2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-34980HIGH8.4An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, ...
CVE-2023-32969MEDIUM4.8A cross-site scripting (XSS) vulnerability has been reported to affect Network & Virtual Switch. If exploited, the vulne...
CVE-2023-52496Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2023-28826MEDIUM5.5This issue was addressed with improved redaction of sensitive information. This issue is fixed in iOS 16.7.6 and iPadOS ...
CVE-2023-46172CRITICAL9.8IBM DS8900F HMC 89.21.19.0, 89.21.31.0, 89.30.68.0, 89.32.40.0, and 89.33.48.0 could allow a remote attacker to bypass a...
CVE-2023-46171MEDIUM4.3IBM DS8900F HMC 89.21.19.0, 89.21.31.0, 89.30.68.0, 89.32.40.0, and 89.33.48.0 could allow an authenticated user to view...
CVE-2023-46170MEDIUM6.5IBM DS8900F HMC 89.21.19.0, 89.21.31.0, 89.30.68.0, 89.32.40.0, and 89.33.48.0 could allow an authenticated user to arbi...
CVE-2023-46169MEDIUM6.5 IBM DS8900F HMC 89.21.19.0, 89.21.31.0, 89.30.68.0, 89.32.40.0, and 89.33.48.0 could allow an authenticated user to arb...
CVE-2023-48725HIGH8.8A stack-based buffer overflow vulnerability exists in the JSON Parsing getblockschedule() functionality of Netgear RAX30...
CVE-2023-47691Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2023-42661HIGH8.8JFrog Artifactory prior to version 7.76.2 is vulnerable to Arbitrary File Write of untrusted data, which may lead to DoS...
CVE-2023-42509HIGH7.5JFrog Artifactory later than version 7.17.4 but prior to version 7.77.0 is vulnerable to an issue whereby a sequence of ...
CVE-2023-42662MEDIUM6.5JFrog Artifactory versions 7.59 and above, but below 7.59.18, 7.63.18, 7.68.19, 7.71.8 are vulnerable to an issue whereb...
CVE-2023-41503CRITICAL9.8Student Enrollment In PHP v1.0 was discovered to contain a SQL injection vulnerability via the Login function.
CVE-2023-41015MEDIUM5.5code-projects.org Online Job Portal 1.0 is vulnerable to SQL Injection via /Employer/DeleteJob.php?JobId=1.
CVE-2023-41014CRITICAL9.8code-projects.org Online Job Portal 1.0 is vulnerable to SQL Injection via the Username parameter for "Employer."
CVE-2023-33676HIGH8.4Sourcecodester Lost and Found Information System's Version 1.0 is vulnerable to unauthenticated SQL Injection at "?page=...
CVE-2023-51395HIGH8.8The vulnerability described by CVE-2023-0972 has been additionally discovered in Silicon Labs Z-Wave end devices. This v...
CVE-2023-51786CRITICAL9.1An issue was discovered in Lustre versions 2.13.x, 2.14.x, and 2.15.x before 2.15.4, allows attackers to escalate privil...
CVE-2023-51281MEDIUM5.4Cross Site Scripting vulnerability in Customer Support System v.1.0 allows a remote attacker to escalate privileges via ...
CVE-2023-49989CRITICAL9.8Hotel Booking Management v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at update.php...
CVE-2023-49988HIGH7.5Hotel Booking Management v1.0 was discovered to contain a SQL injection vulnerability via the npss parameter at rooms.ph...
CVE-2023-49987MEDIUM5.4A cross-site scripting (XSS) vulnerability in the component /management/term of School Fees Management System v1.0 allow...
CVE-2023-49986MEDIUM4.7A cross-site scripting (XSS) vulnerability in the component /admin/parent of School Fees Management System 1.0 allow att...
CVE-2023-47415HIGH7.5Cypress Solutions CTM-200 v2.7.1.5600 and below was discovered to contain an OS command injection vulnerability via the ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now