2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-37225 | MEDIUM | 6.1 | 0.3% | Dec 25, 2023 | Pexip Infinity before 32 allows Webapp1 XSS via preconfigured links. |
| CVE-2023-31455 | HIGH | 7.5 | 0.6% | Dec 25, 2023 | Pexip Infinity before 31.2 has Improper Input Validation for RTCP, allowing remote attackers to trigger an abort. |
| CVE-2023-31289 | HIGH | 7.5 | 0.6% | Dec 25, 2023 | Pexip Infinity before 31.2 has Improper Input Validation for signalling, allowing remote attackers to trigger an abort. |
| CVE-2023-51771 | CRITICAL | 9.8 | 0.7% | Dec 25, 2023 | In MicroHttpServer (aka Micro HTTP Server) through a8ab029, _ParseHeader in lib/server.c allows a one-byte recv buffer o... |
| CVE-2023-30451 | MEDIUM | 4.9 | 1.2% | Dec 25, 2023 | In TYPO3 11.5.24, the filelist component allows attackers (who have access to the administrator panel) to read arbitrary... |
| CVE-2023-7100 | CRITICAL | 9.8 | 0.7% | Dec 25, 2023 | A vulnerability, which was classified as critical, was found in PHPGurukul Restaurant Table Booking System 1.0. Affected... |
| CVE-2023-7099 | CRITICAL | 9.8 | 0.6% | Dec 25, 2023 | A vulnerability, which was classified as critical, has been found in PHPGurukul Nipah Virus Testing Management System 1.... |
| CVE-2023-49880 | HIGH | 7.5 | 0.5% | Dec 25, 2023 | In the Message Entry and Repair (MER) facility of IBM Financial Transaction Manager for SWIFT Services 3.2.4 the sending... |
| CVE-2023-43064 | HIGH | 7.8 | 0.2% | Dec 25, 2023 | Facsimile Support for IBM i 7.2, 7.3, 7.4, and 7.5 could allow a local user to gain elevated privileges due to an unqual... |
| CVE-2023-7098 | MEDIUM | 5.3 | 0.7% | Dec 25, 2023 | ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability classified as problematic was found in icret EasyImages 2.8.3. This vuln... |
| CVE-2023-7097 | CRITICAL | 9.8 | 0.6% | Dec 25, 2023 | A vulnerability classified as critical has been found in code-projects Water Billing System 1.0. This affects an unknown... |
| CVE-2023-7096 | CRITICAL | 9.8 | 0.7% | Dec 25, 2023 | A flaw has been found in code-projects Faculty Management System 1.0. The affected element is an unknown function of the... |
| CVE-2023-7095 | CRITICAL | 9.8 | 13.7% | Dec 25, 2023 | A vulnerability, which was classified as critical, has been found in Totolink A7100RU 7.4cu.2313_B20191024. Affected by ... |
| CVE-2023-7094 | HIGH | 7.5 | 0.9% | Dec 25, 2023 | A vulnerability classified as problematic was found in Netentsec NS-ASG Application Security Gateway 6.3. Affected by th... |
| CVE-2023-7093 | HIGH | 7.8 | 0.9% | Dec 25, 2023 | A vulnerability classified as critical has been found in KylinSoft kylin-system-updater up to 2.0.5.16-0k2.33. Affected ... |
| CVE-2023-7092 | MEDIUM | 4.3 | 0.4% | Dec 24, 2023 | A vulnerability was found in Uniway UW-302VP 2.0. It has been rated as problematic. This issue affects some unknown proc... |
| CVE-2023-7102 | CRITICAL | 9.8 | 43.3% | Dec 24, 2023 | Use of a Third Party library produced a vulnerability in Barracuda Networks Inc. Barracuda ESG Appliance which allowed P... |
| CVE-2023-7101 | HIGH | 7.8 | 16.7% | Dec 24, 2023 | Spreadsheet::ParseExcel version 0.65 is a Perl module used for parsing Excel files. Spreadsheet::ParseExcel is vulnerabl... |
| CVE-2023-7091 | HIGH | 8.8 | 0.9% | Dec 24, 2023 | A vulnerability was found in Dreamer CMS 4.1.3. It has been declared as problematic. This vulnerability affects unknown ... |
| CVE-2023-51714 | CRITICAL | 9.8 | 1.0% | Dec 24, 2023 | An issue was discovered in the HTTP2 implementation in Qt before 5.15.17, 6.x before 6.2.11, 6.3.x through 6.5.x before ... |
| CVE-2023-51767 | HIGH | 7 | 0.7% | Dec 24, 2023 | OpenSSH through 10.0, when common types of DRAM are used, might allow row hammer attacks (for authentication bypass) bec... |
| CVE-2023-51766 | MEDIUM | 5.3 | 1.1% | Dec 24, 2023 | Exim before 4.97.1 allows SMTP smuggling in certain PIPELINING/CHUNKING configurations. Remote attackers can use a publi... |
| CVE-2023-51765 | MEDIUM | 5.3 | 1.1% | Dec 24, 2023 | sendmail through 8.17.2 allows SMTP smuggling in certain configurations. Remote attackers can use a published exploitati... |
| CVE-2023-51764 | MEDIUM | 5.3 | 2.6% | Dec 24, 2023 | Postfix through 3.8.5 allows SMTP smuggling unless configured with smtpd_data_restrictions=reject_unauth_pipelining and ... |
| CVE-2023-51763 | CRITICAL | 9.8 | 0.9% | Dec 24, 2023 | csv_builder.rb in ActiveAdmin (aka Active Admin) before 3.2.0 allows CSV injection. |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now