2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-38913MEDIUM5.3SQL injection vulnerability in anirbandutta9 NEWS-BUZZ v.1.0 allows a remote attacker to execute arbitrary code via a cr...
CVE-2023-36338MEDIUM5.3Inventory Management System 1 was discovered to contain a SQL injection vulnerability.
CVE-2023-36337MEDIUM6.1A reflected cross-site scripting (XSS) vulnerability in the component /index.php/cuzh4 of PHP Inventory Management Syste...
CVE-2023-29144LOW3.3Malwarebytes 1.0.14 for Linux doesn't properly compute signatures in some scenarios. This allows a bypass of detection.
CVE-2023-53776HIGH8.8Screen SFT DAB 1.9.3 contains an authentication bypass vulnerability that allows attackers to exploit weak session manag...
CVE-2023-53775MEDIUM6.5Screen SFT DAB 1.9.3 contains an authentication bypass vulnerability that allows attackers to change user passwords by e...
CVE-2023-53741HIGH8.1Screen SFT DAB 1.9.3 contains a weak session management vulnerability that allows attackers to bypass authentication con...
CVE-2023-53740CRITICAL9.8Screen SFT DAB 1.9.3 contains an authentication bypass vulnerability that allows attackers to change the admin password ...
CVE-2023-53774CRITICAL9.8MiniDVBLinux 5.4 contains a remote code execution vulnerability in the SVDRP protocol that allows remote attackers to se...
CVE-2023-53773MEDIUM5.3MiniDVBLinux 5.4 contains an unauthenticated vulnerability in the tv_action.sh script that allows remote attackers to ge...
CVE-2023-53772HIGH7.5MiniDVBLinux 5.4 contains an arbitrary file disclosure vulnerability that allows attackers to read sensitive system file...
CVE-2023-53771CRITICAL9.8MiniDVBLinux 5.4 contains an authentication bypass vulnerability that allows remote attackers to change the root passwor...
CVE-2023-53770HIGH7.5MiniDVBLinux 5.4 contains an unauthenticated configuration download vulnerability that allows remote attackers to access...
CVE-2023-53739CRITICAL9.9Tinycontrol LAN Controller v3 LK3 version 1.58a contains an unauthenticated vulnerability that allows remote attackers t...
CVE-2023-23729MEDIUM5.4Missing Authorization vulnerability in Brainstorm Force Spectra allows Exploiting Incorrectly Configured Access Control ...
CVE-2023-22675MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in Taylor Hawkes WP Fast Cache allows Cross Site Request Forgery.This is...
CVE-2023-53866HIGH7.8In the Linux kernel, the following vulnerability has been resolved: ASoC: soc-compress: Reposition and add pcm_mutex I...
CVE-2023-53865In the Linux kernel, the following vulnerability has been resolved: btrfs: fix warning when putting transaction with qg...
CVE-2023-53864In the Linux kernel, the following vulnerability has been resolved: drm/mxsfb: Disable overlay plane in mxsfb_plane_ove...
CVE-2023-53863In the Linux kernel, the following vulnerability has been resolved: netlink: do not hard code device address lenth in f...
CVE-2023-53862HIGH7.8In the Linux kernel, the following vulnerability has been resolved: hfs: fix missing hfs_bnode_get() in __hfs_bnode_cre...
CVE-2023-53861In the Linux kernel, the following vulnerability has been resolved: ext4: correct grp validation in ext4_mb_good_group ...
CVE-2023-53860HIGH7.8In the Linux kernel, the following vulnerability has been resolved: dm: don't attempt to queue IO under RCU protection ...
CVE-2023-53859In the Linux kernel, the following vulnerability has been resolved: s390/idle: mark arch_cpu_idle() noinstr linux-next...
CVE-2023-53858In the Linux kernel, the following vulnerability has been resolved: tty: serial: samsung_tty: Fix a memory leak in s3c2...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now