2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-1428 | HIGH | 7.5 | 0.4% | Jun 9, 2023 | There exists an vulnerability causing an abort() to be called in gRPC. The following headers cause gRPC's C++ implement... |
| CVE-2023-3177 | HIGH | 8.8 | 0.7% | Jun 9, 2023 | A vulnerability has been found in SourceCodester Lost and Found Information System 1.0 and classified as critical. Affec... |
| CVE-2023-3176 | HIGH | 8.8 | 0.7% | Jun 9, 2023 | A vulnerability, which was classified as critical, was found in SourceCodester Lost and Found Information System 1.0. Af... |
| CVE-2023-2607 | HIGH | 7.2 | 0.8% | Jun 9, 2023 | The Multiple Page Generator Plugin for WordPress is vulnerable to time-based SQL Injection via the orderby and order par... |
| CVE-2023-2249 | HIGH | 8.8 | 60.8% | Jun 9, 2023 | The wpForo Forum plugin for WordPress is vulnerable to Local File Include, Server-Side Request Forgery, and PHAR Deseria... |
| CVE-2023-2237 | HIGH | 8.8 | 0.8% | Jun 9, 2023 | The WP Replicate Post plugin for WordPress is vulnerable to SQL Injection via the post_id parameter in versions up to, a... |
| CVE-2023-1888 | HIGH | 8.8 | 1.0% | Jun 9, 2023 | The Directorist plugin for WordPress is vulnerable to an arbitrary user password reset in versions up to, and including,... |
| CVE-2023-1016 | HIGH | 7.2 | 1.0% | Jun 9, 2023 | The Intuitive Custom Post Order plugin for WordPress is vulnerable to SQL Injection in versions up to, and including, 3.... |
| CVE-2023-0721 | HIGH | 7.8 | 0.7% | Jun 9, 2023 | The Metform Elementor Contact Form Builder plugin for WordPress is vulnerable to CSV injection in versions up to, and in... |
| CVE-2023-0292 | HIGH | 8.1 | 0.8% | Jun 9, 2023 | The Quiz And Survey Master plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and inclu... |
| CVE-2023-3172 | HIGH | 7.2 | 1.2% | Jun 9, 2023 | Path Traversal in GitHub repository froxlor/froxlor prior to 2.0.20. |
| CVE-2023-34112 | HIGH | 8.8 | 1.9% | Jun 9, 2023 | JavaCPP Presets is a project providing Java distributions of native C++ libraries. All the actions in the `bytedeco/java... |
| CVE-2023-34233 | HIGH | 8.8 | 1.8% | Jun 8, 2023 | The Snowflake Connector for Python provides an interface for developing Python applications that can connect to Snowflak... |
| CVE-2023-34232 | HIGH | 8.8 | 1.9% | Jun 8, 2023 | snowflake-connector-nodejs, a NodeJS driver for Snowflake, is vulnerable to command injection via single sign on (SSO) b... |
| CVE-2023-34230 | HIGH | 8.8 | 1.4% | Jun 8, 2023 | snowflake-connector-net, the Snowflake Connector for .NET, is vulnerable to command injection prior to version 2.0.18 vi... |
| CVE-2023-29403 | HIGH | 7.8 | 0.4% | Jun 8, 2023 | On Unix platforms, the Go runtime does not behave differently when a binary is run with the setuid/setgid bits. This can... |
| CVE-2023-24535 | HIGH | 7.5 | 1.1% | Jun 8, 2023 | Parsing invalid messages can panic. Parsing a text-format message which contains a potential number consisting of a minu... |
| CVE-2023-34231 | HIGH | 8.8 | 2.0% | Jun 8, 2023 | gosnowflake is th Snowflake Golang driver. Prior to version 1.6.19, a command injection vulnerability exists in the Snow... |
| CVE-2023-32749 | HIGH | 8.8 | 14.2% | Jun 8, 2023 | Pydio Cells allows users by default to create so-called external users in order to share files with them. By modifying t... |
| CVE-2023-34962 | HIGH | 8.1 | 0.7% | Jun 8, 2023 | Incorrect access control in Chamilo v1.11.x up to v1.11.18 allows a student to arbitrarily access and modify another stu... |
| CVE-2023-34096 | HIGH | 8.8 | 62.7% | Jun 8, 2023 | Thruk is a multibackend monitoring webinterface which currently supports Naemon, Icinga, Shinken and Nagios as backends.... |
| CVE-2023-3163 | HIGH | 7.5 | 1.4% | Jun 8, 2023 | A vulnerability was found in y_project RuoYi up to 4.7.7. It has been classified as problematic. Affected is the functio... |
| CVE-2023-33657 | HIGH | 7.5 | 1.0% | Jun 8, 2023 | A use-after-free vulnerability exists in NanoMQ 0.17.2. The vulnerability can be triggered by calling the function nni_m... |
| CVE-2023-33660 | HIGH | 7.5 | 1.2% | Jun 8, 2023 | A heap buffer overflow vulnerability exists in NanoMQ 0.17.2. The vulnerability can be triggered by calling the function... |
| CVE-2023-33658 | HIGH | 7.5 | 1.2% | Jun 8, 2023 | A heap buffer overflow vulnerability exists in NanoMQ 0.17.2. The vulnerability can be triggered by calling the function... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now