2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-31184HIGH7.8ROZCOM client CWE-798: Use of Hard-coded Credentials
CVE-2023-29733HIGH7.8The Lock Master app 2.2.4 for Android allows unauthorized apps to modify the values in its SharedPreference files. These...
CVE-2023-29731HIGH7.5SoLive 1.6.14 thru 1.6.20 for Android has an exposed component that provides a method to modify the SharedPreference fil...
CVE-2023-32696HIGH8.8CKAN is an open-source data management system for powering data hubs and data portals. Prior to versions 2.9.9 and 2.10....
CVE-2023-2968HIGH7.5A remote attacker can trigger a denial of service in the socket.remoteAddress variable, by sending a crafted HTTP reques...
CVE-2023-33973HIGH7.5RIOT-OS, an operating system for Internet of Things (IoT) devices, contains a network stack with the ability to process ...
CVE-2023-24826HIGH7.5RIOT-OS, an operating system for Internet of Things (IoT) devices, contains a network stack with the ability to process ...
CVE-2023-23755HIGH7.5An issue was discovered in Joomla! 4.2.0 through 4.3.1. The lack of rate limiting allowed brute force attacks against MF...
CVE-2023-28080HIGH7.3 PowerPath for Windows, versions 7.0, 7.1 & 7.2 contains DLL Hijacking Vulnerabilities. A regular user (non-admin) can e...
CVE-2023-28079HIGH7.8 PowerPath for Windows, versions 7.0, 7.1 & 7.2 contains Insecure File and Folder Permissions vulnerability. A regular u...
CVE-2023-24825HIGH7.5RIOT-OS, an operating system for Internet of Things (IoT) devices, contains a network stack with the ability to process ...
CVE-2023-24817HIGH7.5RIOT-OS, an operating system for Internet of Things (IoT) devices, contains a network stack with the ability to process ...
CVE-2023-2984HIGH8.8Path Traversal: '\..\filename' in GitHub repository pimcore/pimcore prior to 10.5.22.
CVE-2023-2983HIGH8.8Privilege Defined With Unsafe Actions in GitHub repository pimcore/pimcore prior to 10.5.23.
CVE-2023-2980HIGH8.8A vulnerability classified as critical was found in Abstrium Pydio Cells 4.2.0. This vulnerability affects unknown code ...
CVE-2023-2979HIGH8.8A vulnerability classified as critical has been found in Abstrium Pydio Cells 4.2.0. This affects an unknown part of the...
CVE-2023-30196HIGH7.5Prestashop salesbooster <= 1.10.4 is vulnerable to Incorrect Access Control via modules/salesbooster/downloads/download....
CVE-2023-33234HIGH7.2Arbitrary code execution in Apache Airflow CNCF Kubernetes provider version 5.0.0 allows user to change xcom sidecar ima...
CVE-2023-30601HIGH7.8Privilege escalation when enabling FQL/Audit logs allows user with JMX access to run arbitrary commands as the user runn...
CVE-2023-2288HIGH8.8The Otter WordPress plugin before 2.2.6 does not sanitize some user-controlled file paths before performing file operati...
CVE-2023-1938HIGH8.8The WP Fastest Cache WordPress plugin before 1.1.5 does not have CSRF check in an AJAX action, and does not validate use...
CVE-2023-0766HIGH8.8The Newsletter Popup WordPress plugin through 1.2 does not have CSRF checks in some places, which could allow attackers ...
CVE-2023-0329HIGH7.2The Elementor Website Builder WordPress plugin before 3.12.2 does not properly sanitize and escape the Replace URL param...
CVE-2023-33191HIGH8.8Kyverno is a policy engine designed for Kubernetes. Kyverno seccomp control can be circumvented. Users of the podSecurit...
CVE-2023-33245HIGH8.8Minecraft through 1.19 and 1.20 pre-releases before 7 (Java) allow arbitrary file overwrite, and possibly code execution...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now