2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-2719 | HIGH | 8.8 | 1.2% | Jun 19, 2023 | The SupportCandy WordPress plugin before 3.1.7 does not properly sanitise and escape the `id` parameter for an Agent in ... |
| CVE-2023-2492 | HIGH | 7.2 | 0.9% | Jun 19, 2023 | The QueryWall: Plug'n Play Firewall WordPress plugin through 1.1.1 does not properly sanitise and escape a parameter bef... |
| CVE-2023-2359 | HIGH | 8.8 | 2.5% | Jun 19, 2023 | The Slider Revolution WordPress plugin through 6.6.12 does not check for valid image files upon import, leading to an ar... |
| CVE-2023-2221 | HIGH | 7.2 | 0.9% | Jun 19, 2023 | The WP Custom Cursors WordPress plugin before 3.2 does not properly sanitise and escape a parameter before using it in a... |
| CVE-2023-25747 | HIGH | 7.5 | 0.6% | Jun 19, 2023 | A potential use-after-free in libaudio was fixed by disabling the AAudio backend when running on Android API below versi... |
| CVE-2023-25733 | HIGH | 7.5 | 0.6% | Jun 19, 2023 | The return value from `gfx::SourceSurfaceSkia::Map()` wasn't being verified which could have potentially lead to a null ... |
| CVE-2023-32214 | HIGH | 7.5 | 0.9% | Jun 19, 2023 | Protocol handlers `ms-cxh` and `ms-cxh-full` could have been leveraged to trigger a denial of service. *Note: This attac... |
| CVE-2023-32209 | HIGH | 7.5 | 0.8% | Jun 19, 2023 | A maliciously crafted favicon could have led to an out of memory crash. This vulnerability affects Firefox < 113. |
| CVE-2023-34603 | HIGH | 7.5 | 0.7% | Jun 19, 2023 | JeecgBoot up to v 3.5.1 was discovered to contain a SQL injection vulnerability via the component queryFilterTableDictIn... |
| CVE-2023-34602 | HIGH | 7.5 | 0.7% | Jun 19, 2023 | JeecgBoot up to v 3.5.1 was discovered to contain a SQL injection vulnerability via the component queryTableDictItemsByC... |
| CVE-2023-34642 | HIGH | 7.8 | 0.3% | Jun 19, 2023 | KioWare for Windows through v8.33 was discovered to contain an incomplete blacklist filter for blocked dialog boxes on W... |
| CVE-2023-34641 | HIGH | 7.8 | 0.2% | Jun 19, 2023 | KioWare for Windows through v8.33 was discovered to contain an incomplete blacklist filter for blocked dialog boxes on W... |
| CVE-2023-32542 | HIGH | 7.8 | 0.3% | Jun 19, 2023 | Out-of-bounds read vulnerability exists in TELLUS v4.0.15.0 and TELLUS Lite v4.0.15.0. Opening a specially crafted V8 fi... |
| CVE-2023-32538 | HIGH | 7.8 | 0.3% | Jun 19, 2023 | Stack-based buffer overflow vulnerability exists in TELLUS v4.0.15.0 and TELLUS Lite v4.0.15.0. Opening a specially craf... |
| CVE-2023-32288 | HIGH | 7.8 | 0.3% | Jun 19, 2023 | Out-of-bounds read vulnerability exists in TELLUS v4.0.15.0 and TELLUS Lite v4.0.15.0. Opening a specially crafted SIM f... |
| CVE-2023-32276 | HIGH | 7.8 | 0.3% | Jun 19, 2023 | Stack-based buffer overflow vulnerability exists in TELLUS v4.0.15.0 and TELLUS Lite v4.0.15.0. Opening a specially craf... |
| CVE-2023-32273 | HIGH | 7.8 | 0.3% | Jun 19, 2023 | Stack-based buffer overflow vulnerability exists in TELLUS v4.0.15.0 and TELLUS Lite v4.0.15.0. Opening a specially craf... |
| CVE-2023-32270 | HIGH | 7.8 | 0.2% | Jun 19, 2023 | Access of memory location after end of buffer issue exists in TELLUS v4.0.15.0 and TELLUS Lite v4.0.15.0. Opening a spec... |
| CVE-2023-32201 | HIGH | 7.8 | 0.3% | Jun 19, 2023 | Stack-based buffer overflow vulnerability exists in TELLUS v4.0.15.0 and TELLUS Lite v4.0.15.0. Opening a specially craf... |
| CVE-2023-31239 | HIGH | 7.8 | 0.3% | Jun 19, 2023 | Stack-based buffer overflow vulnerability in V-Server v4.0.15.0 and V-Server Lite v4.0.15.0 and earlier allows an attack... |
| CVE-2023-30759 | HIGH | 7.8 | 0.1% | Jun 19, 2023 | The driver installation package created by Printer Driver Packager NX v1.0.02 to v1.1.25 fails to detect its modificatio... |
| CVE-2023-35852 | HIGH | 7.5 | 1.1% | Jun 19, 2023 | In Suricata before 6.0.13 (when there is an adversary who controls an external source of rules), a dataset filename, tha... |
| CVE-2023-35849 | HIGH | 7.5 | 0.6% | Jun 19, 2023 | VirtualSquare picoTCP (aka PicoTCP-NG) through 2.1 does not properly check whether header sizes would result in accessin... |
| CVE-2023-35848 | HIGH | 7.5 | 0.7% | Jun 19, 2023 | VirtualSquare picoTCP (aka PicoTCP-NG) through 2.1 lacks certain size calculations before attempting to set a value of a... |
| CVE-2023-35847 | HIGH | 7.5 | 0.7% | Jun 19, 2023 | VirtualSquare picoTCP (aka PicoTCP-NG) through 2.1 does not have an MSS lower bound (e.g., it could be zero). |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now