2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2023-50628CRITICAL9.8Buffer Overflow vulnerability in libming version 0.4.8, allows attackers to execute arbitrary code and obtain sensitive ...
CVE-2023-50044CRITICAL9.8Cesanta MJS 2.20.0 has a getprop_builtin_foreign out-of-bounds read if a Built-in API name occurs in a substring of an i...
CVE-2023-6975CRITICAL9.8A malicious user could use this issue to get command execution on the vulnerable machine and get access to data & models...
CVE-2023-6974CRITICAL9.8A malicious user could use this issue to access internal HTTP(s) servers and in the worst case (ie: aws instance) it cou...
CVE-2023-47702CRITICAL9.1IBM Security Guardium Key Lifecycle Manager 4.3 could allow a remote attacker to traverse directories on the system. An ...
CVE-2023-27172CRITICAL9.1Xpand IT Write-back Manager v2.3.1 uses weak secret keys to sign JWT tokens. This allows attackers to easily obtain the ...
CVE-2023-45887CRITICAL9.8DS Wireless Communication (DWC) with DWC_VERSION_3 and DWC_VERSION_11 allows remote attackers to execute arbitrary code ...
CVE-2023-6930CRITICAL9.8 EuroTel ETL3100 versions v01c01 and v01x37 suffer from an unauthenticated configuration and log download vulner...
CVE-2023-6929CRITICAL9.8 EuroTel ETL3100 versions v01c01 and v01x37 are vulnerable to insecure direct object references that occur when the ...
CVE-2023-6928CRITICAL9.8 EuroTel ETL3100 versions v01c01 and v01x37 does not limit the number of attempts to guess administrative credentials in...
CVE-2023-49004CRITICAL9.8An issue in D-Link DIR-850L v.B1_FW223WWb01 allows a remote attacker to execute arbitrary code via a crafted script to t...
CVE-2023-47267CRITICAL9.8An issue discovered in TheGreenBow Windows Enterprise Certified VPN Client 6.52, Windows Standard VPN Client 6.87, and W...
CVE-2023-49750CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Spoonthemes Coupon...
CVE-2023-48738CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Porto Theme Porto ...
CVE-2023-34027CRITICAL9.8Deserialization of Untrusted Data vulnerability in Rajnish Arora Recently Viewed Products.This issue affects Recently Vi...
CVE-2023-50272CRITICAL9.8A potential security vulnerability has been identified in HPE Integrated Lights-Out 5 (iLO 5) and Integrated Lights-Out ...
CVE-2023-46266CRITICAL9.1An attacker can send a specially crafted request which could lead to leakage of sensitive data or potentially a resource...
CVE-2023-46265CRITICAL9.8An unauthenticated could abuse a XXE vulnerability in the Smart Device Server to leak data or perform a Server-Side Requ...
CVE-2023-46264CRITICAL9.8An unrestricted upload of file with dangerous type vulnerability exists in Avalanche versions 6.4.1 and below that could...
CVE-2023-46263CRITICAL9.8An unrestricted upload of file with dangerous type vulnerability exists in Avalanche versions 6.4.1 and below that could...
CVE-2023-46261CRITICAL9.8An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could r...
CVE-2023-46260CRITICAL9.8An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could r...
CVE-2023-46259CRITICAL9.8An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could r...
CVE-2023-46258CRITICAL9.8An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could r...
CVE-2023-46257CRITICAL9.8An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could r...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now