2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-7188 | HIGH | 8.1 | 0.5% | Dec 31, 2023 | A vulnerability classified as critical has been found in Shipping 100 Fahuo100 up to 1.1. Affected is an unknown functio... |
| CVE-2023-7187 | HIGH | 8.8 | 0.7% | Dec 31, 2023 | A vulnerability was found in Totolink N350RT 9.3.5u.6139_B20201216. It has been rated as critical. This issue affects so... |
| CVE-2023-7186 | HIGH | 8.8 | 0.5% | Dec 31, 2023 | A vulnerability was found in 7-card Fakabao up to 1.0_build20230805. It has been declared as critical. This vulnerabilit... |
| CVE-2023-7185 | HIGH | 8.8 | 0.5% | Dec 31, 2023 | A vulnerability was found in 7-card Fakabao up to 1.0_build20230805. It has been classified as critical. This affects an... |
| CVE-2023-7184 | HIGH | 8.8 | 0.5% | Dec 31, 2023 | A vulnerability was found in 7-card Fakabao up to 1.0_build20230805 and classified as critical. Affected by this issue i... |
| CVE-2023-7183 | HIGH | 8.8 | 0.5% | Dec 31, 2023 | A vulnerability has been found in 7-card Fakabao up to 1.0_build20230805 and classified as critical. Affected by this vu... |
| CVE-2023-52180 | HIGH | 8.1 | 0.5% | Dec 31, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Really Simple Plug... |
| CVE-2023-49777 | HIGH | 8.8 | 0.7% | Dec 31, 2023 | Deserialization of Untrusted Data vulnerability in YITH YITH WooCommerce Product Add-Ons.This issue affects YITH WooComm... |
| CVE-2023-6094 | MEDIUM | 5.3 | 0.2% | Dec 31, 2023 | A vulnerability has been identified in OnCell G3150A-LTE Series firmware versions v1.3 and prior. The vulnerability resu... |
| CVE-2023-6093 | MEDIUM | 6.1 | 0.3% | Dec 31, 2023 | A clickjacking vulnerability has been identified in OnCell G3150A-LTE Series firmware versions v1.3 and prior. This vul... |
| CVE-2023-52182 | HIGH | 8.8 | 0.6% | Dec 31, 2023 | Deserialization of Untrusted Data vulnerability in ARI Soft ARI Stream Quiz – WordPress Quizzes Builder.This issue affec... |
| CVE-2023-52181 | CRITICAL | 9.8 | 0.6% | Dec 31, 2023 | Deserialization of Untrusted Data vulnerability in Presslabs Theme per user.This issue affects Theme per user: from n/a ... |
| CVE-2023-39157 | HIGH | 8.8 | 0.6% | Dec 31, 2023 | Improper Control of Generation of Code ('Code Injection') vulnerability in Crocoblock JetElements For Elementor.This iss... |
| CVE-2023-7130 | HIGH | 8.8 | 0.7% | Dec 31, 2023 | A vulnerability has been found in code-projects College Notes Gallery 2.0 and classified as critical. Affected by this v... |
| CVE-2023-52286 | HIGH | 7.5 | 0.8% | Dec 31, 2023 | Tencent tdsqlpcloud through 1.8.5 allows unauthenticated remote attackers to discover database credentials via an index.... |
| CVE-2023-52284 | MEDIUM | 5.5 | 0.3% | Dec 31, 2023 | Bytecode Alliance wasm-micro-runtime (aka WebAssembly Micro Runtime or WAMR) before 1.3.0 can have an "double free or co... |
| CVE-2023-52277 | HIGH | 7.8 | 0.2% | Dec 31, 2023 | Royal RoyalTSX before 6.0.2.1 allows attackers to cause a denial of service (Heap Memory Corruption and application cras... |
| CVE-2023-52275 | LOW | 2.1 | 0.3% | Dec 31, 2023 | Gallery3d on Tecno Camon X CA7 devices allows attackers to view hidden images by navigating to data/com.android.gallery3... |
| CVE-2023-52269 | MEDIUM | 4.8 | 0.4% | Dec 31, 2023 | MDaemon SecurityGateway through 9.0.3 allows XSS via a crafted Message Content Filtering rule. This might allow domain a... |
| CVE-2023-52267 | HIGH | 7.5 | 0.7% | Dec 31, 2023 | ehttp 1.0.6 before 17405b9 has a simple_log.cpp _log out-of-bounds-read during error logging for long strings. |
| CVE-2023-52266 | HIGH | 7.5 | 0.7% | Dec 31, 2023 | ehttp 1.0.6 before 17405b9 has an epoll_socket.cpp read_func use-after-free. An attacker can make many connections over ... |
| CVE-2023-52265 | MEDIUM | 5.4 | 0.4% | Dec 30, 2023 | IDURAR (aka idurar-erp-crm) through 2.0.1 allows stored XSS via a PATCH request with a crafted JSON email template in th... |
| CVE-2023-52264 | MEDIUM | 6.1 | 0.4% | Dec 30, 2023 | The beesblog (aka Bees Blog) component before 1.6.2 for thirty bees allows Reflected XSS because controllers/front/post.... |
| CVE-2023-6998 | HIGH | 7.7 | 0.2% | Dec 30, 2023 | Improper privilege management vulnerability in CoolKit Technology eWeLink on Android and iOS allows application lockscre... |
| CVE-2023-52263 | MEDIUM | 6.1 | 0.5% | Dec 30, 2023 | Brave Browser before 1.59.40 does not properly restrict the schema for WebUI factory and redirect. This is related to br... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now