2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-48741HIGH7.2Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in QuantumCloud AI Ch...
CVE-2023-48738CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Porto Theme Porto ...
CVE-2023-48327HIGH7.2Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WC Vendors WC Vend...
CVE-2023-37982MEDIUM6.1URL Redirection to Untrusted Site ('Open Redirect') vulnerability in CRM Perks Integration for Salesforce and Contact Fo...
CVE-2023-35883MEDIUM6.1URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Magazine3 Core Web Vitals & PageSpeed Booster.This ...
CVE-2023-45105MEDIUM6.1URL Redirection to Untrusted Site ('Open Redirect') vulnerability in SERVIT Software Solutions affiliate-toolkit – WordP...
CVE-2023-43826HIGH8.8Apache Guacamole 1.5.3 and older do not consistently ensure that values received from a VNC server will not result in in...
CVE-2023-41648MEDIUM6.1URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Swapnil V. Patil Login and Logout Redirect.This iss...
CVE-2023-40602MEDIUM6.1URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Doofinder Doofinder WP & WooCommerce Search.This is...
CVE-2023-38481MEDIUM6.1URL Redirection to Untrusted Site ('Open Redirect') vulnerability in CRM Perks Integration for WooCommerce and Zoho CRM,...
CVE-2023-38478MEDIUM6.1URL Redirection to Untrusted Site ('Open Redirect') vulnerability in CRM Perks Integration for WooCommerce and QuickBook...
CVE-2023-34382HIGH8.8Deserialization of Untrusted Data vulnerability in weDevs Dokan – Best WooCommerce Multivendor Marketplace Solution – Bu...
CVE-2023-34027CRITICAL9.8Deserialization of Untrusted Data vulnerability in Rajnish Arora Recently Viewed Products.This issue affects Recently Vi...
CVE-2023-49706MEDIUM6.8Defective request context handling in Self Service in LinOTP 3.x before 3.2.5 allows remote unauthenticated attackers to...
CVE-2023-50272CRITICAL9.8A potential security vulnerability has been identified in HPE Integrated Lights-Out 5 (iLO 5) and Integrated Lights-Out ...
CVE-2023-46804HIGH7.5An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could r...
CVE-2023-46803HIGH7.5An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could r...
CVE-2023-46266CRITICAL9.1An attacker can send a specially crafted request which could lead to leakage of sensitive data or potentially a resource...
CVE-2023-46265CRITICAL9.8An unauthenticated could abuse a XXE vulnerability in the Smart Device Server to leak data or perform a Server-Side Requ...
CVE-2023-46264CRITICAL9.8An unrestricted upload of file with dangerous type vulnerability exists in Avalanche versions 6.4.1 and below that could...
CVE-2023-46263CRITICAL9.8An unrestricted upload of file with dangerous type vulnerability exists in Avalanche versions 6.4.1 and below that could...
CVE-2023-46262HIGH7.5An unauthenticated attacked could send a specifically crafted web request causing a Server-Side Request Forgery (SSRF) i...
CVE-2023-46261CRITICAL9.8An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could r...
CVE-2023-46260CRITICAL9.8An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could r...
CVE-2023-46259CRITICAL9.8An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could r...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now