2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-50985 | CRITICAL | 9.8 | 0.9% | Dec 20, 2023 | Tenda i29 v1.0 V1.0.0.5 was discovered to contain a buffer overflow via the lanGw parameter in the lanCfgSet function. |
| CVE-2023-50984 | CRITICAL | 9.8 | 0.9% | Dec 20, 2023 | Tenda i29 v1.0 V1.0.0.5 was discovered to contain a buffer overflow via the ip parameter in the spdtstConfigAndStart fun... |
| CVE-2023-50983 | CRITICAL | 9.8 | 2.3% | Dec 20, 2023 | Tenda i29 v1.0 V1.0.0.5 was discovered to contain a command injection vulnerability via the sysScheduleRebootSet functio... |
| CVE-2023-48434 | CRITICAL | 9.8 | 0.7% | Dec 20, 2023 | Online Voting System Project v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'username... |
| CVE-2023-48433 | CRITICAL | 9.8 | 0.7% | Dec 20, 2023 | Online Voting System Project v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'username... |
| CVE-2023-25970 | CRITICAL | 9.8 | 0.9% | Dec 20, 2023 | Unrestricted Upload of File with Dangerous Type vulnerability in Zendrop Zendrop – Global Dropshipping.This issue affect... |
| CVE-2023-47990 | CRITICAL | 9.8 | 0.8% | Dec 20, 2023 | SQL Injection vulnerability in components/table_manager/html/edit_admin_table.php in CuppaCMS V1.0 allows attackers to r... |
| CVE-2023-45603 | CRITICAL | 9.8 | 0.9% | Dec 20, 2023 | Unrestricted Upload of File with Dangerous Type vulnerability in Jeff Starr User Submitted Posts – Enable Users to Submi... |
| CVE-2023-29384 | CRITICAL | 9.8 | 1.2% | Dec 20, 2023 | Unrestricted Upload of File with Dangerous Type vulnerability in HM Plugin WordPress Job Board and Recruitment Plugin – ... |
| CVE-2023-49752 | CRITICAL | 9.8 | 0.6% | Dec 20, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Spoon themes Adifi... |
| CVE-2023-49166 | CRITICAL | 9.1 | 0.6% | Dec 20, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Magic Logix MSync.... |
| CVE-2023-49161 | CRITICAL | 9.1 | 0.6% | Dec 20, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Guelben Bravo Tran... |
| CVE-2023-29432 | CRITICAL | 9.8 | 0.7% | Dec 20, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Favethemes Houzez ... |
| CVE-2023-47118 | CRITICAL | 9.8 | 0.5% | Dec 20, 2023 | ClickHouse® is an open-source column-oriented database management system that allows generating analytical data reports ... |
| CVE-2023-49776 | CRITICAL | 9.8 | 0.6% | Dec 20, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Hakan Demiray Sayf... |
| CVE-2023-49773 | CRITICAL | 9.8 | 0.7% | Dec 20, 2023 | Deserialization of Untrusted Data vulnerability in Tim Brattberg BCorp Shortcodes.This issue affects BCorp Shortcodes: f... |
| CVE-2023-49772 | CRITICAL | 9.8 | 0.7% | Dec 20, 2023 | Deserialization of Untrusted Data vulnerability in Phpbits Creative Studio Genesis Simple Love.This issue affects Genesi... |
| CVE-2023-35915 | CRITICAL | 9.8 | 0.7% | Dec 20, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Automattic WooPaym... |
| CVE-2023-40010 | CRITICAL | 9.8 | 0.6% | Dec 20, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in realmag777 HUSKY –... |
| CVE-2023-35895 | CRITICAL | 9.8 | 0.9% | Dec 20, 2023 | IBM Informix JDBC Driver 4.10 and 4.50 is susceptible to remote code execution attack via JNDI injection when passing an... |
| CVE-2023-28782 | CRITICAL | 9.8 | 0.6% | Dec 20, 2023 | Deserialization of Untrusted Data vulnerability in Rocketgenius Inc. Gravity Forms.This issue affects Gravity Forms: fro... |
| CVE-2023-47507 | CRITICAL | 9.8 | 0.4% | Dec 20, 2023 | Deserialization of Untrusted Data vulnerability in Master Slider Master Slider Pro.This issue affects Master Slider Pro:... |
| CVE-2023-40555 | CRITICAL | 9.8 | 0.5% | Dec 20, 2023 | Deserialization of Untrusted Data vulnerability in UX-themes Flatsome | Multi-Purpose Responsive WooCommerce Theme.This ... |
| CVE-2023-6912 | CRITICAL | 9.8 | 1.0% | Dec 20, 2023 | Lack of protection against brute force attacks in M-Files Server before 23.12.13205.0 allows an attacker unlimited authe... |
| CVE-2023-6768 | CRITICAL | 9.8 | 1.0% | Dec 20, 2023 | Authentication bypass vulnerability in Amazing Little Poll affecting versions 1.3 and 1.4. This vulnerability could allo... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now