2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-7188HIGH8.1A vulnerability classified as critical has been found in Shipping 100 Fahuo100 up to 1.1. Affected is an unknown functio...
CVE-2023-7187HIGH8.8A vulnerability was found in Totolink N350RT 9.3.5u.6139_B20201216. It has been rated as critical. This issue affects so...
CVE-2023-7186HIGH8.8A vulnerability was found in 7-card Fakabao up to 1.0_build20230805. It has been declared as critical. This vulnerabilit...
CVE-2023-7185HIGH8.8A vulnerability was found in 7-card Fakabao up to 1.0_build20230805. It has been classified as critical. This affects an...
CVE-2023-7184HIGH8.8A vulnerability was found in 7-card Fakabao up to 1.0_build20230805 and classified as critical. Affected by this issue i...
CVE-2023-7183HIGH8.8A vulnerability has been found in 7-card Fakabao up to 1.0_build20230805 and classified as critical. Affected by this vu...
CVE-2023-52180HIGH8.1Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Really Simple Plug...
CVE-2023-49777HIGH8.8Deserialization of Untrusted Data vulnerability in YITH YITH WooCommerce Product Add-Ons.This issue affects YITH WooComm...
CVE-2023-6094MEDIUM5.3A vulnerability has been identified in OnCell G3150A-LTE Series firmware versions v1.3 and prior. The vulnerability resu...
CVE-2023-6093MEDIUM6.1A clickjacking vulnerability has been identified in OnCell G3150A-LTE Series firmware versions v1.3 and prior. This vul...
CVE-2023-52182HIGH8.8Deserialization of Untrusted Data vulnerability in ARI Soft ARI Stream Quiz – WordPress Quizzes Builder.This issue affec...
CVE-2023-52181CRITICAL9.8Deserialization of Untrusted Data vulnerability in Presslabs Theme per user.This issue affects Theme per user: from n/a ...
CVE-2023-39157HIGH8.8Improper Control of Generation of Code ('Code Injection') vulnerability in Crocoblock JetElements For Elementor.This iss...
CVE-2023-7130HIGH8.8A vulnerability has been found in code-projects College Notes Gallery 2.0 and classified as critical. Affected by this v...
CVE-2023-52286HIGH7.5Tencent tdsqlpcloud through 1.8.5 allows unauthenticated remote attackers to discover database credentials via an index....
CVE-2023-52284MEDIUM5.5Bytecode Alliance wasm-micro-runtime (aka WebAssembly Micro Runtime or WAMR) before 1.3.0 can have an "double free or co...
CVE-2023-52277HIGH7.8Royal RoyalTSX before 6.0.2.1 allows attackers to cause a denial of service (Heap Memory Corruption and application cras...
CVE-2023-52275LOW2.1Gallery3d on Tecno Camon X CA7 devices allows attackers to view hidden images by navigating to data/com.android.gallery3...
CVE-2023-52269MEDIUM4.8MDaemon SecurityGateway through 9.0.3 allows XSS via a crafted Message Content Filtering rule. This might allow domain a...
CVE-2023-52267HIGH7.5ehttp 1.0.6 before 17405b9 has a simple_log.cpp _log out-of-bounds-read during error logging for long strings.
CVE-2023-52266HIGH7.5ehttp 1.0.6 before 17405b9 has an epoll_socket.cpp read_func use-after-free. An attacker can make many connections over ...
CVE-2023-52265MEDIUM5.4IDURAR (aka idurar-erp-crm) through 2.0.1 allows stored XSS via a PATCH request with a crafted JSON email template in th...
CVE-2023-52264MEDIUM6.1The beesblog (aka Bees Blog) component before 1.6.2 for thirty bees allows Reflected XSS because controllers/front/post....
CVE-2023-6998HIGH7.7Improper privilege management vulnerability in CoolKit Technology eWeLink on Android and iOS allows application lockscre...
CVE-2023-52263MEDIUM6.1Brave Browser before 1.59.40 does not properly restrict the schema for WebUI factory and redirect. This is related to br...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now