2023 CVE Vulnerabilities

31,249 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-47633HIGH7.5Traefik is an open source HTTP reverse proxy and load balancer. The traefik docker container uses 100% CPU when it serve...
CVE-2023-47124MEDIUM5.9Traefik is an open source HTTP reverse proxy and load balancer. When Traefik is configured to use the `HTTPChallenge` to...
CVE-2023-47106MEDIUM6.5Traefik is an open source HTTP reverse proxy and load balancer. When a request is sent to Traefik with a URL fragment, T...
CVE-2023-48967CRITICAL9.8Ssolon <= 2.6.0 and <=2.5.12 is vulnerable to Deserialization of Untrusted Data.
CVE-2023-48910CRITICAL9.8Microcks up to 1.17.1 was discovered to contain a Server-Side Request Forgery (SSRF) via the component /jobs and /artifa...
CVE-2023-48966HIGH8.8An arbitrary file upload vulnerability in the component /admin/api.upload/file of ThinkAdmin v6.1.53 allows attackers to...
CVE-2023-48965HIGH8.8An issue in the component /admin/api.plugs/script of ThinkAdmin v6.1.53 allows attackers to getshell via providing a cra...
CVE-2023-5768MEDIUM6.1A vulnerability exists in the HCI IEC 60870-5-104 that affects the RTU500 series product versions listed below. Incompl...
CVE-2023-5767MEDIUM6.1 A vulnerability exists in the webserver that affects the RTU500 series product versions listed below. A malicious act...
CVE-2023-48866MEDIUM5.4A Cross-Site Scripting (XSS) vulnerability in the recipe preparation component within /api/objects/recipes and note comp...
CVE-2023-48815MEDIUM6.1kkFileView v4.3.0 is vulnerable to Incorrect Access Control.
CVE-2023-41613HIGH7.8EzViz Studio v2.2.0 is vulnerable to DLL hijacking.
CVE-2023-6460MEDIUM5.5A potential logging of the firestore key via logging within nodejs-firestore exists - Developers who were logging object...
CVE-2023-48863HIGH7.5SEMCMS 3.9 is vulnerable to SQL Injection. Due to the lack of security checks on the input of the application, the attac...
CVE-2023-48800CRITICAL9.8In TOTOLINK X6000R_Firmware V9.4.0cu.852_B20230719, the shttpd file sub_417338 function obtains fields from the front-en...
CVE-2023-48799CRITICAL9.8TOTOLINK-X6000R Firmware-V9.4.0cu.852_B20230719 is vulnerable to Command Execution.
CVE-2023-32804HIGH7.8Out-of-bounds Write vulnerability in Arm Ltd Midgard GPU Userspace Driver, Arm Ltd Bifrost GPU Userspace Driver, Arm Ltd...
CVE-2023-6481HIGH7.5A serialization vulnerability in logback receiver component part of logback version 1.4.13, 1.3.13 and 1.2.12 allows an...
CVE-2023-44306MEDIUM6.5 Dell DM5500 contains a path traversal vulnerability in the appliance. A remote attacker with high privileges could po...
CVE-2023-44305CRITICAL9.8 Dell DM5500 5.14.0.0, contains a Stack-based Buffer Overflow Vulnerability in the appliance. An unauthenticated remot...
CVE-2023-44304HIGH8.8 Dell DM5500 contains a privilege escalation vulnerability in the appliance. A remote attacker with low privileges cou...
CVE-2023-44302CRITICAL9.8 Dell DM5500 5.14.0.0 and prior contain an improper authentication vulnerability. A remote unauthenticated attacker coul...
CVE-2023-44301MEDIUM5.4 Dell DM5500 5.14.0.0 and prior contain a Reflected Cross-Site Scripting Vulnerability. A network attacker with low pr...
CVE-2023-44300MEDIUM5.5 Dell DM5500 5.14.0.0, contain a Plain-text Password Storage Vulnerability in the appliance. A local attacker with pri...
CVE-2023-44291HIGH7.2 Dell DM5500 5.14.0.0 contains an OS command injection vulnerability in the appliance. A remote attacker with high pri...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now