2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2023-0740CRITICAL9Cross-site Scripting (XSS) - Stored in GitHub repository answerdev/answer prior to 1.0.4.
CVE-2023-24813CRITICAL9.8Dompdf is an HTML to PDF converter written in php. Due to the difference in the attribute parser of Dompdf and php-svg-l...
CVE-2023-0707CRITICAL9.8A vulnerability was found in SourceCodester Medical Certificate Generator App 1.0. It has been rated as critical. Affect...
CVE-2023-23333CRITICAL9.8There is a command injection vulnerability in SolarView Compact through 6.00, attackers can execute commands by bypassin...
CVE-2023-0686CRITICAL9.8A vulnerability was found in SourceCodester Online Eyewear Shop 1.0. It has been classified as critical. This affects th...
CVE-2023-0687CRITICAL9.8A vulnerability was found in GNU C Library 2.38. It has been declared as critical. This vulnerability affects the functi...
CVE-2023-24276CRITICAL9.8TOTOlink A7100RU(V7.4cu.2313_B20191024) was discovered to contain a command injection vulnerability via the country para...
CVE-2023-24202CRITICAL9.8Raffle Draw System v1.0 was discovered to contain a local file inclusion vulnerability via the page parameter in index.p...
CVE-2023-24201CRITICAL9.8Raffle Draw System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at get_ticket.php.
CVE-2023-24200CRITICAL9.8Raffle Draw System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at save_ticket.php.
CVE-2023-24199CRITICAL9.8Raffle Draw System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at delete_ticket.ph...
CVE-2023-24198CRITICAL9.8Raffle Draw System v1.0 was discovered to contain multiple SQL injection vulnerabilities at save_winner.php via the tick...
CVE-2023-0663CRITICAL9.8A vulnerability was found in Calendar Event Management System 2.3.0. It has been rated as critical. This issue affects s...
CVE-2023-24576CRITICAL9.8 EMC NetWorker may potentially be vulnerable to an unauthenticated remote code execution vulnerability in the NetWorke...
CVE-2023-23477CRITICAL9.8IBM WebSphere Application Server 8.5 and 9.0 traditional could allow a remote attacker to execute arbitrary code on the ...
CVE-2023-23088CRITICAL9.8Buffer OverFlow Vulnerability in Barenboim json-parser master and v1.1.0 fixed in v1.1.1 allows an attacker to execute a...
CVE-2023-23087CRITICAL9.8An issue was found in MojoJson v1.2.3 allows attackers to execute arbitary code via the destroy function.
CVE-2023-23086CRITICAL9.8Buffer OverFlow Vulnerability in MojoJson v1.2.3 allows an attacker to execute arbitrary code via the SkipString functio...
CVE-2023-24157CRITICAL9.8A command injection vulnerability in the serverIp parameter in the function updateWifiInfo of TOTOLINK T8 V4.1.5cu allow...
CVE-2023-24156CRITICAL9.8A command injection vulnerability in the ip parameter in the function recvSlaveUpgstatus of TOTOLINK T8 V4.1.5cu allows ...
CVE-2023-24155CRITICAL9.8TOTOLINK T8 V4.1.5cu was discovered to contain a hard code password for the telnet service which is stored in the compon...
CVE-2023-24154CRITICAL9.8TOTOLINK T8 V4.1.5cu was discovered to contain a command injection vulnerability via the slaveIpList parameter in the fu...
CVE-2023-24153CRITICAL9.8A command injection vulnerability in the version parameter in the function recvSlaveCloudCheckStatus of TOTOLINK T8 V4.1...
CVE-2023-24152CRITICAL9.8A command injection vulnerability in the serverIp parameter in the function meshSlaveUpdate of TOTOLINK T8 V4.1.5cu allo...
CVE-2023-24151CRITICAL9.8A command injection vulnerability in the ip parameter in the function recvSlaveCloudCheckStatus of TOTOLINK T8 V4.1.5cu ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now