2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-30623HIGH8.8`embano1/wip` is a GitHub Action written in Bash. Prior to version 2, the `embano1/wip` action uses the `github.event.p...
CVE-2023-30626HIGH8.1Jellyfin is a free-software media system. Versions starting with 10.8.0 and prior to 10.8.10 and prior have a directory ...
CVE-2023-2260HIGH8.8Authorization Bypass Through User-Controlled Key in GitHub repository alfio-event/alf.io prior to 2.0-M4-2304.
CVE-2023-2259HIGH7.2Improper Neutralization of Special Elements Used in a Template Engine in GitHub repository alfio-event/alf.io prior to 2...
CVE-2023-2258HIGH8.8Improper Neutralization of Formula Elements in a CSV File in GitHub repository alfio-event/alf.io prior to 2.0-M4-2304.
CVE-2023-2006HIGH7A race condition was found in the Linux kernel's RxRPC network protocol, within the processing of RxRPC bundles. This is...
CVE-2023-2257HIGH7.8Authentication Bypass in Hub Business integration in Devolutions Workspace Desktop 2023.1.1.3 and earlier on Windows and...
CVE-2023-29780HIGH7.5Third Reality Smart Blind 1.00.54 contains a denial-of-service vulnerability, which allows a remote attacker to send mal...
CVE-2023-0388HIGH8.8The Random Text WordPress plugin through 0.3.0 does not properly sanitize and escape a parameter before using it in a SQ...
CVE-2023-27991HIGH8.8The post-authentication command injection vulnerability in the CLI command of Zyxel ATP series firmware versions 4.32 th...
CVE-2023-26099HIGH7.1An issue was discovered in Telindus Apsal 3.14.2022.235 b. The consultation permission is insecure.
CVE-2023-26060HIGH8.8An issue was discovered in Nokia NetAct before 22 FP2211. On the Working Set Manager page, users can create a Working Se...
CVE-2023-22917HIGH7.5A buffer overflow vulnerability in the “sdwan_iface_ipc” binary of Zyxel ATP series firmware versions 5.10 through 5.32,...
CVE-2023-22916HIGH8.1The configuration parser of Zyxel ATP series firmware versions 5.10 through 5.35, USG FLEX series firmware versions 5.00...
CVE-2023-22915HIGH7.5A buffer overflow vulnerability in the “fbwifi_forward.cgi” CGI program of Zyxel USG FLEX series firmware versions 4.50 ...
CVE-2023-22914HIGH7.2A path traversal vulnerability in the “account_print.cgi” CGI program of Zyxel USG FLEX series firmware versions 4.50 th...
CVE-2023-22913HIGH8.1A post-authentication command injection vulnerability in the “account_operator.cgi” CGI program of Zyxel USG FLEX series...
CVE-2023-30622HIGH8.8Clusternet is a general-purpose system for controlling Kubernetes clusters across different environments. An issue in cl...
CVE-2023-24822HIGH7.5RIOT-OS, an operating system that supports Internet of Things devices, contains a network stack with the ability to proc...
CVE-2023-24821HIGH7.5RIOT-OS, an operating system that supports Internet of Things devices, contains a network stack with the ability to proc...
CVE-2023-2251HIGH7.5Uncaught Exception in GitHub repository eemeli/yaml prior to 2.0.0-5.
CVE-2023-29849HIGH8.8Bang Resto 1.0 was discovered to contain multiple SQL injection vulnerabilities via the btnMenuItemID, itemID, itemPrice...
CVE-2023-29480HIGH7.5Ribose RNP before 0.16.3 sometimes lets secret keys remain unlocked after use.
CVE-2023-24820HIGH7.5RIOT-OS, an operating system that supports Internet of Things devices, contains a network stack with the ability to proc...
CVE-2023-24818HIGH7.5RIOT-OS, an operating system that supports Internet of Things devices, contains a network stack with the ability to proc...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now