2023 CVE Vulnerabilities
31,249 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-47633 | HIGH | 7.5 | 1.3% | Dec 4, 2023 | Traefik is an open source HTTP reverse proxy and load balancer. The traefik docker container uses 100% CPU when it serve... |
| CVE-2023-47124 | MEDIUM | 5.9 | 0.8% | Dec 4, 2023 | Traefik is an open source HTTP reverse proxy and load balancer. When Traefik is configured to use the `HTTPChallenge` to... |
| CVE-2023-47106 | MEDIUM | 6.5 | 0.6% | Dec 4, 2023 | Traefik is an open source HTTP reverse proxy and load balancer. When a request is sent to Traefik with a URL fragment, T... |
| CVE-2023-48967 | CRITICAL | 9.8 | 0.9% | Dec 4, 2023 | Ssolon <= 2.6.0 and <=2.5.12 is vulnerable to Deserialization of Untrusted Data. |
| CVE-2023-48910 | CRITICAL | 9.8 | 1.0% | Dec 4, 2023 | Microcks up to 1.17.1 was discovered to contain a Server-Side Request Forgery (SSRF) via the component /jobs and /artifa... |
| CVE-2023-48966 | HIGH | 8.8 | 1.1% | Dec 4, 2023 | An arbitrary file upload vulnerability in the component /admin/api.upload/file of ThinkAdmin v6.1.53 allows attackers to... |
| CVE-2023-48965 | HIGH | 8.8 | 0.9% | Dec 4, 2023 | An issue in the component /admin/api.plugs/script of ThinkAdmin v6.1.53 allows attackers to getshell via providing a cra... |
| CVE-2023-5768 | MEDIUM | 6.1 | 0.4% | Dec 4, 2023 | A vulnerability exists in the HCI IEC 60870-5-104 that affects the RTU500 series product versions listed below. Incompl... |
| CVE-2023-5767 | MEDIUM | 6.1 | 0.4% | Dec 4, 2023 | A vulnerability exists in the webserver that affects the RTU500 series product versions listed below. A malicious act... |
| CVE-2023-48866 | MEDIUM | 5.4 | 0.7% | Dec 4, 2023 | A Cross-Site Scripting (XSS) vulnerability in the recipe preparation component within /api/objects/recipes and note comp... |
| CVE-2023-48815 | MEDIUM | 6.1 | 0.5% | Dec 4, 2023 | kkFileView v4.3.0 is vulnerable to Incorrect Access Control. |
| CVE-2023-41613 | HIGH | 7.8 | 0.5% | Dec 4, 2023 | EzViz Studio v2.2.0 is vulnerable to DLL hijacking. |
| CVE-2023-6460 | MEDIUM | 5.5 | 0.1% | Dec 4, 2023 | A potential logging of the firestore key via logging within nodejs-firestore exists - Developers who were logging object... |
| CVE-2023-48863 | HIGH | 7.5 | 0.9% | Dec 4, 2023 | SEMCMS 3.9 is vulnerable to SQL Injection. Due to the lack of security checks on the input of the application, the attac... |
| CVE-2023-48800 | CRITICAL | 9.8 | 1.6% | Dec 4, 2023 | In TOTOLINK X6000R_Firmware V9.4.0cu.852_B20230719, the shttpd file sub_417338 function obtains fields from the front-en... |
| CVE-2023-48799 | CRITICAL | 9.8 | 1.4% | Dec 4, 2023 | TOTOLINK-X6000R Firmware-V9.4.0cu.852_B20230719 is vulnerable to Command Execution. |
| CVE-2023-32804 | HIGH | 7.8 | 0.2% | Dec 4, 2023 | Out-of-bounds Write vulnerability in Arm Ltd Midgard GPU Userspace Driver, Arm Ltd Bifrost GPU Userspace Driver, Arm Ltd... |
| CVE-2023-6481 | HIGH | 7.5 | 0.7% | Dec 4, 2023 | A serialization vulnerability in logback receiver component part of logback version 1.4.13, 1.3.13 and 1.2.12 allows an... |
| CVE-2023-44306 | MEDIUM | 6.5 | 0.9% | Dec 4, 2023 | Dell DM5500 contains a path traversal vulnerability in the appliance. A remote attacker with high privileges could po... |
| CVE-2023-44305 | CRITICAL | 9.8 | 1.0% | Dec 4, 2023 | Dell DM5500 5.14.0.0, contains a Stack-based Buffer Overflow Vulnerability in the appliance. An unauthenticated remot... |
| CVE-2023-44304 | HIGH | 8.8 | 1.0% | Dec 4, 2023 | Dell DM5500 contains a privilege escalation vulnerability in the appliance. A remote attacker with low privileges cou... |
| CVE-2023-44302 | CRITICAL | 9.8 | 1.1% | Dec 4, 2023 | Dell DM5500 5.14.0.0 and prior contain an improper authentication vulnerability. A remote unauthenticated attacker coul... |
| CVE-2023-44301 | MEDIUM | 5.4 | 0.5% | Dec 4, 2023 | Dell DM5500 5.14.0.0 and prior contain a Reflected Cross-Site Scripting Vulnerability. A network attacker with low pr... |
| CVE-2023-44300 | MEDIUM | 5.5 | 0.2% | Dec 4, 2023 | Dell DM5500 5.14.0.0, contain a Plain-text Password Storage Vulnerability in the appliance. A local attacker with pri... |
| CVE-2023-44291 | HIGH | 7.2 | 1.6% | Dec 4, 2023 | Dell DM5500 5.14.0.0 contains an OS command injection vulnerability in the appliance. A remote attacker with high pri... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now