2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2023-49569CRITICAL9.8A path traversal vulnerability was discovered in go-git versions prior to v5.11. This vulnerability allows an attacker t...
CVE-2023-30016CRITICAL9.8SQL Injection vulnerability in oretnom23 Judging Management System v1.0, allows remote attackers to execute arbitrary co...
CVE-2023-30015CRITICAL9.8SQL Injection vulnerability in oretnom23 Judging Management System v1.0, allows remote attackers to execute arbitrary co...
CVE-2023-30014CRITICAL9.8SQL Injection vulnerability in oretnom23 Judging Management System v1.0, allows remote attackers to execute arbitrary co...
CVE-2023-50919CRITICAL9.8An issue was discovered on GL.iNet devices before version 4.5.0. There is an NGINX authentication bypass via Lua string ...
CVE-2023-37117CRITICAL9.8A heap-use-after-free vulnerability was found in live555 version 2023.05.10 while handling the SETUP.
CVE-2023-51350CRITICAL9.8A spoofing attack in ujcms v.8.0.2 allows a remote attacker to obtain sensitive information and execute arbitrary code v...
CVE-2023-51987CRITICAL9.8D-Link DIR-822+ V1.0.2 contains a login bypass in the HNAP1 interface, which allows attackers to log in to administrator...
CVE-2023-51984CRITICAL9.8D-Link DIR-822+ V1.0.2 was found to contain a command injection in SetStaticRouteSettings function. allows remote attack...
CVE-2023-6875CRITICAL9.8The POST SMTP Mailer – Email log, Delivery Failure Notifications and Best Mail SMTP for WordPress plugin for WordPress i...
CVE-2023-6634CRITICAL9.8The LearnPress plugin for WordPress is vulnerable to Command Injection in all versions up to, and including, 4.2.5.7 via...
CVE-2023-6316CRITICAL9.8The MW WP Form plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type validation in ...
CVE-2023-6220CRITICAL9.8The Piotnet Forms plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type validation ...
CVE-2023-52032CRITICAL9.8TOTOlink EX1200T V4.1.2cu.5232_B20210713 was discovered to contain a remote command execution (RCE) vulnerability via th...
CVE-2023-52031CRITICAL9.8TOTOlink A3700R v9.1.2u.5822_B20200513 was discovered to contain a remote command execution (RCE) vulnerability via the ...
CVE-2023-52030CRITICAL9.8TOTOlink A3700R v9.1.2u.5822_B20200513 was discovered to contain a remote command execution (RCE) vulnerability via the ...
CVE-2023-52029CRITICAL9.8TOTOlink A3700R v9.1.2u.5822_B20200513 was discovered to contain a remote command execution (RCE) vulnerability via the ...
CVE-2023-52028CRITICAL9.8TOTOlink A3700R v9.1.2u.5822_B20200513 was discovered to contain a remote command execution (RCE) vulnerability via the ...
CVE-2023-52027CRITICAL9.8TOTOlink A3700R v9.1.2u.5822_B20200513 was discovered to contain a remote command execution (RCE) vulnerability via the ...
CVE-2023-51123CRITICAL9.8An issue discovered in D-Link dir815 v.1.01SSb08.bin allows a remote attacker to execute arbitrary code via a crafted PO...
CVE-2023-40414CRITICAL9.8A use-after-free issue was addressed with improved memory management. This issue is fixed in watchOS 10, iOS 17 and iPad...
CVE-2023-52064CRITICAL9.8Wuzhicms v4.1.0 was discovered to contain a SQL injection vulnerability via the $keywords parameter at /core/admin/copyf...
CVE-2023-51126CRITICAL9.8Command injection vulnerability in /usr/www/res.php in FLIR AX8 up to 1.46.16 allows attackers to run arbitrary commands...
CVE-2023-31488CRITICAL9.8Hyland Perceptive Filters releases before 2023-12-08 (e.g., 11.4.0.2647), as used in Cisco IronPort Email Security Appli...
CVE-2023-51970CRITICAL9.8Tenda AX1803 v1.0.0.1 contains a stack overflow via the iptv.stb.mode parameter in the function formSetIptv.

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now