2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-31278 | HIGH | 7.8 | 0.2% | Jun 6, 2023 | Horner Automation Cscape lacks proper validation of user-supplied data when parsing project files (e.g., HMI). This coul... |
| CVE-2023-31244 | HIGH | 7.8 | 0.2% | Jun 6, 2023 | The affected product does not properly validate user-supplied data. If a user opens a maliciously for... |
| CVE-2023-2132 | HIGH | 7.5 | 1.3% | Jun 6, 2023 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.4 before 15.10.8, all versions star... |
| CVE-2023-29503 | HIGH | 7.8 | 0.2% | Jun 6, 2023 | The affected application lacks proper validation of user-supplied data when parsing project files (e.g., CSP). Th... |
| CVE-2023-28653 | HIGH | 7.8 | 0.2% | Jun 6, 2023 | The affected application lacks proper validation of user-supplied data when parsing project files (e.g.... |
| CVE-2023-27916 | HIGH | 7.8 | 0.2% | Jun 6, 2023 | The affected application lacks proper validation of user-supplied data when parsing font files (e.g., FNT... |
| CVE-2023-32550 | HIGH | 8.2 | 0.4% | Jun 6, 2023 | Landscape's server-status page exposed sensitive system information. This data leak included GET requests which contain ... |
| CVE-2023-32549 | HIGH | 7.5 | 0.5% | Jun 6, 2023 | Landscape cryptographic keys were insecurely generated with a weak pseudo-random generator. |
| CVE-2023-32539 | HIGH | 7.8 | 0.2% | Jun 6, 2023 | Horner Automation Cscape lacks proper validation of user-supplied data when parsing project files (e.g., HMI). This coul... |
| CVE-2023-32289 | HIGH | 7.8 | 0.2% | Jun 6, 2023 | The affected application lacks proper validation of user-supplied data when parsing project files (e.g.., CSP... |
| CVE-2023-32281 | HIGH | 7.8 | 0.2% | Jun 6, 2023 | The affected application lacks proper validation of user-supplied data when parsing project files (e.g., CSP). ... |
| CVE-2023-32545 | HIGH | 7.8 | 0.2% | Jun 6, 2023 | The affected application lacks proper validation of user-supplied data when parsing project files (e.g., CS... |
| CVE-2023-33533 | HIGH | 8.8 | 3.1% | Jun 6, 2023 | Netgear D6220 with Firmware Version 1.0.0.80, D8500 with Firmware Version 1.0.3.60, R6700 with Firmware Version 1.0.2.26... |
| CVE-2023-33457 | HIGH | 8.8 | 0.8% | Jun 6, 2023 | In Sogou Workflow v0.10.6, memcpy a negtive size in URIParser::parse , may cause buffer-overflow and crash. |
| CVE-2023-33530 | HIGH | 8.8 | 1.5% | Jun 6, 2023 | There is a command injection vulnerability in the Tenda G103 Gigabit GPON Terminal with firmware version V1.0.0.5. If an... |
| CVE-2023-33659 | HIGH | 7.5 | 1.1% | Jun 6, 2023 | A heap buffer overflow vulnerability exists in NanoMQ 0.17.2. The vulnerability can be triggered by calling the function... |
| CVE-2023-33381 | HIGH | 7.2 | 27.1% | Jun 6, 2023 | A command injection vulnerability was found in the ping functionality of the MitraStar GPT-2741GNAC router (firmware ver... |
| CVE-2023-3120 | HIGH | 7.2 | 0.7% | Jun 6, 2023 | A vulnerability, which was classified as critical, was found in SourceCodester Service Provider Management System 1.0. T... |
| CVE-2023-3119 | HIGH | 8.8 | 0.7% | Jun 6, 2023 | A vulnerability, which was classified as critical, has been found in SourceCodester Service Provider Management System 1... |
| CVE-2023-0985 | HIGH | 8.8 | 0.8% | Jun 6, 2023 | An Authorization Bypass vulnerability was found in MB Connect Lines mbCONNECT24, mymbCONNECT24 and Helmholz' myREX24 and... |
| CVE-2023-2833 | HIGH | 8.8 | 17.5% | Jun 6, 2023 | The ReviewX plugin for WordPress is vulnerable to privilege escalation in versions up to, and including, 1.6.13 due to i... |
| CVE-2023-21670 | HIGH | 7.8 | 0.1% | Jun 6, 2023 | Memory Corruption in GPU Subsystem due to arbitrary command execution from GPU in privileged mode. |
| CVE-2023-21669 | HIGH | 7.5 | 0.4% | Jun 6, 2023 | Information Disclosure in WLAN HOST while sending DPP action frame to peer with an invalid source address. |
| CVE-2023-21661 | HIGH | 7.5 | 0.4% | Jun 6, 2023 | Transient DOS while parsing WLAN beacon or probe-response frame. |
| CVE-2023-21660 | HIGH | 7.5 | 0.4% | Jun 6, 2023 | Transient DOS in WLAN Firmware while parsing FT Information Elements. |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now