2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-2017 | HIGH | 8.8 | 2.1% | Apr 17, 2023 | Server-side Template Injection (SSTI) in Shopware 6 (<= v6.4.20.0, v6.5.0.0-rc1 <= v6.5.0.0-rc4), affecting both shopwar... |
| CVE-2023-1109 | HIGH | 8.8 | 0.8% | Apr 17, 2023 | In Phoenix Contacts ENERGY AXC PU Web service an authenticated restricted user of the web frontend can access, read, wri... |
| CVE-2023-22687 | HIGH | 7.5 | 0.5% | Apr 16, 2023 | Insecure Storage of Sensitive Information vulnerability in Jose Mortellaro Freesoul Deactivate Plugins – Plugin manager ... |
| CVE-2023-30542 | HIGH | 8.8 | 0.6% | Apr 16, 2023 | OpenZeppelin Contracts is a library for secure smart contract development. The proposal creation entrypoint (`propose`) ... |
| CVE-2023-30537 | HIGH | 8.8 | 1.0% | Apr 16, 2023 | XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Any user with t... |
| CVE-2023-30474 | HIGH | 8.8 | 0.3% | Apr 16, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Kilian Evang Ultimate Noindex Nofollow Tool II plugin <= 1.3 versions... |
| CVE-2023-29511 | HIGH | 8.8 | 1.0% | Apr 16, 2023 | XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Any user with e... |
| CVE-2023-29509 | HIGH | 8.8 | 76.3% | Apr 16, 2023 | XWiki Commons are technical libraries common to several other top level XWiki projects. Any user with view rights on com... |
| CVE-2023-27610 | HIGH | 7.2 | 0.7% | Apr 16, 2023 | Auth. (admin+) SQL Injection (SQLi) vulnerability in TransbankDevelopers Transbank Webpay REST plugin <= 1.6.6 versions. |
| CVE-2023-29507 | HIGH | 7.2 | 0.9% | Apr 16, 2023 | XWiki Commons are technical libraries common to several other top level XWiki projects. The Document script API returns ... |
| CVE-2023-29214 | HIGH | 8.8 | 1.2% | Apr 16, 2023 | XWiki Commons are technical libraries common to several other top level XWiki projects. Any user with edit rights can ex... |
| CVE-2023-29212 | HIGH | 8.8 | 1.2% | Apr 16, 2023 | XWiki Commons are technical libraries common to several other top level XWiki projects. Any user with edit rights can ex... |
| CVE-2023-29211 | HIGH | 8.8 | 1.2% | Apr 16, 2023 | XWiki Commons are technical libraries common to several other top level XWiki projects. Any user with view rights `WikiM... |
| CVE-2023-29210 | HIGH | 8.8 | 1.2% | Apr 15, 2023 | XWiki Commons are technical libraries common to several other top level XWiki projects. Any user with view rights on com... |
| CVE-2023-29209 | HIGH | 8.8 | 1.1% | Apr 15, 2023 | XWiki Commons are technical libraries common to several other top level XWiki projects. Any user with view rights on com... |
| CVE-2023-29208 | HIGH | 7.5 | 0.9% | Apr 15, 2023 | XWiki Commons are technical libraries common to several other top level XWiki projects. Rights added to a document are n... |
| CVE-2023-2105 | HIGH | 8.8 | 0.7% | Apr 15, 2023 | Session Fixation in GitHub repository alextselegidis/easyappointments prior to 1.5.0. |
| CVE-2023-2091 | HIGH | 7.8 | 1.5% | Apr 15, 2023 | A vulnerability classified as critical was found in KylinSoft youker-assistant on KylinOS. Affected by this vulnerabilit... |
| CVE-2023-2090 | HIGH | 8.8 | 0.7% | Apr 15, 2023 | A vulnerability classified as critical has been found in SourceCodester Employee and Visitor Gate Pass Logging System 1.... |
| CVE-2023-2089 | HIGH | 8.8 | 0.6% | Apr 15, 2023 | A vulnerability was found in SourceCodester Complaint Management System 1.0. It has been rated as critical. This issue a... |
| CVE-2023-24607 | HIGH | 7.5 | 1.3% | Apr 15, 2023 | Qt before 6.4.3 allows a denial of service via a crafted string when the SQL ODBC driver plugin is used and the size of ... |
| CVE-2023-22670 | HIGH | 7.8 | 0.2% | Apr 15, 2023 | A heap-based buffer overflow exists in the DXF file reading procedure in Open Design Alliance Drawings SDK before 2023.6... |
| CVE-2023-22669 | HIGH | 7.8 | 0.3% | Apr 15, 2023 | Parsing of DWG files in Open Design Alliance Drawings SDK before 2023.6 lacks proper validation of the length of user-su... |
| CVE-2023-2008 | HIGH | 8.2 | 1.0% | Apr 14, 2023 | A flaw was found in the Linux kernel's udmabuf device driver, within a fault handler. This issue occurs due to the lack ... |
| CVE-2023-29091 | HIGH | 7.5 | 0.8% | Apr 14, 2023 | An issue was discovered in Samsung Exynos Mobile Processor, Automotive Processor and Modem for Exynos Modem 5123, Exynos... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now