2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-5032 | HIGH | 7.2 | 0.5% | Sep 18, 2023 | A vulnerability was found in OpenRapid RapidCMS 1.3.1. It has been rated as critical. Affected by this issue is some unk... |
| CVE-2023-41349 | HIGH | 8.8 | 0.6% | Sep 18, 2023 | ASUS router RT-AX88U has a vulnerability of using externally controllable format strings within its Advanced Open VPN f... |
| CVE-2023-35851 | HIGH | 7.5 | 0.6% | Sep 18, 2023 | SUNNET WMPro portal's FAQ function has insufficient validation for user input. An unauthenticated remote attacker can i... |
| CVE-2023-35850 | HIGH | 7.2 | 0.7% | Sep 18, 2023 | SUNNET WMPro portal's file management function has a vulnerability of insufficient filtering for user input. A remote a... |
| CVE-2023-5030 | HIGH | 8.8 | 0.6% | Sep 17, 2023 | A vulnerability has been found in Tongda OA up to 11.10 and classified as critical. This vulnerability affects unknown c... |
| CVE-2023-5029 | HIGH | 8.8 | 0.6% | Sep 17, 2023 | A vulnerability, which was classified as critical, was found in mccms 2.6. This affects an unknown part of the file /cat... |
| CVE-2023-5027 | HIGH | 7.5 | 0.5% | Sep 17, 2023 | A vulnerability classified as critical was found in SourceCodester Simple Membership System 1.0. Affected by this vulner... |
| CVE-2023-5023 | HIGH | 8.8 | 0.6% | Sep 17, 2023 | A vulnerability was found in Tongda OA 2017 and classified as critical. Affected by this issue is some unknown functiona... |
| CVE-2023-5022 | HIGH | 8.8 | 0.7% | Sep 17, 2023 | A vulnerability has been found in DedeCMS up to 5.7.100 and classified as critical. Affected by this vulnerability is an... |
| CVE-2023-5012 | HIGH | 7.8 | 0.2% | Sep 16, 2023 | A vulnerability, which was classified as problematic, was found in Topaz OFD 2.11.0.201. This affects an unknown part of... |
| CVE-2023-3025 | HIGH | 7.2 | 0.4% | Sep 16, 2023 | The Dropbox Folder Share plugin for WordPress is vulnerable to Server-Side Request Forgery in versions up to, and includ... |
| CVE-2023-36562 | HIGH | 7.1 | 0.9% | Sep 15, 2023 | Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability |
| CVE-2023-41886 | HIGH | 7.5 | 0.8% | Sep 15, 2023 | OpenRefine is a powerful free, open source tool for working with messy data. Prior to version 3.7.5, an arbitrary file r... |
| CVE-2023-0813 | HIGH | 7.5 | 0.9% | Sep 15, 2023 | A flaw was found in the Network Observability plugin for OpenShift console. Unless the Loki authToken configuration is s... |
| CVE-2023-40018 | HIGH | 7.5 | 0.7% | Sep 15, 2023 | FreeSWITCH is a Software Defined Telecom Stack enabling the digital transformation from proprietary telecom switches to ... |
| CVE-2023-4991 | HIGH | 7.8 | 0.2% | Sep 15, 2023 | A vulnerability was found in NextBX QWAlerter 4.50. It has been rated as critical. Affected by this issue is some unknow... |
| CVE-2023-4987 | HIGH | 8 | 0.7% | Sep 15, 2023 | A vulnerability, which was classified as critical, has been found in infinitietech taskhub 2.8.7. Affected by this issue... |
| CVE-2023-4985 | HIGH | 7.8 | 0.4% | Sep 15, 2023 | A vulnerability classified as critical has been found in Supcon InPlant SCADA up to 20230901. Affected is an unknown fun... |
| CVE-2023-42270 | HIGH | 8.8 | 0.4% | Sep 15, 2023 | Grocy <= 4.0.2 is vulnerable to Cross Site Request Forgery (CSRF). |
| CVE-2023-4665 | HIGH | 8.8 | 1.1% | Sep 15, 2023 | Incorrect Execution-Assigned Permissions vulnerability in Saphira Saphira Connect allows Privilege Escalation. This iss... |
| CVE-2023-4664 | HIGH | 8.8 | 0.8% | Sep 15, 2023 | Incorrect Default Permissions vulnerability in Saphira Saphira Connect allows Privilege Escalation. This issue affects ... |
| CVE-2023-36658 | HIGH | 7.8 | 0.2% | Sep 15, 2023 | An issue was discovered in OPSWAT MetaDefender KIOSK 4.6.1.9996. It has an unquoted service path that can be abused loca... |
| CVE-2023-38039 | HIGH | 7.5 | 62.2% | Sep 15, 2023 | When curl retrieves an HTTP response, it stores the incoming headers so that they can be accessed later via the libcurl ... |
| CVE-2023-3891 | HIGH | 7 | 0.3% | Sep 15, 2023 | Race condition in Lapce v0.2.8 allows an attacker to elevate privileges on the system |
| CVE-2023-40958 | HIGH | 8.8 | 1.1% | Sep 15, 2023 | A SQL injection vulnerability in Didotech srl Engineering & Lifecycle Management (aka pdm) v.14.0, v.15.0 and v.16.0 fix... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now