2023 CVE Vulnerabilities

31,250 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-25973HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Lucian Apostol Auto Affiliate Links plugin <= 6.3.0.2 versions.
CVE-2023-27065HIGH7.5Tenda V15V1.0 V15.11.0.14(1521_3190_1058) was discovered to contain a buffer overflow vulnerability via the picName para...
CVE-2023-27064HIGH7.5Tenda V15V1.0 V15.11.0.14(1521_3190_1058) was discovered to contain a buffer overflow vulnerability via the index parame...
CVE-2023-27062HIGH7.5Tenda V15V1.0 was discovered to contain a buffer overflow vulnerability via the gotoUrl parameter in the formPortalAuth ...
CVE-2023-25991HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in RegistrationMagic plugin <= 5.1.9.2 versions.
CVE-2023-25283HIGH7.5A stack overflow vulnerability in D-Link DIR820LA1_FW106B02 allows attackers to cause a denial of service via the reserv...
CVE-2023-0629HIGH7.1Docker Desktop before 4.17.0 allows an unprivileged user to bypass Enhanced Container Isolation (ECI) restrictions by se...
CVE-2023-0628HIGH7.8Docker Desktop before 4.17.0 allows an attacker to execute an arbitrary command inside a Dev Environments container duri...
CVE-2023-1366HIGH7.2A vulnerability was found in SourceCodester Yoga Class Registration System 1.0. It has been classified as critical. This...
CVE-2023-0888HIGH7.2An improper neutralization of directives in dynamically evaluated code vulnerability in the WiFi Battery embedded web se...
CVE-2023-1365HIGH7.5A vulnerability was found in SourceCodester Online Pizza Ordering System 1.0 and classified as critical. Affected by thi...
CVE-2023-1364HIGH7.5A vulnerability has been found in SourceCodester Online Pizza Ordering System 1.0 and classified as critical. Affected b...
CVE-2023-1352HIGH8.1A vulnerability, which was classified as critical, has been found in SourceCodester Design and Implementation of Covid-1...
CVE-2023-24999HIGH8.1HashiCorp Vault and Vault Enterprise’s approle auth method allowed any authenticated user with access to an approle dest...
CVE-2023-27532HIGH7.5Vulnerability in Veeam Backup & Replication component allows encrypted credentials stored in the configuration database ...
CVE-2023-27530HIGH7.5A DoS vulnerability exists in Rack <v3.0.4.2, <v2.2.6.3, <v2.1.4.3 and <v2.0.9.3 within in the Multipart MIME parsing co...
CVE-2023-23911HIGH7.5An improper access control vulnerability exists prior to v6 that could allow an attacker to break the E2E encryption of ...
CVE-2023-23328HIGH8.8A File Upload vulnerability exists in AvantFAX 3.3.7. An authenticated user can bypass PHP file type validation in FileU...
CVE-2023-27901HIGH7.5Jenkins 2.393 and earlier, LTS 2.375.3 and earlier uses the Apache Commons FileUpload library without specifying limits ...
CVE-2023-27900HIGH7.5Jenkins 2.393 and earlier, LTS 2.375.3 and earlier uses the Apache Commons FileUpload library without specifying limits ...
CVE-2023-27899HIGH7Jenkins 2.393 and earlier, LTS 2.375.3 and earlier creates a temporary file in the default temporary directory with the ...
CVE-2023-25148HIGH7.8A security agent link following vulnerability in Trend Micro Apex One could allow a local attacker to exploit the vulner...
CVE-2023-25146HIGH7.8A security agent link following vulnerability in the Trend Micro Apex One agent could allow a local attacker to quaranti...
CVE-2023-25145HIGH7.8A link following vulnerability in the scanning function of Trend Micro Apex One agent could allow a local attacker to es...
CVE-2023-25144HIGH7.8An improper access control vulnerability in the Trend Micro Apex One agent could allow a local attacker to gain elevated...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now