2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-28356 | HIGH | 7.5 | 0.7% | May 11, 2023 | A vulnerability has been identified where a maliciously crafted message containing a specific chain of characters can ca... |
| CVE-2023-32058 | HIGH | 7.5 | 0.9% | May 11, 2023 | Vyper is a Pythonic smart contract language for the Ethereum virtual machine. Prior to version 0.3.8, due to missing ove... |
| CVE-2023-31497 | HIGH | 7.8 | 0.5% | May 11, 2023 | Incorrect access control in Quick Heal Technologies Limited Seqrite Endpoint Security (EPS) all versions prior to v8.0 a... |
| CVE-2023-2444 | HIGH | 8.8 | 0.4% | May 11, 2023 | A cross site request forgery vulnerability exists in Rockwell Automation's FactoryTalk Vantagepoint. This vulnerability... |
| CVE-2023-2443 | HIGH | 7.5 | 0.7% | May 11, 2023 | Rockwell Automation ThinManager product allows the use of medium strength ciphers. If the client requests an insecure ... |
| CVE-2023-29031 | HIGH | 7.1 | 0.5% | May 11, 2023 | A cross site scripting vulnerability was discovered in Rockwell Automation's ArmorStart ST product that could potential... |
| CVE-2023-29030 | HIGH | 7.1 | 0.5% | May 11, 2023 | A cross site scripting vulnerability was discovered in Rockwell Automation's ArmorStart ST product that could potential... |
| CVE-2023-29400 | HIGH | 7.3 | 1.0% | May 11, 2023 | Templates containing actions in unquoted HTML attributes (e.g. "attr={{.}}") executed with empty input can result in out... |
| CVE-2023-24539 | HIGH | 7.3 | 1.0% | May 11, 2023 | Angle brackets (<>) are not considered dangerous characters when inserted into CSS contexts. Templates containing multip... |
| CVE-2023-0857 | HIGH | 7.5 | 0.6% | May 11, 2023 | Unintentional change of settings during initial registration of system administrators which uses control protocols. The ... |
| CVE-2023-2649 | HIGH | 8.8 | 9.7% | May 11, 2023 | A vulnerability was found in Tenda AC23 16.03.07.45_cn. It has been declared as critical. This vulnerability affects unk... |
| CVE-2023-2647 | HIGH | 8.8 | 7.0% | May 11, 2023 | A vulnerability was found in Weaver E-Office 9.5 and classified as critical. Affected by this issue is some unknown func... |
| CVE-2023-2644 | HIGH | 7.8 | 0.2% | May 11, 2023 | A vulnerability, which was classified as problematic, has been found in DigitalPersona FPSensor 1.0.0.1. This issue affe... |
| CVE-2023-31477 | HIGH | 7.5 | 0.9% | May 11, 2023 | A path traversal issue was discovered on GL.iNet devices before 3.216. Through the file sharing feature, it is possible ... |
| CVE-2023-31442 | HIGH | 7.5 | 0.6% | May 11, 2023 | In Lightbend Akka before 2.8.1, the async-dns resolver (used by Discovery in DNS mode and transitively by Cluster Bootst... |
| CVE-2023-30172 | HIGH | 7.5 | 1.0% | May 11, 2023 | A directory traversal vulnerability in the /get-artifact API method of the mlflow platform up to v2.0.1 allows attackers... |
| CVE-2023-32080 | HIGH | 8.8 | 0.9% | May 10, 2023 | Wings is the server control plane for Pterodactyl Panel. A vulnerability affecting versions prior to 1.7.5 and versions ... |
| CVE-2023-31161 | HIGH | 8.8 | 0.5% | May 10, 2023 | An Improper Input Validation vulnerability in the Schweitzer Engineering Laboratories Real-Time Automation Controller (S... |
| CVE-2023-31152 | HIGH | 8.8 | 0.4% | May 10, 2023 | An Authentication Bypass Using an Alternate Path or Channel vulnerability in the Schweitzer Engineering Laboratories Rea... |
| CVE-2023-31149 | HIGH | 8.8 | 1.1% | May 10, 2023 | An Improper Input Validation vulnerability in the Schweitzer Engineering Laboratories Real-Time Automation Controller... |
| CVE-2023-31148 | HIGH | 8.8 | 1.1% | May 10, 2023 | An Improper Input Validation vulnerability in the Schweitzer Engineering Laboratories Real-Time Automation Controller ... |
| CVE-2023-31568 | HIGH | 8.8 | 0.7% | May 10, 2023 | Podofo v0.10.0 was discovered to contain a heap buffer overflow via the component PoDoFo::PdfEncryptRC4::PdfEncryptRC4. |
| CVE-2023-31567 | HIGH | 8.8 | 0.7% | May 10, 2023 | Podofo v0.10.0 was discovered to contain a heap buffer overflow via the component PoDoFo::PdfEncryptAESV3::PdfEncryptAES... |
| CVE-2023-31566 | HIGH | 8.8 | 0.7% | May 10, 2023 | Podofo v0.10.0 was discovered to contain a heap-use-after-free via the component PoDoFo::PdfEncrypt::IsMetadataEncrypted... |
| CVE-2023-30356 | HIGH | 7.5 | 0.3% | May 10, 2023 | Missing Support for an Integrity Check in Shenzen Tenda Technology IP Camera CP3 V11.10.00.2211041355 allows attackers t... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now