2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-31184 | HIGH | 7.8 | 2.3% | May 30, 2023 | ROZCOM client CWE-798: Use of Hard-coded Credentials |
| CVE-2023-29733 | HIGH | 7.8 | 0.3% | May 30, 2023 | The Lock Master app 2.2.4 for Android allows unauthorized apps to modify the values in its SharedPreference files. These... |
| CVE-2023-29731 | HIGH | 7.5 | 0.8% | May 30, 2023 | SoLive 1.6.14 thru 1.6.20 for Android has an exposed component that provides a method to modify the SharedPreference fil... |
| CVE-2023-32696 | HIGH | 8.8 | 0.8% | May 30, 2023 | CKAN is an open-source data management system for powering data hubs and data portals. Prior to versions 2.9.9 and 2.10.... |
| CVE-2023-2968 | HIGH | 7.5 | 1.5% | May 30, 2023 | A remote attacker can trigger a denial of service in the socket.remoteAddress variable, by sending a crafted HTTP reques... |
| CVE-2023-33973 | HIGH | 7.5 | 1.0% | May 30, 2023 | RIOT-OS, an operating system for Internet of Things (IoT) devices, contains a network stack with the ability to process ... |
| CVE-2023-24826 | HIGH | 7.5 | 0.8% | May 30, 2023 | RIOT-OS, an operating system for Internet of Things (IoT) devices, contains a network stack with the ability to process ... |
| CVE-2023-23755 | HIGH | 7.5 | 0.6% | May 30, 2023 | An issue was discovered in Joomla! 4.2.0 through 4.3.1. The lack of rate limiting allowed brute force attacks against MF... |
| CVE-2023-28080 | HIGH | 7.3 | 0.2% | May 30, 2023 | PowerPath for Windows, versions 7.0, 7.1 & 7.2 contains DLL Hijacking Vulnerabilities. A regular user (non-admin) can e... |
| CVE-2023-28079 | HIGH | 7.8 | 0.1% | May 30, 2023 | PowerPath for Windows, versions 7.0, 7.1 & 7.2 contains Insecure File and Folder Permissions vulnerability. A regular u... |
| CVE-2023-24825 | HIGH | 7.5 | 1.0% | May 30, 2023 | RIOT-OS, an operating system for Internet of Things (IoT) devices, contains a network stack with the ability to process ... |
| CVE-2023-24817 | HIGH | 7.5 | 0.6% | May 30, 2023 | RIOT-OS, an operating system for Internet of Things (IoT) devices, contains a network stack with the ability to process ... |
| CVE-2023-2984 | HIGH | 8.8 | 0.9% | May 30, 2023 | Path Traversal: '\..\filename' in GitHub repository pimcore/pimcore prior to 10.5.22. |
| CVE-2023-2983 | HIGH | 8.8 | 0.9% | May 30, 2023 | Privilege Defined With Unsafe Actions in GitHub repository pimcore/pimcore prior to 10.5.23. |
| CVE-2023-2980 | HIGH | 8.8 | 1.1% | May 30, 2023 | A vulnerability classified as critical was found in Abstrium Pydio Cells 4.2.0. This vulnerability affects unknown code ... |
| CVE-2023-2979 | HIGH | 8.8 | 0.8% | May 30, 2023 | A vulnerability classified as critical has been found in Abstrium Pydio Cells 4.2.0. This affects an unknown part of the... |
| CVE-2023-30196 | HIGH | 7.5 | 0.5% | May 30, 2023 | Prestashop salesbooster <= 1.10.4 is vulnerable to Incorrect Access Control via modules/salesbooster/downloads/download.... |
| CVE-2023-33234 | HIGH | 7.2 | 1.5% | May 30, 2023 | Arbitrary code execution in Apache Airflow CNCF Kubernetes provider version 5.0.0 allows user to change xcom sidecar ima... |
| CVE-2023-30601 | HIGH | 7.8 | 0.3% | May 30, 2023 | Privilege escalation when enabling FQL/Audit logs allows user with JMX access to run arbitrary commands as the user runn... |
| CVE-2023-2288 | HIGH | 8.8 | 18.0% | May 30, 2023 | The Otter WordPress plugin before 2.2.6 does not sanitize some user-controlled file paths before performing file operati... |
| CVE-2023-1938 | HIGH | 8.8 | 8.5% | May 30, 2023 | The WP Fastest Cache WordPress plugin before 1.1.5 does not have CSRF check in an AJAX action, and does not validate use... |
| CVE-2023-0766 | HIGH | 8.8 | 0.4% | May 30, 2023 | The Newsletter Popup WordPress plugin through 1.2 does not have CSRF checks in some places, which could allow attackers ... |
| CVE-2023-0329 | HIGH | 7.2 | 19.7% | May 30, 2023 | The Elementor Website Builder WordPress plugin before 3.12.2 does not properly sanitize and escape the Replace URL param... |
| CVE-2023-33191 | HIGH | 8.8 | 0.5% | May 30, 2023 | Kyverno is a policy engine designed for Kubernetes. Kyverno seccomp control can be circumvented. Users of the podSecurit... |
| CVE-2023-33245 | HIGH | 8.8 | 0.9% | May 30, 2023 | Minecraft through 1.19 and 1.20 pre-releases before 7 (Java) allow arbitrary file overwrite, and possibly code execution... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now