2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-1428HIGH7.5There exists an vulnerability causing an abort() to be called in gRPC.  The following headers cause gRPC's C++ implement...
CVE-2023-3177HIGH8.8A vulnerability has been found in SourceCodester Lost and Found Information System 1.0 and classified as critical. Affec...
CVE-2023-3176HIGH8.8A vulnerability, which was classified as critical, was found in SourceCodester Lost and Found Information System 1.0. Af...
CVE-2023-2607HIGH7.2The Multiple Page Generator Plugin for WordPress is vulnerable to time-based SQL Injection via the orderby and order par...
CVE-2023-2249HIGH8.8The wpForo Forum plugin for WordPress is vulnerable to Local File Include, Server-Side Request Forgery, and PHAR Deseria...
CVE-2023-2237HIGH8.8The WP Replicate Post plugin for WordPress is vulnerable to SQL Injection via the post_id parameter in versions up to, a...
CVE-2023-1888HIGH8.8The Directorist plugin for WordPress is vulnerable to an arbitrary user password reset in versions up to, and including,...
CVE-2023-1016HIGH7.2The Intuitive Custom Post Order plugin for WordPress is vulnerable to SQL Injection in versions up to, and including, 3....
CVE-2023-0721HIGH7.8The Metform Elementor Contact Form Builder plugin for WordPress is vulnerable to CSV injection in versions up to, and in...
CVE-2023-0292HIGH8.1The Quiz And Survey Master plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and inclu...
CVE-2023-3172HIGH7.2Path Traversal in GitHub repository froxlor/froxlor prior to 2.0.20.
CVE-2023-34112HIGH8.8JavaCPP Presets is a project providing Java distributions of native C++ libraries. All the actions in the `bytedeco/java...
CVE-2023-34233HIGH8.8The Snowflake Connector for Python provides an interface for developing Python applications that can connect to Snowflak...
CVE-2023-34232HIGH8.8snowflake-connector-nodejs, a NodeJS driver for Snowflake, is vulnerable to command injection via single sign on (SSO) b...
CVE-2023-34230HIGH8.8snowflake-connector-net, the Snowflake Connector for .NET, is vulnerable to command injection prior to version 2.0.18 vi...
CVE-2023-29403HIGH7.8On Unix platforms, the Go runtime does not behave differently when a binary is run with the setuid/setgid bits. This can...
CVE-2023-24535HIGH7.5Parsing invalid messages can panic. Parsing a text-format message which contains a potential number consisting of a minu...
CVE-2023-34231HIGH8.8gosnowflake is th Snowflake Golang driver. Prior to version 1.6.19, a command injection vulnerability exists in the Snow...
CVE-2023-32749HIGH8.8Pydio Cells allows users by default to create so-called external users in order to share files with them. By modifying t...
CVE-2023-34962HIGH8.1Incorrect access control in Chamilo v1.11.x up to v1.11.18 allows a student to arbitrarily access and modify another stu...
CVE-2023-34096HIGH8.8Thruk is a multibackend monitoring webinterface which currently supports Naemon, Icinga, Shinken and Nagios as backends....
CVE-2023-3163HIGH7.5A vulnerability was found in y_project RuoYi up to 4.7.7. It has been classified as problematic. Affected is the functio...
CVE-2023-33657HIGH7.5A use-after-free vulnerability exists in NanoMQ 0.17.2. The vulnerability can be triggered by calling the function nni_m...
CVE-2023-33660HIGH7.5A heap buffer overflow vulnerability exists in NanoMQ 0.17.2. The vulnerability can be triggered by calling the function...
CVE-2023-33658HIGH7.5A heap buffer overflow vulnerability exists in NanoMQ 0.17.2. The vulnerability can be triggered by calling the function...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now