2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-4449HIGH8.8A vulnerability was found in SourceCodester Free and Open Source Inventory Management System 1.0. It has been classified...
CVE-2023-39786HIGH7.5Tenda AC8V4 V16.03.34.06 was discovered to contain a stack overflow via the time parameter in the sscanf function.
CVE-2023-39785HIGH7.5Tenda AC8V4 V16.03.34.06 was discovered to contain a stack overflow via the list parameter in the set_qosMib_list functi...
CVE-2023-39784HIGH7.5Tenda AC8V4 V16.03.34.06 was discovered to contain a stack overflow via the list parameter in the save_virtualser_data f...
CVE-2023-37250HIGH7Unity Parsec has a TOCTOU race condition that permits local attackers to escalate privileges to SYSTEM if Parsec was ins...
CVE-2023-37369HIGH7.5In Qt before 5.15.15, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.2, there can be an application crash in QXmlS...
CVE-2023-40711HIGH7.5Veilid before 0.1.9 does not check the size of uncompressed data during decompression upon an envelope receipt, which al...
CVE-2023-2316HIGH7.4Improper path handling in Typora before 1.6.7 on Windows and Linux allows a crafted webpage to access local files and ex...
CVE-2023-2110HIGH7.1Improper path handling in Obsidian desktop before 1.2.8 on Windows, Linux and macOS allows a crafted webpage to access l...
CVE-2023-40173HIGH7.5Social media skeleton is an uncompleted/framework social media project implemented using a php, css ,javascript and html...
CVE-2023-40172HIGH8.8Social media skeleton is an uncompleted/framework social media project implemented using a php, css ,javascript and html...
CVE-2023-38839HIGH7.5SQL injection vulnerability in Kidus Minimati v.1.0.0 allows a remote attacker to obtain sensitive information via theID...
CVE-2023-20212HIGH7.5A vulnerability in the AutoIt module of ClamAV could allow an unauthenticated, remote attacker to cause a denial of serv...
CVE-2023-38890HIGH8.8Online Shopping Portal Project 3.1 allows remote attackers to execute arbitrary SQL commands/queries via the login form,...
CVE-2023-4415HIGH8.8A vulnerability was found in Ruijie RG-EW1200G 07161417 r483. It has been rated as critical. Affected by this issue is s...
CVE-2023-4409HIGH8.8A vulnerability, which was classified as critical, has been found in NBS&HappySoftWeChat 1.1.6. Affected by this issue i...
CVE-2023-40072HIGH8.8OS command injection vulnerability in ELECOM wireless LAN access point devices allows an authenticated user to execute a...
CVE-2023-39944HIGH8.8OS command injection vulnerability in WRC-F1167ACF all versions, and WRC-1750GHBK all versions allows an attacker who ca...
CVE-2023-39455HIGH8.8OS command injection vulnerability in ELECOM wireless LAN routers allows an authenticated user to execute an arbitrary O...
CVE-2023-39445HIGH8.8Hidden functionality vulnerability in LAN-WH300N/RE all versions provided by LOGITEC CORPORATION allows an unauthenticat...
CVE-2023-39416HIGH7.2Proself Enterprise/Standard Edition Ver5.61 and earlier, Proself Gateway Edition Ver1.62 and earlier, and Proself Mail S...
CVE-2023-39415HIGH7.5Improper authentication vulnerability in Proself Enterprise/Standard Edition Ver5.61 and earlier, Proself Gateway Editio...
CVE-2023-38576HIGH8Hidden functionality vulnerability in LAN-WH300N/RE all versions provided by LOGITEC CORPORATION allows an authenticated...
CVE-2023-38132HIGH8.8LAN-W451NGR all versions provided by LOGITEC CORPORATION contains an improper access control vulnerability, which allows...
CVE-2023-39669HIGH7.5D-Link DIR-880 A1_FW107WWb08 was discovered to contain a NULL pointer dereference in the function FUN_00010824.

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now