2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-31278HIGH7.8Horner Automation Cscape lacks proper validation of user-supplied data when parsing project files (e.g., HMI). This coul...
CVE-2023-31244HIGH7.8 The affected product does not properly validate user-supplied data. If a user opens a maliciously for...
CVE-2023-2132HIGH7.5An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.4 before 15.10.8, all versions star...
CVE-2023-29503HIGH7.8 The affected application lacks proper validation of user-supplied data when parsing project files (e.g., CSP). Th...
CVE-2023-28653HIGH7.8 The affected application lacks proper validation of user-supplied data when parsing project files (e.g....
CVE-2023-27916HIGH7.8 The affected application lacks proper validation of user-supplied data when parsing font files (e.g., FNT...
CVE-2023-32550HIGH8.2Landscape's server-status page exposed sensitive system information. This data leak included GET requests which contain ...
CVE-2023-32549HIGH7.5Landscape cryptographic keys were insecurely generated with a weak pseudo-random generator.
CVE-2023-32539HIGH7.8Horner Automation Cscape lacks proper validation of user-supplied data when parsing project files (e.g., HMI). This coul...
CVE-2023-32289HIGH7.8 The affected application lacks proper validation of user-supplied data when parsing project files (e.g.., CSP...
CVE-2023-32281HIGH7.8 The affected application lacks proper validation of user-supplied data when parsing project files (e.g., CSP). ...
CVE-2023-32545HIGH7.8 The affected application lacks proper validation of user-supplied data when parsing project files (e.g., CS...
CVE-2023-33533HIGH8.8Netgear D6220 with Firmware Version 1.0.0.80, D8500 with Firmware Version 1.0.3.60, R6700 with Firmware Version 1.0.2.26...
CVE-2023-33457HIGH8.8In Sogou Workflow v0.10.6, memcpy a negtive size in URIParser::parse , may cause buffer-overflow and crash.
CVE-2023-33530HIGH8.8There is a command injection vulnerability in the Tenda G103 Gigabit GPON Terminal with firmware version V1.0.0.5. If an...
CVE-2023-33659HIGH7.5A heap buffer overflow vulnerability exists in NanoMQ 0.17.2. The vulnerability can be triggered by calling the function...
CVE-2023-33381HIGH7.2A command injection vulnerability was found in the ping functionality of the MitraStar GPT-2741GNAC router (firmware ver...
CVE-2023-3120HIGH7.2A vulnerability, which was classified as critical, was found in SourceCodester Service Provider Management System 1.0. T...
CVE-2023-3119HIGH8.8A vulnerability, which was classified as critical, has been found in SourceCodester Service Provider Management System 1...
CVE-2023-0985HIGH8.8An Authorization Bypass vulnerability was found in MB Connect Lines mbCONNECT24, mymbCONNECT24 and Helmholz' myREX24 and...
CVE-2023-2833HIGH8.8The ReviewX plugin for WordPress is vulnerable to privilege escalation in versions up to, and including, 1.6.13 due to i...
CVE-2023-21670HIGH7.8Memory Corruption in GPU Subsystem due to arbitrary command execution from GPU in privileged mode.
CVE-2023-21669HIGH7.5Information Disclosure in WLAN HOST while sending DPP action frame to peer with an invalid source address.
CVE-2023-21661HIGH7.5Transient DOS while parsing WLAN beacon or probe-response frame.
CVE-2023-21660HIGH7.5Transient DOS in WLAN Firmware while parsing FT Information Elements.

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now