2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-0740 | CRITICAL | 9 | 0.7% | Feb 8, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository answerdev/answer prior to 1.0.4. |
| CVE-2023-24813 | CRITICAL | 9.8 | 2.5% | Feb 7, 2023 | Dompdf is an HTML to PDF converter written in php. Due to the difference in the attribute parser of Dompdf and php-svg-l... |
| CVE-2023-0707 | CRITICAL | 9.8 | 0.3% | Feb 7, 2023 | A vulnerability was found in SourceCodester Medical Certificate Generator App 1.0. It has been rated as critical. Affect... |
| CVE-2023-23333 | CRITICAL | 9.8 | 99.3% | Feb 6, 2023 | There is a command injection vulnerability in SolarView Compact through 6.00, attackers can execute commands by bypassin... |
| CVE-2023-0686 | CRITICAL | 9.8 | 0.6% | Feb 6, 2023 | A vulnerability was found in SourceCodester Online Eyewear Shop 1.0. It has been classified as critical. This affects th... |
| CVE-2023-0687 | CRITICAL | 9.8 | 1.1% | Feb 6, 2023 | A vulnerability was found in GNU C Library 2.38. It has been declared as critical. This vulnerability affects the functi... |
| CVE-2023-24276 | CRITICAL | 9.8 | 1.9% | Feb 6, 2023 | TOTOlink A7100RU(V7.4cu.2313_B20191024) was discovered to contain a command injection vulnerability via the country para... |
| CVE-2023-24202 | CRITICAL | 9.8 | 1.0% | Feb 6, 2023 | Raffle Draw System v1.0 was discovered to contain a local file inclusion vulnerability via the page parameter in index.p... |
| CVE-2023-24201 | CRITICAL | 9.8 | 0.9% | Feb 6, 2023 | Raffle Draw System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at get_ticket.php. |
| CVE-2023-24200 | CRITICAL | 9.8 | 0.9% | Feb 6, 2023 | Raffle Draw System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at save_ticket.php. |
| CVE-2023-24199 | CRITICAL | 9.8 | 0.9% | Feb 6, 2023 | Raffle Draw System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at delete_ticket.ph... |
| CVE-2023-24198 | CRITICAL | 9.8 | 0.9% | Feb 6, 2023 | Raffle Draw System v1.0 was discovered to contain multiple SQL injection vulnerabilities at save_winner.php via the tick... |
| CVE-2023-0663 | CRITICAL | 9.8 | 0.9% | Feb 3, 2023 | A vulnerability was found in Calendar Event Management System 2.3.0. It has been rated as critical. This issue affects s... |
| CVE-2023-24576 | CRITICAL | 9.8 | 1.0% | Feb 3, 2023 | EMC NetWorker may potentially be vulnerable to an unauthenticated remote code execution vulnerability in the NetWorke... |
| CVE-2023-23477 | CRITICAL | 9.8 | 1.9% | Feb 3, 2023 | IBM WebSphere Application Server 8.5 and 9.0 traditional could allow a remote attacker to execute arbitrary code on the ... |
| CVE-2023-23088 | CRITICAL | 9.8 | 1.0% | Feb 3, 2023 | Buffer OverFlow Vulnerability in Barenboim json-parser master and v1.1.0 fixed in v1.1.1 allows an attacker to execute a... |
| CVE-2023-23087 | CRITICAL | 9.8 | 0.9% | Feb 3, 2023 | An issue was found in MojoJson v1.2.3 allows attackers to execute arbitary code via the destroy function. |
| CVE-2023-23086 | CRITICAL | 9.8 | 0.9% | Feb 3, 2023 | Buffer OverFlow Vulnerability in MojoJson v1.2.3 allows an attacker to execute arbitrary code via the SkipString functio... |
| CVE-2023-24157 | CRITICAL | 9.8 | 2.1% | Feb 3, 2023 | A command injection vulnerability in the serverIp parameter in the function updateWifiInfo of TOTOLINK T8 V4.1.5cu allow... |
| CVE-2023-24156 | CRITICAL | 9.8 | 2.1% | Feb 3, 2023 | A command injection vulnerability in the ip parameter in the function recvSlaveUpgstatus of TOTOLINK T8 V4.1.5cu allows ... |
| CVE-2023-24155 | CRITICAL | 9.8 | 0.9% | Feb 3, 2023 | TOTOLINK T8 V4.1.5cu was discovered to contain a hard code password for the telnet service which is stored in the compon... |
| CVE-2023-24154 | CRITICAL | 9.8 | 1.9% | Feb 3, 2023 | TOTOLINK T8 V4.1.5cu was discovered to contain a command injection vulnerability via the slaveIpList parameter in the fu... |
| CVE-2023-24153 | CRITICAL | 9.8 | 2.1% | Feb 3, 2023 | A command injection vulnerability in the version parameter in the function recvSlaveCloudCheckStatus of TOTOLINK T8 V4.1... |
| CVE-2023-24152 | CRITICAL | 9.8 | 2.1% | Feb 3, 2023 | A command injection vulnerability in the serverIp parameter in the function meshSlaveUpdate of TOTOLINK T8 V4.1.5cu allo... |
| CVE-2023-24151 | CRITICAL | 9.8 | 2.1% | Feb 3, 2023 | A command injection vulnerability in the ip parameter in the function recvSlaveCloudCheckStatus of TOTOLINK T8 V4.1.5cu ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now