2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-2843HIGH8.8The MultiParcels Shipping For WooCommerce WordPress plugin before 1.14.15 does not properly sanitize and escape a parame...
CVE-2023-4147HIGH7.8A use-after-free flaw was found in the Linux kernel’s Netfilter functionality when adding a rule with NFTA_RULE_CHAIN_ID...
CVE-2023-36220HIGH7.2Directory Traversal vulnerability in Textpattern CMS v4.8.8 allows a remote authenticated attacker to execute arbitrary ...
CVE-2023-3896HIGH7.8Divide By Zero in vim/vim from 9.0.1367-1 to 9.0.1367-3
CVE-2023-0426HIGH7.5 ABB is aware of vulnerabilities in the product versions listed below. An update is available that resolves the reported...
CVE-2023-0425HIGH7.5 ABB is aware of vulnerabilities in the product versions listed below. An update is available that resolves the reported...
CVE-2023-33913HIGH7.2In DRM/oemcrypto, there is a possible out of bounds write due to an incorrect calculation of buffer size.This could lead...
CVE-2023-4195HIGH8.8PHP Remote File Inclusion in GitHub repository cockpit-hq/cockpit prior to 2.6.3.
CVE-2023-4172HIGH7.5A vulnerability, which was classified as problematic, has been found in Chengdu Flash Flood Disaster Monitoring and Warn...
CVE-2023-4169HIGH8.8A vulnerability was found in Ruijie RG-EW1200G 1.0(1)B1P5. It has been declared as critical. Affected by this vulnerabil...
CVE-2023-4168HIGH7.5A vulnerability was found in Templatecookie Adlisting 2.14.0. It has been classified as problematic. Affected is an unkn...
CVE-2023-39508HIGH8.8Execution with Unnecessary Privileges, : Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apa...
CVE-2023-38943HIGH8.8ShuiZe_0x727 v1.0 was discovered to contain a remote command execution (RCE) vulnerability via the component /iniFile/co...
CVE-2023-39344HIGH8.8social-media-skeleton is an uncompleted social media project. A SQL injection vulnerability in the project allows UNION ...
CVE-2023-38702HIGH8.8Knowage is an open source analytics and business intelligence suite. Starting in the 6.x.x branch and prior to version 8...
CVE-2023-4159HIGH8.8Unrestricted Upload of File with Dangerous Type in GitHub repository omeka/omeka-s prior to 4.0.3.
CVE-2023-38688HIGH7.5twitch-tui provides Twitch chat in a terminal. Prior to version 2.4.1, the connection is not using TLS for communication...
CVE-2023-38497HIGH7.3Cargo downloads the Rust project’s dependencies and compiles the project. Cargo prior to version 0.72.2, bundled with Ru...
CVE-2023-38494HIGH7.5MeterSphere is an open-source continuous testing platform. Prior to version 2.10.4 LTS, some interfaces of the Cloud ver...
CVE-2023-38487HIGH8.2HedgeDoc is software for creating real-time collaborative markdown notes. Prior to version 1.9.9, the API of HedgeDoc 1 ...
CVE-2023-37896HIGH7.5Nuclei is a vulnerability scanner. Prior to version 2.9.9, a security issue in the Nuclei project affected users utilizi...
CVE-2023-29505HIGH8.8An issue was discovered in Zoho ManageEngine Network Configuration Manager 12.6.165. The WebSocket endpoint allows Cross...
CVE-2023-39379HIGH7.5Fujitsu Software Infrastructure Manager (ISM) stores sensitive information at the product's maintenance data (ismsnap) i...
CVE-2023-4142HIGH8.8The WP Ultimate CSV Importer plugin for WordPress is vulnerable to Remote Code Execution in versions up to, and includin...
CVE-2023-4141HIGH8.8The WP Ultimate CSV Importer plugin for WordPress is vulnerable to Remote Code Execution in versions up to, and includin...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now