2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-48741 | HIGH | 7.2 | 0.7% | Dec 19, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in QuantumCloud AI Ch... |
| CVE-2023-48738 | CRITICAL | 9.8 | 0.8% | Dec 19, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Porto Theme Porto ... |
| CVE-2023-48327 | HIGH | 7.2 | 0.7% | Dec 19, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WC Vendors WC Vend... |
| CVE-2023-37982 | MEDIUM | 6.1 | 0.4% | Dec 19, 2023 | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in CRM Perks Integration for Salesforce and Contact Fo... |
| CVE-2023-35883 | MEDIUM | 6.1 | 0.5% | Dec 19, 2023 | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Magazine3 Core Web Vitals & PageSpeed Booster.This ... |
| CVE-2023-45105 | MEDIUM | 6.1 | 0.4% | Dec 19, 2023 | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in SERVIT Software Solutions affiliate-toolkit – WordP... |
| CVE-2023-43826 | HIGH | 8.8 | 0.9% | Dec 19, 2023 | Apache Guacamole 1.5.3 and older do not consistently ensure that values received from a VNC server will not result in in... |
| CVE-2023-41648 | MEDIUM | 6.1 | 0.4% | Dec 19, 2023 | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Swapnil V. Patil Login and Logout Redirect.This iss... |
| CVE-2023-40602 | MEDIUM | 6.1 | 0.4% | Dec 19, 2023 | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Doofinder Doofinder WP & WooCommerce Search.This is... |
| CVE-2023-38481 | MEDIUM | 6.1 | 0.4% | Dec 19, 2023 | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in CRM Perks Integration for WooCommerce and Zoho CRM,... |
| CVE-2023-38478 | MEDIUM | 6.1 | 0.4% | Dec 19, 2023 | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in CRM Perks Integration for WooCommerce and QuickBook... |
| CVE-2023-34382 | HIGH | 8.8 | 0.5% | Dec 19, 2023 | Deserialization of Untrusted Data vulnerability in weDevs Dokan – Best WooCommerce Multivendor Marketplace Solution – Bu... |
| CVE-2023-34027 | CRITICAL | 9.8 | 0.8% | Dec 19, 2023 | Deserialization of Untrusted Data vulnerability in Rajnish Arora Recently Viewed Products.This issue affects Recently Vi... |
| CVE-2023-49706 | MEDIUM | 6.8 | 0.6% | Dec 19, 2023 | Defective request context handling in Self Service in LinOTP 3.x before 3.2.5 allows remote unauthenticated attackers to... |
| CVE-2023-50272 | CRITICAL | 9.8 | 0.6% | Dec 19, 2023 | A potential security vulnerability has been identified in HPE Integrated Lights-Out 5 (iLO 5) and Integrated Lights-Out ... |
| CVE-2023-46804 | HIGH | 7.5 | 4.1% | Dec 19, 2023 | An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could r... |
| CVE-2023-46803 | HIGH | 7.5 | 4.1% | Dec 19, 2023 | An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could r... |
| CVE-2023-46266 | CRITICAL | 9.1 | 3.5% | Dec 19, 2023 | An attacker can send a specially crafted request which could lead to leakage of sensitive data or potentially a resource... |
| CVE-2023-46265 | CRITICAL | 9.8 | 4.0% | Dec 19, 2023 | An unauthenticated could abuse a XXE vulnerability in the Smart Device Server to leak data or perform a Server-Side Requ... |
| CVE-2023-46264 | CRITICAL | 9.8 | 90.2% | Dec 19, 2023 | An unrestricted upload of file with dangerous type vulnerability exists in Avalanche versions 6.4.1 and below that could... |
| CVE-2023-46263 | CRITICAL | 9.8 | 81.9% | Dec 19, 2023 | An unrestricted upload of file with dangerous type vulnerability exists in Avalanche versions 6.4.1 and below that could... |
| CVE-2023-46262 | HIGH | 7.5 | 82.8% | Dec 19, 2023 | An unauthenticated attacked could send a specifically crafted web request causing a Server-Side Request Forgery (SSRF) i... |
| CVE-2023-46261 | CRITICAL | 9.8 | 11.3% | Dec 19, 2023 | An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could r... |
| CVE-2023-46260 | CRITICAL | 9.8 | 9.8% | Dec 19, 2023 | An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could r... |
| CVE-2023-46259 | CRITICAL | 9.8 | 11.3% | Dec 19, 2023 | An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could r... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now