2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-7025HIGH7.8A vulnerability was found in KylinSoft hedron-domain-hook up to 3.8.0.12-0k0.5. It has been declared as critical. This v...
CVE-2023-7023CRITICAL9.8A vulnerability was found in Tongda OA 2017 up to 11.9. It has been rated as critical. Affected by this issue is some un...
CVE-2023-7022CRITICAL9.8A vulnerability was found in Tongda OA 2017 up to 11.9. It has been declared as critical. Affected by this vulnerability...
CVE-2023-7021CRITICAL9.8A vulnerability was found in Tongda OA 2017 up to 11.9. It has been classified as critical. Affected is an unknown funct...
CVE-2023-7020CRITICAL9.8A vulnerability was found in Tongda OA 2017 up to 11.9 and classified as critical. This issue affects some unknown proce...
CVE-2023-45700MEDIUM5.4HCL Launch is vulnerable to HTML injection. This vulnerability may allow a user to embed arbitrary HTML tags in the Web ...
CVE-2023-29487CRITICAL9.1An issue was discovered in Heimdal Thor agent versions 3.4.2 and before on Windows and 2.6.9 and before on macOS, allows...
CVE-2023-29486CRITICAL9.8An issue was discovered in Heimdal Thor agent versions 3.4.2 and before 3.7.0 on Windows, allows attackers to bypass USB...
CVE-2023-29485CRITICAL9.8An issue was discovered in Heimdal Thor agent versions 3.4.2 and before on Windows and 2.6.9 and before on macOS, allows...
CVE-2023-28025MEDIUM4.8Due to this vulnerability, the Master operator could potentially incorporate an SVG tag into HTML, leading to an alert p...
CVE-2023-51390HIGH7.5journalpump is a daemon that takes log messages from journald and pumps them to a given output. A logging vulnerability ...
CVE-2023-49032CRITICAL9.8An issue in LTB Self Service Password before v.1.5.4 allows a remote attacker to execute arbitrary code and obtain sensi...
CVE-2023-47093MEDIUM6.5An issue was discovered in Stormshield Network Security (SNS) 4.0.0 through 4.3.21, 4.4.0 through 4.6.8, and 4.7.0. Send...
CVE-2023-46131HIGH7.5Grails is a framework used to build web applications with the Groovy programming language. A specially crafted web reque...
CVE-2023-45703HIGH7.5HCL Launch may mishandle input validation of an uploaded archive file leading to a denial of service due to resource exh...
CVE-2023-41166MEDIUM5.3An issue was discovered in Stormshield Network Security (SNS) 3.7.0 through 3.7.39, 3.11.0 through 3.11.27, 4.3.0 throug...
CVE-2023-50993CRITICAL9.8Ruijie WS6008 v1.x v2.x AC_RGOS11.9(6)W3B2_G2C6-01_10221911 and WS6108 v1.x AC_RGOS11.9(6)W3B2_G2C6-01_10221911 was disc...
CVE-2023-50992CRITICAL9.8Tenda i29 v1.0 V1.0.0.5 was discovered to contain a stack overflow via the ip parameter in the setPing function.
CVE-2023-50990CRITICAL9.8Tenda i29 v1.0 V1.0.0.5 was discovered to contain a buffer overflow via the rebootTime parameter in the sysScheduleReboo...
CVE-2023-50989CRITICAL9.8Tenda i29 v1.0 V1.0.0.5 was discovered to contain a command injection vulnerability via the pingSet function.
CVE-2023-50988CRITICAL9.8Tenda i29 v1.0 V1.0.0.5 was discovered to contain a buffer overflow via the bandwidth parameter in the wifiRadioSetIndoo...
CVE-2023-50987CRITICAL9.8Tenda i29 v1.0 V1.0.0.5 was discovered to contain a buffer overflow via the time parameter in the sysTimeInfoSet functio...
CVE-2023-50986CRITICAL9.8Tenda i29 v1.0 V1.0.0.5 was discovered to contain a buffer overflow via the time parameter in the sysLogin function.
CVE-2023-50985CRITICAL9.8Tenda i29 v1.0 V1.0.0.5 was discovered to contain a buffer overflow via the lanGw parameter in the lanCfgSet function.
CVE-2023-50984CRITICAL9.8Tenda i29 v1.0 V1.0.0.5 was discovered to contain a buffer overflow via the ip parameter in the spdtstConfigAndStart fun...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now