2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-4255 | MEDIUM | 5.5 | 0.3% | Dec 21, 2023 | An out-of-bounds write issue has been discovered in the backspace handling of the checkType() function in etc.c within t... |
| CVE-2023-45119 | HIGH | 8.8 | 0.7% | Dec 21, 2023 | Online Examination System v1.0 is vulnerable to multiple Authenticated SQL Injection vulnerabilities. The 'n' parameter ... |
| CVE-2023-45118 | HIGH | 8.8 | 0.7% | Dec 21, 2023 | Online Examination System v1.0 is vulnerable to multiple Authenticated SQL Injection vulnerabilities. The 'fdid' paramet... |
| CVE-2023-45117 | HIGH | 8.8 | 0.5% | Dec 21, 2023 | Online Examination System v1.0 is vulnerable to multiple Authenticated SQL Injection vulnerabilities. The 'eid' paramete... |
| CVE-2023-45116 | HIGH | 8.8 | 0.7% | Dec 21, 2023 | Online Examination System v1.0 is vulnerable to multiple Authenticated SQL Injection vulnerabilities. The 'demail' param... |
| CVE-2023-45115 | HIGH | 8.8 | 0.7% | Dec 21, 2023 | Online Examination System v1.0 is vulnerable to multiple Authenticated SQL Injection vulnerabilities. The 'ch' parameter... |
| CVE-2023-7047 | MEDIUM | 4.4 | 0.2% | Dec 21, 2023 | Inadequate validation of permissions when employing remote tools and macros via the context menu within Devolutions Re... |
| CVE-2023-7035 | MEDIUM | 5.4 | 0.6% | Dec 21, 2023 | A vulnerability was found in automad up to 1.10.9 and classified as problematic. Affected by this issue is some unknown ... |
| CVE-2023-51442 | HIGH | 8.6 | 0.7% | Dec 21, 2023 | Navidrome is an open source web-based music collection server and streamer. A security vulnerability has been identified... |
| CVE-2023-50828 | MEDIUM | 4.8 | 0.4% | Dec 21, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in David Vongries Ult... |
| CVE-2023-50827 | MEDIUM | 4.8 | 0.2% | Dec 21, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Accredible Accredi... |
| CVE-2023-50826 | MEDIUM | 4.8 | 0.4% | Dec 21, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Freshlight Lab Men... |
| CVE-2023-50825 | MEDIUM | 5.4 | 0.3% | Dec 21, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Terrier Tenacity i... |
| CVE-2023-50824 | MEDIUM | 5.4 | 0.3% | Dec 21, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Brian Batt Insert ... |
| CVE-2023-50823 | MEDIUM | 5.4 | 0.3% | Dec 21, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Wipeout Media CSS ... |
| CVE-2023-50822 | MEDIUM | 5.4 | 0.3% | Dec 21, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Currency.Wiki Curr... |
| CVE-2023-50724 | MEDIUM | 6.1 | 0.5% | Dec 21, 2023 | Resque (pronounced like "rescue") is a Redis-backed library for creating background jobs, placing those jobs on multiple... |
| CVE-2023-50377 | MEDIUM | 5.4 | 0.3% | Dec 21, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in AB-WP Simple Count... |
| CVE-2023-50119 | — | — | — | Dec 21, 2023 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: CVE-2023-45292. Reason: This record is a reservation duplicate ... |
| CVE-2023-48116 | MEDIUM | 5.4 | 0.4% | Dec 21, 2023 | SmarterTools SmarterMail 8495 through 8664 before 8747 allows stored XSS via a crafted description of a Calendar appoint... |
| CVE-2023-48115 | MEDIUM | 5.4 | 0.4% | Dec 21, 2023 | SmarterTools SmarterMail 8495 through 8664 before 8747 allows stored DOM XSS because an XSS protection mechanism is skip... |
| CVE-2023-48114 | MEDIUM | 5.4 | 0.4% | Dec 21, 2023 | SmarterTools SmarterMail 8495 through 8664 before 8747 allows stored XSS by using image/svg+xml and an uploaded SVG docu... |
| CVE-2023-47527 | MEDIUM | 5.4 | 0.3% | Dec 21, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Sajjad Hossain Sag... |
| CVE-2023-47525 | MEDIUM | 5.4 | 0.3% | Dec 21, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in A WP Life Event Mo... |
| CVE-2023-22674 | HIGH | 8.8 | 0.3% | Dec 21, 2023 | Missing Authorization, Cross-Site Request Forgery (CSRF) vulnerability in Hal Gatewood Dashicons + Custom Post Types.Thi... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now