2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-43819HIGH7.8A stack based buffer overflow exists in Delta Electronics Delta Industrial Automation DOPSoft when parsing the InitialMa...
CVE-2023-43818HIGH7.8A buffer overflow exists in Delta Electronics Delta Industrial Automation DOPSoft. A remote, unauthenticated attacker ca...
CVE-2023-43817HIGH7.8A buffer overflow exists in Delta Electronics Delta Industrial Automation DOPSoft version 2 when parsing the wMailConten...
CVE-2023-43816HIGH7.8A buffer overflow vulnerability exists in Delta Electronics Delta Industrial Automation DOPSoft version 2 when parsing t...
CVE-2023-43815HIGH7.8A buffer overflow vulnerability exists in Delta Electronics Delta Industrial Automation DOPSoft version 2 when parsing t...
CVE-2023-51258MEDIUM5.5A memory leak issue discovered in YASM v.1.3.0 allows a local attacker to cause a denial of service via the new_Token fu...
CVE-2023-51217HIGH8.8An issue discovered in TenghuTOS TWS-200 firmware version:V4.0-201809201424 allows a remote attacker to execute arbitrar...
CVE-2023-47092Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv...
CVE-2023-49943MEDIUM5.4Zoho ManageEngine ServiceDesk Plus MSP before 14504 allows stored XSS (by a low-privileged technician) via a task's name...
CVE-2023-34348HIGH7.5 AVEVA PI Server versions 2023 and 2018 SP3 P05 and prior contain a vulnerability that could allow an unauthenticated us...
CVE-2023-31274MEDIUM5.3 AVEVA PI Server versions 2023 and 2018 SP3 P05 and prior contain a vulnerability that could allow an unauthenticated us...
CVE-2023-28901MEDIUM5.3The Skoda Automotive cloud contains a Broken Access Control vulnerability, allowing remote attackers to obtain recent tr...
CVE-2023-28900MEDIUM5.3The Skoda Automotive cloud contains a Broken Access Control vulnerability, allowing to obtain nicknames and other user i...
CVE-2023-7153MEDIUM6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Macroturk Software...
CVE-2023-40052HIGH7.5 This issue affects Progress Application Server (PAS) for OpenEdge in versions 11.7 prior to 11.7.18, 12.2 prior to 12...
CVE-2023-40051CRITICAL9.9This issue affects Progress Application Server (PAS) for OpenEdge in versions 11.7 prior to 11.7.18, 12.2 prior to 12.2....
CVE-2023-5806CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Mergen Software Qu...
CVE-2023-51464MEDIUM5.4Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t...
CVE-2023-51463MEDIUM5.4Adobe Experience Manager versions 6.5.18 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerabilit...
CVE-2023-6970MEDIUM6.1The WP Recipe Maker plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘Referer' header in all...
CVE-2023-6958MEDIUM5.4The WP Recipe Maker plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode(s) in a...
CVE-2023-6816CRITICAL9.8A flaw was found in X.Org server. Both DeviceFocusEvent and the XIQueryPointer reply contain a bit for each logical butt...
CVE-2023-48359MEDIUM4.4In autotest driver, there is a possible out of bounds write due to improper input validation. This could lead to local d...
CVE-2023-48358MEDIUM4.4In drm driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of...
CVE-2023-48357MEDIUM4.4In vsp driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now