2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-32462 | CRITICAL | 9.8 | 1.8% | Feb 15, 2024 | Dell OS10 Networking Switches running 10.5.2.x and above contain an OS command injection vulnerability when using remot... |
| CVE-2023-28078 | CRITICAL | 9.1 | 0.7% | Feb 15, 2024 | Dell OS10 Networking Switches running 10.5.2.x and above contain a vulnerability with zeroMQ when VLT is configured. A ... |
| CVE-2023-6441 | CRITICAL | 9.8 | 0.7% | Feb 14, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in UNI-PA University ... |
| CVE-2023-42374 | CRITICAL | 9.8 | 1.3% | Feb 13, 2024 | An issue in mystenlabs Sui Blockchain before v.1.6.3 allow a remote attacker to execute arbitrary code and cause a denia... |
| CVE-2023-6036 | CRITICAL | 9.8 | 1.8% | Feb 12, 2024 | The Web3 WordPress plugin before 3.0.0 is vulnerable to an authentication bypass due to incorrect authentication checkin... |
| CVE-2023-46615 | CRITICAL | 9.8 | 0.8% | Feb 12, 2024 | Deserialization of Untrusted Data vulnerability in Kalli Dan. KD Coming Soon.This issue affects KD Coming Soon: from n/a... |
| CVE-2023-6677 | CRITICAL | 9.8 | 0.5% | Feb 9, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Oduyo Financial Te... |
| CVE-2023-50026 | CRITICAL | 9.8 | 0.6% | Feb 9, 2024 | SQL injection vulnerability in Presta Monster "Multi Accessories Pro" (hsmultiaccessoriespro) module for PrestaShop vers... |
| CVE-2023-46350 | CRITICAL | 9.8 | 0.6% | Feb 9, 2024 | SQL injection vulnerability in InnovaDeluxe "Manufacturer or supplier alphabetical search" (idxrmanufacturer) module for... |
| CVE-2023-49716 | CRITICAL | 9.8 | 0.6% | Feb 9, 2024 | In Emerson Rosemount GC370XA, GC700XA, and GC1500XA products, an authenticated user with network access could run arbit... |
| CVE-2023-46687 | CRITICAL | 9.8 | 0.9% | Feb 9, 2024 | In Emerson Rosemount GC370XA, GC700XA, and GC1500XA products, an unauthenticated user with network access could execu... |
| CVE-2023-43609 | CRITICAL | 9.1 | 0.5% | Feb 9, 2024 | In Emerson Rosemount GC370XA, GC700XA, and GC1500XA products, an unauthenticated user with network access could obtain a... |
| CVE-2023-47132 | CRITICAL | 9.8 | 0.6% | Feb 8, 2024 | An issue discovered in N-able N-central before 2023.6 and earlier allows attackers to gain escalated privileges via API ... |
| CVE-2023-40266 | CRITICAL | 9.8 | 0.7% | Feb 8, 2024 | An issue was discovered in Atos Unify OpenScape Xpressions WebAssistant V7 before V7R1 FR5 HF42 P911. It allows path tra... |
| CVE-2023-50061 | CRITICAL | 9.8 | 0.6% | Feb 8, 2024 | PrestaShop Op'art Easy Redirect >= 1.3.8 and <= 1.3.12 is vulnerable to SQL Injection via Oparteasyredirect::hookActionD... |
| CVE-2023-42282 | CRITICAL | 9.8 | 1.6% | Feb 8, 2024 | The ip package before 1.1.9 for Node.js might allow SSRF because some IP addresses (such as 0x7f.1) are improperly categ... |
| CVE-2023-48974 | CRITICAL | 9.6 | 3.0% | Feb 8, 2024 | Cross Site Scripting vulnerability in Axigen WebMail prior to 10.3.3.61 allows a remote attacker to escalate privileges ... |
| CVE-2023-38995 | CRITICAL | 9.8 | 0.8% | Feb 7, 2024 | An issue in SCHUHFRIED v.8.22.00 allows remote attacker to obtain the database password via crafted curl command. |
| CVE-2023-32330 | CRITICAL | 9.8 | 0.9% | Feb 7, 2024 | IBM Security Verify Access 10.0.0.0 through 10.0.6.1 uses insecure calls that could allow an attacker on the network to ... |
| CVE-2023-32328 | CRITICAL | 9.8 | 0.6% | Feb 7, 2024 | IBM Security Verify Access 10.0.0.0 through 10.0.6.1 uses insecure protocols in some instances that could allow an attac... |
| CVE-2023-46914 | CRITICAL | 9.8 | 0.8% | Feb 7, 2024 | SQL Injection vulnerability in RM bookingcalendar module for PrestaShop versions 2.7.9 and before, allows remote attacke... |
| CVE-2023-40545 | CRITICAL | 9.8 | 0.9% | Feb 6, 2024 | Authentication bypass when an OAuth2 Client is using client_secret_jwt as its authentication method on affected 11.3 ver... |
| CVE-2023-43534 | CRITICAL | 9.8 | 0.3% | Feb 6, 2024 | Memory corruption while validating the TID to Link Mapping action request frame, when a station connects to an access po... |
| CVE-2023-43520 | CRITICAL | 9.8 | 0.3% | Feb 6, 2024 | Memory corruption when AP includes TID to link mapping IE in the beacons and STA is parsing the beacon TID to link mappi... |
| CVE-2023-43519 | CRITICAL | 9.8 | 0.3% | Feb 6, 2024 | Memory corruption in video while parsing the Videoinfo, when the size of atom is greater than the videoinfo size. |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now