITICAL | 9.8 | 0.9% | Feb 25, 2023 | ZoneMinder is a free, open source Closed-circuit television software application for Linux which supports IP, USB and An... |
| CVE-2023-26035 | CRITICAL | 9.8 | 80.5% | Feb 25, 2023 | ZoneMinder is a free, open source Closed-circuit television software application for Linux which supports IP, USB and An... |
| CVE-2023-26033 | CRITICAL | 9.1 | 0.6% | Feb 25, 2023 | Gentoo soko is the code that powers packages.gentoo.org. Versions prior to 1.0.1 are vulnerable to SQL Injection, leadin... |
| CVE-2023-24189 | CRITICAL | 9.8 | 1.2% | Feb 24, 2023 | An XML External Entity (XXE) vulnerability in urule v2.1.7 allows attackers to execute arbitrary code via uploading a cr... |
| CVE-2023-25696 | CRITICAL | 9.8 | 2.0% | Feb 24, 2023 | Improper Input Validation vulnerability in the Apache Airflow Hive Provider. This issue affects Apache Airflow Hive Pro... |
| CVE-2023-25693 | CRITICAL | 9.8 | 1.9% | Feb 24, 2023 | Improper Input Validation vulnerability in the Apache Airflow Sqoop Provider. This issue affects Apache Airflow Sqoop P... |
| CVE-2023-25691 | CRITICAL | 9.8 | 1.6% | Feb 24, 2023 | Improper Input Validation vulnerability in the Apache Airflow Google Provider. This issue affects Apache Airflow Google... |
| CVE-2023-26468 | CRITICAL | 9.1 | 0.6% | Feb 24, 2023 | Cerebrate 1.12 does not properly consider organisation_id during creation of API keys. |
| CVE-2023-24212 | CRITICAL | 9.8 | 1.1% | Feb 23, 2023 | Tenda AX3 V16.03.12.11 was discovered to contain a stack overflow via the timeType function at /goform/SetSysTimeCfg. |
| CVE-2023-25823 | CRITICAL | 9.8 | 0.6% | Feb 23, 2023 | Gradio is an open-source Python library to build machine learning and data science demos and web applications. Versions ... |
| CVE-2023-24205 | CRITICAL | 9.8 | 1.3% | Feb 23, 2023 | Clash for Windows v0.20.12 was discovered to contain a remote code execution (RCE) vulnerability which is exploited via ... |
| CVE-2023-0755 | CRITICAL | 9.8 | 11.8% | Feb 23, 2023 | The affected products are vulnerable to an improper validation of array index, which could allow an attacker to crash t... |
| CVE-2023-0754 | CRITICAL | 9.8 | 2.9% | Feb 23, 2023 | The affected products are vulnerable to an integer overflow or wraparound, which could allow an attacker to crash the ... |
| CVE-2023-26326 | CRITICAL | 9.8 | 3.8% | Feb 23, 2023 | The BuddyForms WordPress plugin, in versions prior to 2.7.8, was affected by an unauthenticated insecure deserialization... |
| CVE-2023-23914 | CRITICAL | 9.1 | 0.9% | Feb 23, 2023 | A cleartext transmission of sensitive information vulnerability exists in curl <v7.88.0 that could cause HSTS functional... |
| CVE-2023-24104 | CRITICAL | 9.8 | 0.8% | Feb 23, 2023 | Ubiquiti Networks UniFi Dream Machine Pro v7.2.95 allows attackers to bypass domain restrictions via crafted packets. |
| CVE-2023-0986 | CRITICAL | 9.8 | 0.5% | Feb 23, 2023 | A vulnerability classified as critical has been found in SourceCodester Sales Tracker Management System 1.0. This affect... |
| CVE-2023-0982 | CRITICAL | 9.8 | 0.5% | Feb 23, 2023 | A vulnerability was found in SourceCodester Yoga Class Registration System 1.0. It has been declared as critical. Affect... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now