2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-33629HIGH7.2H3C Magic R300 version R300-2100MV100R004 was discovered to contain a stack overflow via the DeltriggerList interface at...
CVE-2023-33628HIGH7.2H3C Magic R300 version R300-2100MV100R004 was discovered to contain a stack overflow via the DelvsList interface at /gof...
CVE-2023-33627HIGH7.2H3C Magic R300 version R300-2100MV100R004 was discovered to contain a stack overflow via the UpdateSnat interface at /go...
CVE-2023-34258HIGH7.5An issue was discovered in BMC Patrol before 22.1.00. The agent's configuration can be remotely queried. This configurat...
CVE-2023-26278HIGH7.8IBM QRadar WinCollect Agent 10.0 through 10.1.3 could allow a local authenticated attacker to gain elevated privileges o...
CVE-2023-33722HIGH8.8EDIMAX BR-6288ACL v1.12 was discovered to contain an authenticated remote code execution (RCE) vulnerability via the ppp...
CVE-2023-33718HIGH8.8mp4v2 v2.1.3 was discovered to contain a memory leak via MP4File::ReadString() at mp4file_io.cpp
CVE-2023-26277HIGH7.8IBM QRadar WinCollect Agent 10.0 though 10.1.3 could allow a local user to execute commands on the system due to executi...
CVE-2023-33964HIGH7.5mx-chain-go is an implementation of the MultiversX blockchain protocol written in the Go language. Metachain cannot proc...
CVE-2023-3018HIGH8.8A vulnerability was found in SourceCodester Lost and Found Information System 1.0. It has been declared as critical. Thi...
CVE-2023-3013HIGH7.1Unchecked Return Value in GitHub repository gpac/gpac prior to 2.2.2.
CVE-2023-3012HIGH7.8NULL Pointer Dereference in GitHub repository gpac/gpac prior to 2.2.2.
CVE-2023-34227HIGH7.5In JetBrains TeamCity before 2023.05 a specific endpoint was vulnerable to brute force attacks
CVE-2023-33507HIGH7.5KramerAV VIA GO² < 4.0.1.1326 is vulnerable to Unauthenticated arbitrary file read.
CVE-2023-33485HIGH8.8TOTOLINK X5000R V9.1.0u.6118_B20201102 and V9.1.0u.6369_B20230113 contains a post-authentication buffer overflow via par...
CVE-2023-30285HIGH7.5An issue in Deviniti Issue Sync Synchronization v3.5.2 for Jira allows attackers to obtain the login credentials of a us...
CVE-2023-2749HIGH7.5Download Center fails to properly validate the file path submitted by a user, An attacker can exploit this vulnerability...
CVE-2023-2549HIGH8.8The Feather Login Page plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions starting from 1.0.7 ...
CVE-2023-2545HIGH8.8The Feather Login Page plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability che...
CVE-2023-2435HIGH7.2The Blog-in-Blog plugin for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 2.0.0 via ...
CVE-2023-30197HIGH7.5Incorrect Access Control in the module "My inventory" (myinventory) <= 1.6.6 from Webbax for PrestaShop, allows a guest ...
CVE-2023-29745HIGH7.1An issue found in BestWeather v.7.3.1 for Android allows unauthorized apps to cause a persistent denial of service attac...
CVE-2023-29742HIGH7.8An issue found in BestWeather v.7.3.1 for Android allows unauthorized apps to cause a code execution attack by manipulat...
CVE-2023-28353HIGH8.8An issue was discovered in Faronics Insight 10.0.19045 on Windows. An unauthenticated attacker is able to upload any typ...
CVE-2023-28352HIGH7.4An issue was discovered in Faronics Insight 10.0.19045 on Windows. By abusing the Insight UDP broadcast discovery system...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now