2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-54223 | CRITICAL | 9.8 | 0.2% | Dec 30, 2025 | In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: xsk: Fix invalid buffer access for legac... |
| CVE-2023-54203 | CRITICAL | 9.1 | 0.2% | Dec 30, 2025 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix slab-out-of-bounds in init_smb2_rsp_hdr ... |
| CVE-2023-54184 | CRITICAL | 9.8 | 0.2% | Dec 30, 2025 | In the Linux kernel, the following vulnerability has been resolved: scsi: target: iscsit: Free cmds before session free... |
| CVE-2023-54094 | CRITICAL | 9.8 | 0.2% | Dec 24, 2025 | In the Linux kernel, the following vulnerability has been resolved: net: prevent skb corruption on frag list segmentati... |
| CVE-2023-54090 | CRITICAL | 9.8 | 0.2% | Dec 24, 2025 | In the Linux kernel, the following vulnerability has been resolved: ixgbe: Fix panic during XDP_TX with > 64 CPUs Comm... |
| CVE-2023-54076 | CRITICAL | 9.8 | 0.2% | Dec 24, 2025 | In the Linux kernel, the following vulnerability has been resolved: smb: client: fix missed ses refcounting Use new ci... |
| CVE-2023-53996 | CRITICAL | 9.3 | 0.1% | Dec 24, 2025 | In the Linux kernel, the following vulnerability has been resolved: x86/sev: Make enc_dec_hypercall() accept a size ins... |
| CVE-2023-53867 | CRITICAL | 9.8 | 0.2% | Dec 24, 2025 | In the Linux kernel, the following vulnerability has been resolved: ceph: fix potential use-after-free bug when trimmin... |
| CVE-2023-53982 | CRITICAL | 9.3 | 0.6% | Dec 23, 2025 | PMB 7.4.6 contains a SQL injection vulnerability in the storage parameter of the ajax.php endpoint that allows remote at... |
| CVE-2023-53980 | CRITICAL | 9.8 | 0.8% | Dec 22, 2025 | ProjectSend r1605 contains a remote code execution vulnerability that allows attackers to upload malicious files by mani... |
| CVE-2023-53975 | CRITICAL | 9.3 | 0.4% | Dec 22, 2025 | Atom CMS 2.0 contains an unauthenticated SQL injection vulnerability that allows remote attackers to manipulate database... |
| CVE-2023-53969 | CRITICAL | 9.3 | 0.5% | Dec 22, 2025 | Screen SFT DAB 600/C firmware 1.9.3 contains a session management vulnerability that allows attackers to bypass authenti... |
| CVE-2023-53968 | CRITICAL | 9.8 | 0.6% | Dec 22, 2025 | Screen SFT DAB 600/C Firmware 1.9.3 contains a session management vulnerability that allows attackers to bypass authenti... |
| CVE-2023-53967 | CRITICAL | 9.3 | 0.5% | Dec 22, 2025 | Screen SFT DAB 600/C firmware 1.9.3 contains an authentication bypass vulnerability that allows attackers to change the ... |
| CVE-2023-53966 | CRITICAL | 9.8 | 0.6% | Dec 22, 2025 | SOUND4 LinkAndShare Transmitter 1.1.2 contains a format string vulnerability that allows attackers to trigger memory sta... |
| CVE-2023-53964 | CRITICAL | 9.8 | 0.9% | Dec 22, 2025 | SOUND4 IMPACT/FIRST/PULSE/Eco v2.x contains an unauthenticated vulnerability in the /usr/cgi-bin/restorefactory.cgi endp... |
| CVE-2023-53963 | CRITICAL | 9.8 | 3.0% | Dec 22, 2025 | SOUND4 IMPACT/FIRST/PULSE/Eco v2.x contains an unauthenticated OS command injection vulnerability that allows remote att... |
| CVE-2023-53960 | CRITICAL | 9.8 | 0.7% | Dec 22, 2025 | SOUND4 IMPACT/FIRST/PULSE/Eco version 2.x contains an SQL injection vulnerability in the 'index.php' authentication mech... |
| CVE-2023-53955 | CRITICAL | 9.8 | 0.8% | Dec 22, 2025 | SOUND4 IMPACT/FIRST/PULSE/Eco v2.x contains an insecure direct object reference vulnerability that allows attackers to b... |
| CVE-2023-53959 | CRITICAL | 9.8 | 0.7% | Dec 19, 2025 | FileZilla Client 3.63.1 contains a DLL hijacking vulnerability that allows attackers to execute malicious code by placin... |
| CVE-2023-53951 | CRITICAL | 9.8 | 0.3% | Dec 19, 2025 | Ever Gauzy v0.281.9 contains a JWT authentication vulnerability that allows attackers to exploit weak HMAC secret key im... |
| CVE-2023-53950 | CRITICAL | 9.8 | 0.6% | Dec 19, 2025 | InnovaStudio WYSIWYG Editor 5.4 contains an unrestricted file upload vulnerability that allows attackers to bypass file ... |
| CVE-2023-53948 | CRITICAL | 9.8 | 0.8% | Dec 19, 2025 | Lilac-Reloaded for Nagios 2.0.8 contains a remote code execution vulnerability in the autodiscovery feature that allows ... |
| CVE-2023-53942 | CRITICAL | 9.4 | 0.5% | Dec 18, 2025 | File Thingie 2.5.7 contains an authenticated file upload vulnerability that allows remote attackers to upload malicious ... |
| CVE-2023-53941 | CRITICAL | 9.8 | 5.7% | Dec 18, 2025 | EasyPHP Webserver 14.1 contains an OS command injection vulnerability that allows unauthenticated attackers to execute a... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now