2023 CVE Vulnerabilities

31,267 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-23923HIGH8.2The vulnerability was found Moodle which exists due to insufficient limitations on the "start page" preference. A remote...
CVE-2023-24960HIGH7.5IBM InfoSphere Information Server 11.7 could allow a remote attacker to traverse directories on the system. An attacker ...
CVE-2023-26020HIGH7.2Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Crafter Studio on ...
CVE-2023-0822HIGH8.8 The affected product DIAEnergie (versions prior to v1.9.03.001) contains improper authorization, which could allow an u...
CVE-2023-23007HIGH7.2An issue was discovered in ESPCMS P8.21120101 after logging in to the background, there is a SQL injection vulnerability...
CVE-2023-24329HIGH7.5An issue in the urllib.parse component of Python before 3.11.4 allows attackers to bypass blocklisting methods by supply...
CVE-2023-0882HIGH8.8Improper Input Validation, Authorization Bypass Through User-Controlled Key vulnerability in Kron Tech Single Connect on...
CVE-2023-0887HIGH7.8A vulnerability was found in phjounin TFTPD64-SE 4.64 and classified as critical. This issue affects some unknown proces...
CVE-2023-24078HIGH8.8Real Time Logic FuguHub v8.1 and earlier was discovered to contain a remote code execution (RCE) vulnerability via the c...
CVE-2023-0877HIGH8.8Code Injection in GitHub repository froxlor/froxlor prior to 2.0.11.
CVE-2023-0866HIGH7.8Heap-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.3.0-DEV.
CVE-2023-25653HIGH7.5node-jose is a JavaScript implementation of the JSON Object Signing and Encryption (JOSE) for web browsers and node.js-b...
CVE-2023-25602HIGH7.8A stack-based buffer overflow in Fortinet FortiWeb 6.4 all versions, FortiWeb versions 6.3.17 and earlier, FortiWeb vers...
CVE-2023-23783HIGH7.8A use of externally-controlled format string in Fortinet FortiWeb version 7.0.0 through 7.0.1, FortiWeb 6.4 all versions...
CVE-2023-23782HIGH7.8A heap-based buffer overflow in Fortinet FortiWeb version 7.0.0 through 7.0.1, FortiWeb version 6.3.0 through 6.3.19, Fo...
CVE-2023-23781HIGH8.8A stack-based buffer overflow vulnerability [CWE-121] in FortiWeb version 7.0.1 and below, 6.4 all versions, version 6.3...
CVE-2023-23780HIGH8.8A stack-based buffer overflow in Fortinet FortiWeb version 7.0.0 through 7.0.1, Fortinet FortiWeb version 6.3.6 through ...
CVE-2023-23779HIGH8.8Multiple improper neutralization of special elements used in an OS Command ('OS Command Injection') vulnerabilities [CWE...
CVE-2023-24807HIGH7.5Undici is an HTTP/1.1 client for Node.js. Prior to version 5.19.1, the `Headers.set()` and `Headers.append()` methods ar...
CVE-2023-24485HIGH7.8Vulnerabilities have been identified that, collectively, allow a standard Windows user to perform operations as SYSTEM o...
CVE-2023-24483HIGH7.8A vulnerability has been identified that, if exploited, could result in a local user elevating their privilege level to ...
CVE-2023-23947HIGH8.5Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. All Argo CD versions starting with 2.3.0-rc1 a...
CVE-2023-23926HIGH8.1APOC (Awesome Procedures on Cypher) is an add-on library for Neo4j. An XML External Entity (XXE) vulnerability found in ...
CVE-2023-25173HIGH7.8containerd is an open source container runtime. A bug was found in containerd prior to versions 1.6.18 and 1.5.18 where ...
CVE-2023-22580HIGH7.5Due to improper input filtering in the sequalize js library, can malicious queries lead to sensitive information disclos...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now