2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-46776HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Serena Villa Auto Excerpt everywhere plugin <= 1.5 versions.
CVE-2023-4996HIGH8.8Netskope was made aware of a security vulnerability in its NSClient product for version 100 & prior where a malicious no...
CVE-2023-46775HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Djo Original texts Yandex WebMaster plugin <= 1.18 versions.
CVE-2023-47182HIGH8.8Cross-Site Request Forgery (CSRF) leading to a Stored Cross-Site Scripting (XSS) vulnerability in Nazmul Hossain Nihal L...
CVE-2023-46823HIGH7.2Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Avirtum ImageLinks...
CVE-2023-46821HIGH7.2Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Milan Petrovic GD ...
CVE-2023-46084HIGH8.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in bPlugins LLC Icons...
CVE-2023-38407HIGH7.5bgpd/bgp_label.c in FRRouting (FRR) before 8.5 attempts to read beyond the end of the stream during labeled unicast pars...
CVE-2023-32837HIGH7.8In video, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of ...
CVE-2023-32832HIGH7In video, there is a possible memory corruption due to a race condition. This could lead to local escalation of privileg...
CVE-2023-20702HIGH7.5In 5G NRLC, there is a possible invalid memory access due to lack of error handling. This could lead to remote denial of...
CVE-2023-46382HIGH7.5LOYTEC LINX-151, LINX-212, LVIS-3ME12-A1, LIOB-586, LIOB-580 V2, LIOB-588, L-INX Configurator devices (all versions) use...
CVE-2023-46381HIGH8.2LOYTEC LINX-151, LINX-212, LVIS-3ME12-A1, LIOB-586, LIOB-580 V2, LIOB-588, L-INX Configurator devices (all versions) lac...
CVE-2023-46380HIGH7.5LOYTEC LINX-151, LINX-212, LVIS-3ME12-A1, LIOB-586, LIOB-580 V2, LIOB-588, L-INX Configurator devices (all versions) sen...
CVE-2023-40215HIGH7.2Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Demonisblack demon...
CVE-2023-38391HIGH7.2Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Themesgrove Onepag...
CVE-2023-35910HIGH8.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Nucleus_genius Qua...
CVE-2023-32741HIGH7.2Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in IT Path Solutions ...
CVE-2023-36677HIGH8.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Smartypants SP Pro...
CVE-2023-47235HIGH7.5An issue was discovered in FRRouting FRR through 9.0.1. A crash can occur when a malformed BGP UPDATE message with an EO...
CVE-2023-47234HIGH7.5An issue was discovered in FRRouting FRR through 9.0.1. A crash can occur when processing a crafted BGP UPDATE message w...
CVE-2023-41726HIGH7.8Ivanti Avalanche Incorrect Default Permissions allows Local Privilege Escalation Vulnerability
CVE-2023-41725HIGH7.8Ivanti Avalanche EnterpriseServer Service Unrestricted File Upload Local Privilege Escalation Vulnerability
CVE-2023-3893HIGH8.8A security issue was discovered in Kubernetes where a user that can create pods on Windows nodes running kubernetes-csi...
CVE-2023-39299HIGH7.5A path traversal vulnerability has been reported to affect Music Station. If exploited, the vulnerability could allow us...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now