2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-6652 | CRITICAL | 9.8 | 0.9% | Dec 10, 2023 | A vulnerability was found in code-projects Matrimonial Site 1.0. It has been declared as critical. Affected by this vuln... |
| CVE-2023-6651 | CRITICAL | 9.8 | 0.9% | Dec 10, 2023 | A vulnerability was found in code-projects Matrimonial Site 1.0. It has been classified as critical. Affected is an unkn... |
| CVE-2023-6650 | MEDIUM | 6.1 | 0.8% | Dec 10, 2023 | A vulnerability was found in SourceCodester Simple Invoice Generator System 1.0 and classified as problematic. This issu... |
| CVE-2023-6649 | MEDIUM | 6.1 | 0.8% | Dec 10, 2023 | A vulnerability has been found in PHPGurukul Teacher Subject Allocation Management System 1.0 and classified as problema... |
| CVE-2023-6648 | CRITICAL | 9.8 | 1.0% | Dec 10, 2023 | A vulnerability, which was classified as critical, was found in PHPGurukul Nipah Virus Testing Management System 1.0. Th... |
| CVE-2023-6647 | CRITICAL | 9.8 | 1.0% | Dec 10, 2023 | A vulnerability, which was classified as critical, has been found in AMTT HiBOS 1.0. Affected by this issue is some unkn... |
| CVE-2023-50431 | MEDIUM | 5.5 | 0.3% | Dec 9, 2023 | sec_attest_info in drivers/accel/habanalabs/common/habanalabs_ioctl.c in the Linux kernel through 6.6.5 allows an inform... |
| CVE-2023-6646 | MEDIUM | 5.4 | 0.6% | Dec 9, 2023 | A vulnerability classified as problematic has been found in linkding 1.23.0. Affected is an unknown function. The manipu... |
| CVE-2023-50430 | MEDIUM | 6.4 | 0.4% | Dec 9, 2023 | The Goodix Fingerprint Device, as shipped in Dell Inspiron 15 computers, does not follow the Secure Device Connection Pr... |
| CVE-2023-50429 | CRITICAL | 9.1 | 0.7% | Dec 9, 2023 | IzyBat Orange casiers before 20230803_1 allows getEnsemble.php ensemble SQL injection. |
| CVE-2023-50428 | MEDIUM | 5.3 | 0.8% | Dec 9, 2023 | In Bitcoin Core through 26.0 and Bitcoin Knots before 25.1.knots20231115, datacarrier size limits can be bypassed by obf... |
| CVE-2023-47254 | CRITICAL | 9.8 | 2.2% | Dec 9, 2023 | An OS Command Injection in the CLI interface on DrayTek Vigor167 version 5.2.2, allows remote attackers to execute arbit... |
| CVE-2023-6120 | LOW | 2.7 | 0.5% | Dec 9, 2023 | The Welcart e-Commerce plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 2... |
| CVE-2023-5756 | HIGH | 8.8 | 0.3% | Dec 9, 2023 | The Digital Publications by Supsystic plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to... |
| CVE-2023-46932 | CRITICAL | 9.8 | 1.1% | Dec 9, 2023 | Heap Buffer Overflow vulnerability in GPAC version 2.3-DEV-rev617-g671976fcc-master, allows attackers to execute arbitra... |
| CVE-2023-28874 | MEDIUM | 6.1 | 0.5% | Dec 9, 2023 | The next parameter in the /accounts/login endpoint of Seafile 9.0.6 allows attackers to redirect users to arbitrary site... |
| CVE-2023-28873 | MEDIUM | 5.4 | 0.4% | Dec 9, 2023 | An XSS issue in wiki and discussion pages in Seafile 9.0.6 allows attackers to inject JavaScript into the Markdown edito... |
| CVE-2023-28871 | MEDIUM | 4.3 | 0.6% | Dec 9, 2023 | Support Assistant in NCP Secure Enterprise Client before 12.22 allows attackers to read registry information of the oper... |
| CVE-2023-28870 | MEDIUM | 6.5 | 0.7% | Dec 9, 2023 | Insecure File Permissions in Support Assistant in NCP Secure Enterprise Client before 12.22 allow attackers to write to ... |
| CVE-2023-28869 | MEDIUM | 6.5 | 0.8% | Dec 9, 2023 | Support Assistant in NCP Secure Enterprise Client before 12.22 allows attackers read the contents of arbitrary files on ... |
| CVE-2023-28868 | HIGH | 8.1 | 0.9% | Dec 9, 2023 | Support Assistant in NCP Secure Enterprise Client before 12.22 allows attackers to delete arbitrary files on the operati... |
| CVE-2023-47465 | MEDIUM | 5.5 | 0.2% | Dec 9, 2023 | An issue in GPAC v.2.2.1 and before allows a local attacker to cause a denial of service (DoS) via the ctts_box_read fun... |
| CVE-2023-47722 | MEDIUM | 5.5 | 0.2% | Dec 9, 2023 | IBM API Connect V10.0.5.3 and V10.0.6.0 stores user credentials in browser cache which can be read by a local user. IBM... |
| CVE-2023-28527 | MEDIUM | 5.5 | 0.2% | Dec 9, 2023 | IBM Informix Dynamic Server 12.10 and 14.10 cdr is vulnerable to a heap buffer overflow, caused by improper bounds chec... |
| CVE-2023-28526 | MEDIUM | 5.5 | 0.2% | Dec 9, 2023 | IBM Informix Dynamic Server 12.10 and 14.10 archecker is vulnerable to a heap buffer overflow, caused by improper bound... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now