2023 CVE Vulnerabilities
31,397 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-20076 | HIGH | 8.8 | 1.5% | Feb 12, 2023 | A vulnerability in the Cisco IOx application hosting environment could allow an authenticated, remote attacker to execut... |
| CVE-2023-0127 | HIGH | 7.8 | 2.0% | Feb 11, 2023 | A command injection vulnerability in the firmware_update command, in the device's restricted telnet interface, allows an... |
| CVE-2023-25559 | HIGH | 8.1 | 0.5% | Feb 11, 2023 | DataHub is an open-source metadata platform. When not using authentication for the metadata service, which is the defaul... |
| CVE-2023-25558 | HIGH | 8.8 | 1.0% | Feb 11, 2023 | DataHub is an open-source metadata platform. When the DataHub frontend is configured to authenticate via SSO, it will le... |
| CVE-2023-24816 | HIGH | 7 | 1.3% | Feb 10, 2023 | IPython (Interactive Python) is a command shell for interactive computing in multiple programming languages, originally ... |
| CVE-2023-24347 | HIGH | 8.8 | 1.2% | Feb 10, 2023 | D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the webpage parameter at /gofo... |
| CVE-2023-24346 | HIGH | 8.8 | 1.2% | Feb 10, 2023 | D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the wan_connected parameter at... |
| CVE-2023-24345 | HIGH | 8.8 | 1.2% | Feb 10, 2023 | D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the curTime parameter at /gofo... |
| CVE-2023-24344 | HIGH | 8.8 | 1.3% | Feb 10, 2023 | D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the webpage parameter at /gofo... |
| CVE-2023-24343 | HIGH | 8.8 | 1.2% | Feb 10, 2023 | D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the curTime parameter at /gofo... |
| CVE-2023-24573 | HIGH | 7.1 | 0.2% | Feb 10, 2023 | Dell Command | Monitor versions prior to 10.9 contain an arbitrary folder delete vulnerability during uninstallation. A... |
| CVE-2023-24569 | HIGH | 7.8 | 0.2% | Feb 10, 2023 | Dell Alienware Command Center versions 5.5.37.0 and prior contain an Improper Input validation vulnerability. A local a... |
| CVE-2023-23698 | HIGH | 7.1 | 0.2% | Feb 10, 2023 | Dell Command | Update, Dell Update, and Alienware Update versions before 4.6.0 and 4.7.1 contain Insecure Operation on ... |
| CVE-2023-22832 | HIGH | 7.5 | 1.4% | Feb 10, 2023 | The ExtractCCDAAttributes Processor in Apache NiFi 1.2.0 through 1.19.1 does not restrict XML External Entity references... |
| CVE-2023-0771 | HIGH | 8.8 | 0.7% | Feb 10, 2023 | SQL Injection in GitHub repository ampache/ampache prior to 5.5.7,develop. |
| CVE-2023-24685 | HIGH | 7.2 | 1.0% | Feb 9, 2023 | ChurchCRM v4.5.3 and below was discovered to contain a SQL injection vulnerability via the Event parameter under the Eve... |
| CVE-2023-24684 | HIGH | 7.2 | 1.0% | Feb 9, 2023 | ChurchCRM v4.5.3 and below was discovered to contain a SQL injection vulnerability via the EID parameter at GetText.php. |
| CVE-2023-23592 | HIGH | 7.5 | 0.8% | Feb 9, 2023 | WALLIX Access Manager 3.x through 4.0.x allows a remote attacker to access sensitive information. |
| CVE-2023-0770 | HIGH | 7.8 | 0.4% | Feb 9, 2023 | Stack-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.2. |
| CVE-2023-23631 | HIGH | 7.5 | 0.9% | Feb 9, 2023 | github.com/ipfs/go-unixfsnode is an ADL IPLD prime node that wraps go-codec-dagpb's implementation of protobuf to enable... |
| CVE-2023-23626 | HIGH | 7.5 | 0.9% | Feb 9, 2023 | go-bitfield is a simple bitfield package for the go language aiming to be more performant that the standard library. Whe... |
| CVE-2023-23625 | HIGH | 7.5 | 0.7% | Feb 9, 2023 | go-unixfs is an implementation of a unix-like filesystem on top of an ipld merkledag. Trying to read malformed HAMT shar... |
| CVE-2023-24323 | HIGH | 8.8 | 1.2% | Feb 9, 2023 | Mojoportal v2.7 was discovered to contain an authenticated XML external entity (XXE) injection vulnerability. |
| CVE-2023-23912 | HIGH | 8.8 | 0.9% | Feb 9, 2023 | A vulnerability, found in EdgeRouters Version 2.0.9-hotfix.5 and earlier and UniFi Security Gateways (USG) Version 4.4.5... |
| CVE-2023-22799 | HIGH | 7.5 | 1.0% | Feb 9, 2023 | A ReDoS based DoS vulnerability in the GlobalID <1.0.1 which could allow an attacker supplying a carefully crafted input... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now