2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-5500 | HIGH | 8.8 | 1.0% | Dec 11, 2023 | This vulnerability allows an remote attacker with low privileges to misuse Improper Control of Generation of Code ('Code... |
| CVE-2023-49355 | HIGH | 7.5 | 1.2% | Dec 11, 2023 | decToString in decNumber/decNumber.c in jq 88f01a7 has a one-byte out-of-bounds write via the " []-1.2e-1111111111" inpu... |
| CVE-2023-6181 | CRITICAL | 9.8 | 0.4% | Dec 11, 2023 | An oversight in BCB handling of reboot reason that allows for persistent code execution |
| CVE-2023-48425 | CRITICAL | 9.8 | 0.4% | Dec 11, 2023 | U-Boot vulnerability resulting in persistent Code Execution |
| CVE-2023-48424 | CRITICAL | 9.8 | 0.3% | Dec 11, 2023 | U-Boot shell vulnerability resulting in Privilege escalation in a production device |
| CVE-2023-48417 | CRITICAL | 9.8 | 0.3% | Dec 11, 2023 | Missing Permission checks resulting in unauthorized access and Manipulation in KeyChainActivity Application |
| CVE-2023-6659 | HIGH | 7.5 | 0.6% | Dec 11, 2023 | A vulnerability, which was classified as critical, has been found in Campcodes Web-Based Student Clearance System 1.0. T... |
| CVE-2023-50465 | MEDIUM | 5.4 | 0.6% | Dec 11, 2023 | A stored cross-site scripting (XSS) vulnerability exists in Monica (aka MonicaHQ) 4.0.0 via an SVG document uploaded by ... |
| CVE-2023-6658 | CRITICAL | 9.8 | 0.8% | Dec 10, 2023 | A vulnerability classified as critical was found in SourceCodester Simple Student Attendance System 1.0. This vulnerabil... |
| CVE-2023-50463 | MEDIUM | 6.5 | 0.7% | Dec 10, 2023 | The caddy-geo-ip (aka GeoIP) middleware through 0.6.0 for Caddy 2, when trust_header X-Forwarded-For is used, allows att... |
| CVE-2023-6657 | CRITICAL | 9.8 | 0.9% | Dec 10, 2023 | A vulnerability classified as critical has been found in SourceCodester Simple Student Attendance System 1.0. This affec... |
| CVE-2023-6656 | HIGH | 7.5 | 0.9% | Dec 10, 2023 | ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in DeepFaceLab pretrained DF.wf.288res.384.92.72.22. It has be... |
| CVE-2023-50457 | MEDIUM | 4.3 | 0.4% | Dec 10, 2023 | An issue was discovered in Zammad before 6.2.0. When listing tickets linked to a knowledge base answer, or knowledge bas... |
| CVE-2023-50456 | MEDIUM | 5.3 | 0.4% | Dec 10, 2023 | An issue was discovered in Zammad before 6.2.0. An attacker can trigger phishing links in generated notification emails ... |
| CVE-2023-50455 | HIGH | 7.5 | 0.7% | Dec 10, 2023 | An issue was discovered in Zammad before 6.2.0. Due to lack of rate limiting in the "email address verification" feature... |
| CVE-2023-50454 | MEDIUM | 5.9 | 0.3% | Dec 10, 2023 | An issue was discovered in Zammad before 6.2.0. In several subsystems, SSL/TLS was used to establish connections to exte... |
| CVE-2023-50453 | MEDIUM | 5.3 | 0.5% | Dec 10, 2023 | An issue was discovered in Zammad before 6.2.0. It uses the public endpoint /api/v1/signshow for its login screen. This ... |
| CVE-2023-5870 | MEDIUM | 4.4 | 2.6% | Dec 10, 2023 | A flaw was found in PostgreSQL involving the pg_cancel_backend role that signals background workers, including the logic... |
| CVE-2023-5869 | HIGH | 8.8 | 4.3% | Dec 10, 2023 | A flaw was found in PostgreSQL that allows authenticated database users to execute arbitrary code through missing overfl... |
| CVE-2023-5868 | MEDIUM | 4.3 | 2.8% | Dec 10, 2023 | A memory disclosure vulnerability was found in PostgreSQL that allows remote users to access sensitive information by ex... |
| CVE-2023-50449 | HIGH | 7.5 | 1.2% | Dec 10, 2023 | JFinalCMS 5.0.0 could allow a remote attacker to read files via ../ Directory Traversal in the /common/down/file fileKey... |
| CVE-2023-50446 | HIGH | 7.8 | 0.2% | Dec 10, 2023 | An issue was discovered in Mullvad VPN Windows app before 2023.6-beta1. Insufficient permissions on a directory allow an... |
| CVE-2023-6655 | CRITICAL | 9.8 | 3.8% | Dec 10, 2023 | A vulnerability, which was classified as critical, has been found in Hongjing e-HR 2020. Affected by this issue is some ... |
| CVE-2023-6654 | HIGH | 8.8 | 1.7% | Dec 10, 2023 | A vulnerability classified as critical was found in PHPEMS 6.x/7.x/8.x/9.0. Affected by this vulnerability is an unknown... |
| CVE-2023-6653 | MEDIUM | 4.3 | 0.4% | Dec 10, 2023 | A vulnerability was found in PHPGurukul Teacher Subject Allocation Management System 1.0. It has been rated as problemat... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now