2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-2719HIGH8.8The SupportCandy WordPress plugin before 3.1.7 does not properly sanitise and escape the `id` parameter for an Agent in ...
CVE-2023-2492HIGH7.2The QueryWall: Plug'n Play Firewall WordPress plugin through 1.1.1 does not properly sanitise and escape a parameter bef...
CVE-2023-2359HIGH8.8The Slider Revolution WordPress plugin through 6.6.12 does not check for valid image files upon import, leading to an ar...
CVE-2023-2221HIGH7.2The WP Custom Cursors WordPress plugin before 3.2 does not properly sanitise and escape a parameter before using it in a...
CVE-2023-25747HIGH7.5A potential use-after-free in libaudio was fixed by disabling the AAudio backend when running on Android API below versi...
CVE-2023-25733HIGH7.5The return value from `gfx::SourceSurfaceSkia::Map()` wasn't being verified which could have potentially lead to a null ...
CVE-2023-32214HIGH7.5Protocol handlers `ms-cxh` and `ms-cxh-full` could have been leveraged to trigger a denial of service. *Note: This attac...
CVE-2023-32209HIGH7.5A maliciously crafted favicon could have led to an out of memory crash. This vulnerability affects Firefox < 113.
CVE-2023-34603HIGH7.5JeecgBoot up to v 3.5.1 was discovered to contain a SQL injection vulnerability via the component queryFilterTableDictIn...
CVE-2023-34602HIGH7.5JeecgBoot up to v 3.5.1 was discovered to contain a SQL injection vulnerability via the component queryTableDictItemsByC...
CVE-2023-34642HIGH7.8KioWare for Windows through v8.33 was discovered to contain an incomplete blacklist filter for blocked dialog boxes on W...
CVE-2023-34641HIGH7.8KioWare for Windows through v8.33 was discovered to contain an incomplete blacklist filter for blocked dialog boxes on W...
CVE-2023-32542HIGH7.8Out-of-bounds read vulnerability exists in TELLUS v4.0.15.0 and TELLUS Lite v4.0.15.0. Opening a specially crafted V8 fi...
CVE-2023-32538HIGH7.8Stack-based buffer overflow vulnerability exists in TELLUS v4.0.15.0 and TELLUS Lite v4.0.15.0. Opening a specially craf...
CVE-2023-32288HIGH7.8Out-of-bounds read vulnerability exists in TELLUS v4.0.15.0 and TELLUS Lite v4.0.15.0. Opening a specially crafted SIM f...
CVE-2023-32276HIGH7.8Stack-based buffer overflow vulnerability exists in TELLUS v4.0.15.0 and TELLUS Lite v4.0.15.0. Opening a specially craf...
CVE-2023-32273HIGH7.8Stack-based buffer overflow vulnerability exists in TELLUS v4.0.15.0 and TELLUS Lite v4.0.15.0. Opening a specially craf...
CVE-2023-32270HIGH7.8Access of memory location after end of buffer issue exists in TELLUS v4.0.15.0 and TELLUS Lite v4.0.15.0. Opening a spec...
CVE-2023-32201HIGH7.8Stack-based buffer overflow vulnerability exists in TELLUS v4.0.15.0 and TELLUS Lite v4.0.15.0. Opening a specially craf...
CVE-2023-31239HIGH7.8Stack-based buffer overflow vulnerability in V-Server v4.0.15.0 and V-Server Lite v4.0.15.0 and earlier allows an attack...
CVE-2023-30759HIGH7.8The driver installation package created by Printer Driver Packager NX v1.0.02 to v1.1.25 fails to detect its modificatio...
CVE-2023-35852HIGH7.5In Suricata before 6.0.13 (when there is an adversary who controls an external source of rules), a dataset filename, tha...
CVE-2023-35849HIGH7.5VirtualSquare picoTCP (aka PicoTCP-NG) through 2.1 does not properly check whether header sizes would result in accessin...
CVE-2023-35848HIGH7.5VirtualSquare picoTCP (aka PicoTCP-NG) through 2.1 lacks certain size calculations before attempting to set a value of a...
CVE-2023-35847HIGH7.5VirtualSquare picoTCP (aka PicoTCP-NG) through 2.1 does not have an MSS lower bound (e.g., it could be zero).

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now