2023 CVE Vulnerabilities
31,267 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-23923 | HIGH | 8.2 | 1.0% | Feb 17, 2023 | The vulnerability was found Moodle which exists due to insufficient limitations on the "start page" preference. A remote... |
| CVE-2023-24960 | HIGH | 7.5 | 1.4% | Feb 17, 2023 | IBM InfoSphere Information Server 11.7 could allow a remote attacker to traverse directories on the system. An attacker ... |
| CVE-2023-26020 | HIGH | 7.2 | 0.4% | Feb 17, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Crafter Studio on ... |
| CVE-2023-0822 | HIGH | 8.8 | 0.6% | Feb 17, 2023 | The affected product DIAEnergie (versions prior to v1.9.03.001) contains improper authorization, which could allow an u... |
| CVE-2023-23007 | HIGH | 7.2 | 0.6% | Feb 17, 2023 | An issue was discovered in ESPCMS P8.21120101 after logging in to the background, there is a SQL injection vulnerability... |
| CVE-2023-24329 | HIGH | 7.5 | 20.5% | Feb 17, 2023 | An issue in the urllib.parse component of Python before 3.11.4 allows attackers to bypass blocklisting methods by supply... |
| CVE-2023-0882 | HIGH | 8.8 | 0.7% | Feb 17, 2023 | Improper Input Validation, Authorization Bypass Through User-Controlled Key vulnerability in Kron Tech Single Connect on... |
| CVE-2023-0887 | HIGH | 7.8 | 0.2% | Feb 17, 2023 | A vulnerability was found in phjounin TFTPD64-SE 4.64 and classified as critical. This issue affects some unknown proces... |
| CVE-2023-24078 | HIGH | 8.8 | 53.2% | Feb 17, 2023 | Real Time Logic FuguHub v8.1 and earlier was discovered to contain a remote code execution (RCE) vulnerability via the c... |
| CVE-2023-0877 | HIGH | 8.8 | 3.9% | Feb 17, 2023 | Code Injection in GitHub repository froxlor/froxlor prior to 2.0.11. |
| CVE-2023-0866 | HIGH | 7.8 | 0.5% | Feb 16, 2023 | Heap-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.3.0-DEV. |
| CVE-2023-25653 | HIGH | 7.5 | 0.6% | Feb 16, 2023 | node-jose is a JavaScript implementation of the JSON Object Signing and Encryption (JOSE) for web browsers and node.js-b... |
| CVE-2023-25602 | HIGH | 7.8 | 0.2% | Feb 16, 2023 | A stack-based buffer overflow in Fortinet FortiWeb 6.4 all versions, FortiWeb versions 6.3.17 and earlier, FortiWeb vers... |
| CVE-2023-23783 | HIGH | 7.8 | 0.2% | Feb 16, 2023 | A use of externally-controlled format string in Fortinet FortiWeb version 7.0.0 through 7.0.1, FortiWeb 6.4 all versions... |
| CVE-2023-23782 | HIGH | 7.8 | 0.2% | Feb 16, 2023 | A heap-based buffer overflow in Fortinet FortiWeb version 7.0.0 through 7.0.1, FortiWeb version 6.3.0 through 6.3.19, Fo... |
| CVE-2023-23781 | HIGH | 8.8 | 0.7% | Feb 16, 2023 | A stack-based buffer overflow vulnerability [CWE-121] in FortiWeb version 7.0.1 and below, 6.4 all versions, version 6.3... |
| CVE-2023-23780 | HIGH | 8.8 | 0.8% | Feb 16, 2023 | A stack-based buffer overflow in Fortinet FortiWeb version 7.0.0 through 7.0.1, Fortinet FortiWeb version 6.3.6 through ... |
| CVE-2023-23779 | HIGH | 8.8 | 1.3% | Feb 16, 2023 | Multiple improper neutralization of special elements used in an OS Command ('OS Command Injection') vulnerabilities [CWE... |
| CVE-2023-24807 | HIGH | 7.5 | 1.3% | Feb 16, 2023 | Undici is an HTTP/1.1 client for Node.js. Prior to version 5.19.1, the `Headers.set()` and `Headers.append()` methods ar... |
| CVE-2023-24485 | HIGH | 7.8 | 0.2% | Feb 16, 2023 | Vulnerabilities have been identified that, collectively, allow a standard Windows user to perform operations as SYSTEM o... |
| CVE-2023-24483 | HIGH | 7.8 | 0.3% | Feb 16, 2023 | A vulnerability has been identified that, if exploited, could result in a local user elevating their privilege level to ... |
| CVE-2023-23947 | HIGH | 8.5 | 0.7% | Feb 16, 2023 | Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. All Argo CD versions starting with 2.3.0-rc1 a... |
| CVE-2023-23926 | HIGH | 8.1 | 0.9% | Feb 16, 2023 | APOC (Awesome Procedures on Cypher) is an add-on library for Neo4j. An XML External Entity (XXE) vulnerability found in ... |
| CVE-2023-25173 | HIGH | 7.8 | 0.5% | Feb 16, 2023 | containerd is an open source container runtime. A bug was found in containerd prior to versions 1.6.18 and 1.5.18 where ... |
| CVE-2023-22580 | HIGH | 7.5 | 0.6% | Feb 16, 2023 | Due to improper input filtering in the sequalize js library, can malicious queries lead to sensitive information disclos... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now