2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2023-51392CRITICAL9.8Ember ZNet between v7.2.0 and v7.4.0 used software AES-CCM instead of integrated hardware cryptographic accelerators, po...
CVE-2023-51653CRITICAL9.8Hertzbeat is a real-time monitoring system. In the implementation of `JmxCollectImpl.java`, `JMXConnectorFactory.connect...
CVE-2023-51389CRITICAL9.8Hertzbeat is a real-time monitoring system. At the interface of `/define/yml`, SnakeYAML is used as a parser to parse ym...
CVE-2023-51388CRITICAL9.8Hertzbeat is a real-time monitoring system. In `CalculateAlarm.java`, `AviatorEvaluator` is used to directly execute the...
CVE-2023-52153CRITICAL9.8A SQL Injection vulnerability in /pmb/opac_css/includes/sessions.inc.php in PMB 7.4.7 and earlier allows remote unauthen...
CVE-2023-51828CRITICAL9.8A SQL Injection vulnerability in /admin/convert/export.class.php in PMB 7.4.7 and earlier versions allows remote unauthe...
CVE-2023-37177CRITICAL9.8SQL Injection vulnerability in PMB Services PMB v.7.4.7 and before allows a remote unauthenticated attacker to execute a...
CVE-2023-24331CRITICAL9.8Command Injection vulnerability in D-Link Dir 816 with firmware version DIR-816_A2_v1.10CNB04 allows attackers to run ar...
CVE-2023-6936CRITICAL9.1In wolfSSL prior to 5.6.6, if callback functions are enabled (via the WOLFSSL_CALLBACKS flag), then a malicious TLS clie...
CVE-2023-45318CRITICAL9.8A heap-based buffer overflow vulnerability exists in the HTTP Server functionality of Weston Embedded uC-HTTP git commit...
CVE-2023-38562CRITICAL9.1A double-free vulnerability exists in the IP header loopback parsing functionality of Weston Embedded uC-TCP-IP v3.06.01...
CVE-2023-49109CRITICAL9.8Exposure of Remote Code Execution in Apache Dolphinscheduler. This issue affects Apache DolphinScheduler: before 3.2.1....
CVE-2023-6249CRITICAL9.8Signed to unsigned conversion esp32_ipm_send
CVE-2023-5779CRITICAL9.8can: out of bounds in remove_rx_filter function
CVE-2023-6749CRITICAL9.8Unchecked length coming from user input in settings shell
CVE-2023-52381CRITICAL9.8Script injection vulnerability in the email module.Successful exploitation of this vulnerability may affect service conf...
CVE-2023-52378CRITICAL9.8Vulnerability of incorrect service logic in the WindowManagerServices module.Successful exploitation of this vulnerabili...
CVE-2023-52370CRITICAL9.8Stack overflow vulnerability in the network acceleration module.Successful exploitation of this vulnerability may cause ...
CVE-2023-52369CRITICAL9.1Stack overflow vulnerability in the NFC module.Successful exploitation of this vulnerability may affect service availabi...
CVE-2023-40057CRITICAL9The SolarWinds Access Rights Manager was found to be susceptible to a Remote Code Execution Vulnerability. If exploited,...
CVE-2023-7081CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in POSTAHSİL Online P...
CVE-2023-5155CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Utarit Information...
CVE-2023-39245CRITICAL9.8 DELL ESI (Enterprise Storage Integrator) for SAP LAMA, version 10.0, contains an information disclosure vulnerability i...
CVE-2023-39244CRITICAL9.8DELL ESI (Enterprise Storage Integrator) for SAP LAMA, version 10.0, contains an information disclosure vulnerability in...
CVE-2023-32484CRITICAL9.8 Dell Networking Switches running Enterprise SONiC versions 4.1.0, 4.0.5, 3.5.4 and below contains an improper input val...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now