2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-52610MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net/sched: act_ct: fix skb leak and crash on ooo fr...
CVE-2023-52609MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: binder: fix race between mmput() and do_exit() Tas...
CVE-2023-52159HIGH7.5A stack-based buffer overflow vulnerability in gross 0.9.3 through 1.x before 1.0.4 allows remote attackers to trigger a...
CVE-2023-40747HIGH7.5Directory traversal vulnerability exists in A.K.I Software's PMailServer/PMailServer2 products' CGIs included in Interna...
CVE-2023-40160LOW3.7Directory traversal vulnerability exists in Mailing List Search CGI (pmmls.exe) included in A.K.I Software's PMailServer...
CVE-2023-39933MEDIUM4.3Insufficient verification vulnerability exists in Broadcast Mail CGI (pmc.exe) included in A.K.I Software's PMailServer/...
CVE-2023-39223MEDIUM5.4Stored cross-site scripting vulnerability exists in CGIs included in A.K.I Software's PMailServer/PMailServer2 products....
CVE-2023-36483MEDIUM6.5Authorization bypass can be achieved by session ID prediction in MASmobile Classic Android  version 1.16.18 and earlier ...
CVE-2023-6525MEDIUM4.8The ElementsKit Elementor addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the progress bar ...
CVE-2023-51487HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in ARI Soft ARI Stream Quiz.This issue affects ARI Stream Quiz: from n/a...
CVE-2023-51486HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in RedNao WooCommerce PDF Invoice Builder.This issue affects WooCommerce...
CVE-2023-51474HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Pixelemu TerraClassifieds.This issue affects TerraClassifieds: from n...
CVE-2023-51521MEDIUM5.4Cross-Site Request Forgery (CSRF) vulnerability in ExpressTech Quiz And Survey Master.This issue affects Quiz And Survey...
CVE-2023-51512HIGH8.8Cross Site Request Forgery (CSRF) vulnerability in WBW Product Table by WBW.This issue affects Product Table by WBW: fro...
CVE-2023-51510HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Atlas Gondal Export Media URLs.This issue affects Export Media URLs: ...
CVE-2023-51491HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Averta Depicter Slider.This issue affects Depicter Slider: from n/a t...
CVE-2023-51489HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Automattic, Inc. Crowdsignal Dashboard – Polls, Surveys & more.This i...
CVE-2023-51407HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Rocket Elements Split Test For Elementor.This issue affects Split Tes...
CVE-2023-7248CRITICAL9.8 Certain functionality in OpenText Vertica Management console might be prone to bypass via crafted requests.  The vulne...
CVE-2023-7060HIGH7.5Zephyr OS IP packet handling does not properly drop IP packets arriving on an external interface with a source address e...
CVE-2023-51699MEDIUM6Fluid is an open source Kubernetes-native Distributed Dataset Orchestrator and Accelerator for data-intensive applicatio...
CVE-2023-7017CRITICAL9.8Sciener locks' firmware update mechanism do not authenticate or validate firmware updates if passed to the lock through ...
CVE-2023-7009HIGH8.2Some Sciener-based locks support plaintext message processing over Bluetooth Low Energy, allowing unencrypted malicious ...
CVE-2023-7007HIGH8.2Sciener server does not validate connection requests from the GatewayG2, allowing an impersonation attack that provides ...
CVE-2023-7006CRITICAL9.1The unlockKey character in a lock using Sciener firmware can be brute forced through repeated challenge requests, compro...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now