2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2023-52218CRITICAL9.8Deserialization of Untrusted Data vulnerability in Anton Bond Woocommerce Tranzila Payment Gateway.This issue affects Wo...
CVE-2023-52215CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in UkrSolution Simple...
CVE-2023-6921CRITICAL9.1Blind SQL Injection vulnerability in PrestaShow Google Integrator (PrestaShop addon) allows for data extraction and modi...
CVE-2023-29050CRITICAL9.6The optional "LDAP contacts provider" could be abused by privileged users to inject LDAP filter strings that allow to ac...
CVE-2023-50948CRITICAL9.8IBM Storage Fusion HCI 2.1.0 through 2.6.1 contains hard-coded credentials, such as a password or cryptographic key, whi...
CVE-2023-7212CRITICAL9.8A vulnerability classified as critical has been found in DeDeCMS up to 5.7.112. Affected is an unknown function of the f...
CVE-2023-7210CRITICAL9.8A vulnerability was found in OneNav up to 0.9.33. It has been classified as critical. This affects an unknown part of th...
CVE-2023-7208CRITICAL9.8A vulnerability classified as critical was found in Totolink X2000R_V2 2.0.0-B20230727.10434. This vulnerability affects...
CVE-2023-46953CRITICAL9.8SQL Injection vulnerability in ABO.CMS v.5.9.3, allows remote attackers to execute arbitrary code via the d parameter in...
CVE-2023-51673CRITICAL9.8Cross-Site Request Forgery (CSRF) vulnerability in Designful Stylish Price List – Price Table Builder & QR Code Restaura...
CVE-2023-50027CRITICAL9.8SQL Injection vulnerability in Buy Addons baproductzoommagnifier module for PrestaShop versions 1.0.16 and before, allow...
CVE-2023-51502CRITICAL9.8Authorization Bypass Through User-Controlled Key vulnerability in WooCommerce WooCommerce Stripe Payment Gateway.This is...
CVE-2023-51277CRITICAL9.8nbviewer-app (aka Jupyter Notebook Viewer) before 0.1.6 has the get-task-allow entitlement for release builds.
CVE-2023-51812CRITICAL9.8Tenda AX3 v16.03.12.11 was discovered to contain a remote code execution (RCE) vulnerability via the list parameter at /...
CVE-2023-51154CRITICAL9.8Jizhicms v2.5 was discovered to contain an arbitrary file download vulnerability via the component /admin/c/PluginsContr...
CVE-2023-50867CRITICAL9.8Travel Website v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'username' parameter of...
CVE-2023-50866CRITICAL9.8Travel Website v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'username' parameter of...
CVE-2023-50865CRITICAL9.8Travel Website v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'city' parameter of the...
CVE-2023-50864CRITICAL9.8Travel Website v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'hotelId' parameter of ...
CVE-2023-50863CRITICAL9.8Travel Website v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'hotelIDHidden' paramet...
CVE-2023-50862CRITICAL9.8Travel Website v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'hotelIDHidden' paramet...
CVE-2023-50753CRITICAL9.8Online Notice Board System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'dd' parame...
CVE-2023-50752CRITICAL9.8Online Notice Board System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'e' paramet...
CVE-2023-50743CRITICAL9.8Online Notice Board System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'dd' parame...
CVE-2023-49666CRITICAL9.8Billing Software v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'custmer_details' par...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now