2023 CVE Vulnerabilities

31,267 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-25235HIGH7.5Tenda AC500 V2.0.1.9(1307) is vulnerable to Buffer Overflow in function formOneSsidCfgSet via parameter ssid.
CVE-2023-24656HIGH8.8Simple Customer Relationship Management System v1.0 was discovered to contain a SQL injection vulnerability via the subj...
CVE-2023-24654HIGH8.8Simple Customer Relationship Management System v1.0 was discovered to contain a SQL injection vulnerability via the name...
CVE-2023-24653HIGH8.8Simple Customer Relationship Management System v1.0 was discovered to contain a SQL injection vulnerability via the oldp...
CVE-2023-24652HIGH8.8Simple Customer Relationship Management System v1.0 was discovered to contain a SQL injection vulnerability via the Desc...
CVE-2023-24364HIGH8.8Simple Customer Relationship Management System v1.0 was discovered to contain a SQL injection vulnerability via the user...
CVE-2023-1070HIGH7.1External Control of File Name or Path in GitHub repository nilsteampassnet/teampass prior to 3.0.0.22.
CVE-2023-0487HIGH7.2The My Sticky Elements WordPress plugin before 2.0.9 does not properly sanitise and escape a parameter before using it i...
CVE-2023-0381HIGH8.8The GigPress WordPress plugin through 2.3.28 does not validate and escape some of its shortcode attributes before using ...
CVE-2023-0331HIGH7.5The Correos Oficial WordPress plugin through 1.2.0.2 does not have an authorization check user input validation when gen...
CVE-2023-0279HIGH7.2The Media Library Assistant WordPress plugin before 3.06 does not properly sanitise and escape a parameter before using ...
CVE-2023-0278HIGH7.2The GeoDirectory WordPress plugin before 2.2.24 does not properly sanitise and escape a parameter before using it in a S...
CVE-2023-23109HIGH7.5In crasm 1.8-3, invalid input validation, specific files passed to the command line application, can lead to a divide by...
CVE-2023-23108HIGH7.5In crasm 1.8-3, invalid input validation, specific files passed to the command line application, can lead to a NULL poin...
CVE-2023-1063HIGH8.8A vulnerability has been found in SourceCodester Doctors Appointment System 1.0 and classified as critical. Affected by ...
CVE-2023-1062HIGH8.8A vulnerability, which was classified as critical, was found in SourceCodester Doctors Appointment System 1.0. Affected ...
CVE-2023-1061HIGH8.8A vulnerability, which was classified as critical, has been found in SourceCodester Doctors Appointment System 1.0. This...
CVE-2023-1059HIGH8.8A vulnerability classified as critical was found in SourceCodester Doctors Appointment System 1.0. This vulnerability af...
CVE-2023-1058HIGH8.8A vulnerability classified as critical has been found in SourceCodester Doctors Appointment System 1.0. This affects an ...
CVE-2023-1057HIGH8.8A vulnerability was found in SourceCodester Doctors Appointment System 1.0. It has been rated as critical. Affected by t...
CVE-2023-1056HIGH8.8A vulnerability was found in SourceCodester Doctors Appointment System 1.0. It has been declared as critical. Affected b...
CVE-2023-26257HIGH7.5An issue was discovered in the Connected Vehicle Systems Alliance (COVESA; formerly GENIVI) dlt-daemon through 2.18.8. D...
CVE-2023-26609HIGH7.2ABUS TVIP 20000-21150 devices allows remote attackers to execute arbitrary code via shell metacharacters in the /cgi-bin...
CVE-2023-26607HIGH7.1In the Linux kernel 6.0.8, there is an out-of-bounds read in ntfs_attr_find in fs/ntfs/attrib.c.
CVE-2023-26606HIGH7.8In the Linux kernel 6.0.8, there is a use-after-free in ntfs_trim_fs in fs/ntfs3/bitmap.c.

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now