2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-49768 | MEDIUM | 6.5 | 0.3% | Apr 18, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in FormAssembly / Dre... |
| CVE-2023-47843 | HIGH | 7.6 | 0.5% | Apr 18, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Zachary Segal CataBlog.T... |
| CVE-2023-3675 | MEDIUM | 6.5 | 0.5% | Apr 18, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Secomea GateManager (Web... |
| CVE-2023-41864 | MEDIUM | 4.3 | 0.2% | Apr 18, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Pepro Dev. Group PeproDev CF7 Database.This issue affects PeproDev CF... |
| CVE-2023-49742 | CRITICAL | 9.9 | 0.8% | Apr 18, 2024 | Missing Authorization vulnerability in Support Genix.This issue affects Support Genix: from n/a through 1.2.3. |
| CVE-2023-4509 | MEDIUM | 4.3 | 0.2% | Apr 18, 2024 | It is possible for an API key to be logged in clear text in the audit log file after an invalid login attempt. |
| CVE-2023-4235 | HIGH | 8.1 | 0.9% | Apr 17, 2024 | A flaw was found in ofono, an Open Source Telephony on Linux. A stack overflow bug is triggered within the decode_delive... |
| CVE-2023-4234 | HIGH | 8.1 | 1.1% | Apr 17, 2024 | A flaw was found in ofono, an Open Source Telephony on Linux. A stack overflow bug is triggered within the decode_submit... |
| CVE-2023-4233 | HIGH | 8.1 | 1.0% | Apr 17, 2024 | A flaw was found in ofono, an Open Source Telephony on Linux. A stack overflow bug is triggered within the sms_decode_ad... |
| CVE-2023-4232 | HIGH | 8.1 | 0.9% | Apr 17, 2024 | A flaw was found in ofono, an Open Source Telephony on Linux. A stack overflow bug is triggered within the decode_status... |
| CVE-2023-5407 | MEDIUM | 5.9 | 0.4% | Apr 17, 2024 | Controller denial of service due to improper handling of a specially crafted message received by the controller. See Ho... |
| CVE-2023-5406 | MEDIUM | 5.9 | 0.7% | Apr 17, 2024 | Server communication with a controller can lead to remote code execution using a specially crafted message from the cont... |
| CVE-2023-5405 | MEDIUM | 5.9 | 0.4% | Apr 17, 2024 | Server information leak for the CDA Server process memory can occur when an error is generated in response to a speciall... |
| CVE-2023-5404 | HIGH | 8.1 | 0.7% | Apr 17, 2024 | Server receiving a malformed message can cause a pointer to be overwritten which can result in a remote code execution o... |
| CVE-2023-5403 | HIGH | 8.1 | 0.7% | Apr 17, 2024 | Server hostname translation to IP address manipulation which could lead to an attacker performing remote code execution ... |
| CVE-2023-5401 | HIGH | 8.1 | 0.7% | Apr 17, 2024 | Server receiving a malformed message based on a using the specified key values can cause a stack overflow vulnerability ... |
| CVE-2023-5400 | HIGH | 8.1 | 0.7% | Apr 17, 2024 | Server receiving a malformed message based on a using the specified key values can cause a heap overflow vulnerability w... |
| CVE-2023-5398 | MEDIUM | 5.9 | 0.4% | Apr 17, 2024 | Server receiving a malformed message based on a list of IPs resulting in heap corruption causing a denial of service. Se... |
| CVE-2023-5397 | HIGH | 8.1 | 0.8% | Apr 17, 2024 | Server receiving a malformed message to create a new connection could lead to an attacker performing remote code executi... |
| CVE-2023-5396 | HIGH | 7.4 | 0.7% | Apr 17, 2024 | Server receiving a malformed message creates connection for a hostname that may cause a stack overflow resulting in poss... |
| CVE-2023-5395 | HIGH | 8.1 | 0.7% | Apr 17, 2024 | Server receiving a malformed message that uses the hostname in an internal table may cause a stack overflow resulting in... |
| CVE-2023-52645 | MEDIUM | 4.7 | 0.2% | Apr 17, 2024 | In the Linux kernel, the following vulnerability has been resolved: pmdomain: mediatek: fix race conditions with genpd ... |
| CVE-2023-46060 | HIGH | 7.5 | 0.8% | Apr 17, 2024 | A Buffer Overflow vulnerability in Tenda AC500 v.2.0.1.9 allows a remote attacker to cause a denial of service via the p... |
| CVE-2023-6805 | MEDIUM | 6.4 | 0.3% | Apr 17, 2024 | The RSS Aggregator by Feedzy – Feed to Post, Autoblogging, News & YouTube Video Feeds Aggregator plugin for WordPress is... |
| CVE-2023-45744 | HIGH | 8.8 | 1.3% | Apr 17, 2024 | A data integrity vulnerability exists in the web interface /cgi-bin/upload_config.cgi functionality of Peplink Smart Rea... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now