2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-48928 | MEDIUM | 6.1 | 0.5% | Dec 8, 2023 | Franklin Fueling Systems System Sentinel AnyWare (SSA) version 1.6.24.492 is vulnerable to Open Redirect. The 'path' par... |
| CVE-2023-26158 | HIGH | 8.2 | 0.8% | Dec 8, 2023 | All versions of the package mockjs are vulnerable to Prototype Pollution via the Util.extend function due to missing che... |
| CVE-2023-48122 | HIGH | 7.5 | 0.8% | Dec 8, 2023 | An issue in microweber v.2.0.1 and fixed in v.2.0.4 allows a remote attacker to obtain sensitive information via the HTT... |
| CVE-2023-43305 | HIGH | 8.2 | 0.6% | Dec 8, 2023 | An issue in studio kent mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of... |
| CVE-2023-43744 | HIGH | 7.2 | 2.0% | Dec 8, 2023 | An OS command injection vulnerability in Zultys MX-SE, MX-SE II, MX-E, MX-Virtual, MX250, and MX30 with firmware version... |
| CVE-2023-43743 | HIGH | 8.8 | 0.7% | Dec 8, 2023 | A SQL injection vulnerability in Zultys MX-SE, MX-SE II, MX-E, MX-Virtual, MX250, and MX30 with firmware versions prior ... |
| CVE-2023-43742 | CRITICAL | 9.8 | 0.9% | Dec 8, 2023 | An authentication bypass in Zultys MX-SE, MX-SE II, MX-E, MX-Virtual, MX250, and MX30 with firmware versions prior to 17... |
| CVE-2023-6599 | MEDIUM | 4.3 | 0.5% | Dec 8, 2023 | Missing Standardized Error Handling Mechanism in GitHub repository microweber/microweber prior to 2.0. |
| CVE-2023-6061 | — | — | — | Dec 8, 2023 | Rejected reason: This CVE ID has been rejected/withdrawn by its CVE Numbering Authority (Palo Alto Networks) based on di... |
| CVE-2023-5008 | CRITICAL | 9.8 | 0.9% | Dec 8, 2023 | Student Information System v1.0 is vulnerable to an unauthenticated SQL Injection vulnerability on the 'regno' parameter... |
| CVE-2023-5058 | HIGH | 7.8 | 0.3% | Dec 7, 2023 | Improper Input Validation in the processing of user-supplied splash screen during system boot in Phoenix SecureCore™ Tec... |
| CVE-2023-4122 | HIGH | 8.8 | 1.5% | Dec 7, 2023 | Student Information System v1.0 is vulnerable to an Insecure File Upload vulnerability on the 'photo' parameter of my-pr... |
| CVE-2023-6581 | CRITICAL | 9.8 | 4.0% | Dec 7, 2023 | A vulnerability has been found in D-Link DAR-7000 up to 20231126 and classified as critical. This vulnerability affects ... |
| CVE-2023-6580 | HIGH | 8.8 | 2.3% | Dec 7, 2023 | A vulnerability, which was classified as critical, was found in D-Link DIR-846 FW100A53DBR. This affects an unknown part... |
| CVE-2023-6579 | CRITICAL | 9.8 | 23.8% | Dec 7, 2023 | A vulnerability, which was classified as critical, has been found in osCommerce 4. Affected by this issue is some unknow... |
| CVE-2023-46693 | MEDIUM | 6.1 | 0.4% | Dec 7, 2023 | Cross Site Scripting (XSS) vulnerability in FormaLMS before 4.0.5 allows attackers to run arbitrary code via title param... |
| CVE-2023-6578 | MEDIUM | 6.5 | 0.7% | Dec 7, 2023 | A vulnerability classified as critical has been found in Software AG WebMethods 10.11.x/10.15.x. Affected is an unknown ... |
| CVE-2023-6577 | MEDIUM | 4.3 | 1.2% | Dec 7, 2023 | A vulnerability was found in Byzoro PatrolFlow 2530Pro up to 20231126. It has been rated as problematic. This issue affe... |
| CVE-2023-6576 | HIGH | 8.8 | 1.4% | Dec 7, 2023 | A vulnerability was found in Byzoro S210 up to 20231123. It has been declared as critical. This vulnerability affects un... |
| CVE-2023-38174 | MEDIUM | 4.3 | 2.2% | Dec 7, 2023 | Microsoft Edge (Chromium-based) Information Disclosure Vulnerability |
| CVE-2023-36880 | MEDIUM | 4.8 | 1.6% | Dec 7, 2023 | Microsoft Edge (Chromium-based) Information Disclosure Vulnerability |
| CVE-2023-35618 | CRITICAL | 9.6 | 2.9% | Dec 7, 2023 | Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability |
| CVE-2023-6575 | HIGH | 8.8 | 2.8% | Dec 7, 2023 | A vulnerability was found in Byzoro S210 up to 20231121. It has been classified as critical. This affects an unknown par... |
| CVE-2023-6574 | HIGH | 8.8 | 1.6% | Dec 7, 2023 | A vulnerability was found in Byzoro Smart S20 up to 20231120 and classified as critical. Affected by this issue is some ... |
| CVE-2023-4486 | HIGH | 7.5 | 0.8% | Dec 7, 2023 | Under certain circumstances, invalid authentication credentials could be sent to the login endpoint of Johnson Controls ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now