2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-52610 | MEDIUM | 5.5 | 0.2% | Mar 18, 2024 | In the Linux kernel, the following vulnerability has been resolved: net/sched: act_ct: fix skb leak and crash on ooo fr... |
| CVE-2023-52609 | MEDIUM | 4.7 | 0.2% | Mar 18, 2024 | In the Linux kernel, the following vulnerability has been resolved: binder: fix race between mmput() and do_exit() Tas... |
| CVE-2023-52159 | HIGH | 7.5 | 1.1% | Mar 18, 2024 | A stack-based buffer overflow vulnerability in gross 0.9.3 through 1.x before 1.0.4 allows remote attackers to trigger a... |
| CVE-2023-40747 | HIGH | 7.5 | 1.0% | Mar 18, 2024 | Directory traversal vulnerability exists in A.K.I Software's PMailServer/PMailServer2 products' CGIs included in Interna... |
| CVE-2023-40160 | LOW | 3.7 | 0.7% | Mar 18, 2024 | Directory traversal vulnerability exists in Mailing List Search CGI (pmmls.exe) included in A.K.I Software's PMailServer... |
| CVE-2023-39933 | MEDIUM | 4.3 | 0.4% | Mar 18, 2024 | Insufficient verification vulnerability exists in Broadcast Mail CGI (pmc.exe) included in A.K.I Software's PMailServer/... |
| CVE-2023-39223 | MEDIUM | 5.4 | 0.3% | Mar 18, 2024 | Stored cross-site scripting vulnerability exists in CGIs included in A.K.I Software's PMailServer/PMailServer2 products.... |
| CVE-2023-36483 | MEDIUM | 6.5 | 0.5% | Mar 16, 2024 | Authorization bypass can be achieved by session ID prediction in MASmobile Classic Android version 1.16.18 and earlier ... |
| CVE-2023-6525 | MEDIUM | 4.8 | 0.4% | Mar 16, 2024 | The ElementsKit Elementor addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the progress bar ... |
| CVE-2023-51487 | HIGH | 8.8 | 0.2% | Mar 16, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in ARI Soft ARI Stream Quiz.This issue affects ARI Stream Quiz: from n/a... |
| CVE-2023-51486 | HIGH | 8.8 | 0.2% | Mar 16, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in RedNao WooCommerce PDF Invoice Builder.This issue affects WooCommerce... |
| CVE-2023-51474 | HIGH | 8.8 | 0.3% | Mar 16, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Pixelemu TerraClassifieds.This issue affects TerraClassifieds: from n... |
| CVE-2023-51521 | MEDIUM | 5.4 | 0.2% | Mar 16, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in ExpressTech Quiz And Survey Master.This issue affects Quiz And Survey... |
| CVE-2023-51512 | HIGH | 8.8 | 0.2% | Mar 16, 2024 | Cross Site Request Forgery (CSRF) vulnerability in WBW Product Table by WBW.This issue affects Product Table by WBW: fro... |
| CVE-2023-51510 | HIGH | 8.8 | 0.2% | Mar 16, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Atlas Gondal Export Media URLs.This issue affects Export Media URLs: ... |
| CVE-2023-51491 | HIGH | 8.8 | 0.2% | Mar 16, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Averta Depicter Slider.This issue affects Depicter Slider: from n/a t... |
| CVE-2023-51489 | HIGH | 8.8 | 0.2% | Mar 16, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Automattic, Inc. Crowdsignal Dashboard – Polls, Surveys & more.This i... |
| CVE-2023-51407 | HIGH | 8.8 | 0.2% | Mar 16, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Rocket Elements Split Test For Elementor.This issue affects Split Tes... |
| CVE-2023-7248 | CRITICAL | 9.8 | 0.3% | Mar 15, 2024 | Certain functionality in OpenText Vertica Management console might be prone to bypass via crafted requests. The vulne... |
| CVE-2023-7060 | HIGH | 7.5 | 0.5% | Mar 15, 2024 | Zephyr OS IP packet handling does not properly drop IP packets arriving on an external interface with a source address e... |
| CVE-2023-51699 | MEDIUM | 6 | 0.6% | Mar 15, 2024 | Fluid is an open source Kubernetes-native Distributed Dataset Orchestrator and Accelerator for data-intensive applicatio... |
| CVE-2023-7017 | CRITICAL | 9.8 | 0.3% | Mar 15, 2024 | Sciener locks' firmware update mechanism do not authenticate or validate firmware updates if passed to the lock through ... |
| CVE-2023-7009 | HIGH | 8.2 | 0.2% | Mar 15, 2024 | Some Sciener-based locks support plaintext message processing over Bluetooth Low Energy, allowing unencrypted malicious ... |
| CVE-2023-7007 | HIGH | 8.2 | 0.4% | Mar 15, 2024 | Sciener server does not validate connection requests from the GatewayG2, allowing an impersonation attack that provides ... |
| CVE-2023-7006 | CRITICAL | 9.1 | 0.5% | Mar 15, 2024 | The unlockKey character in a lock using Sciener firmware can be brute forced through repeated challenge requests, compro... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now