2023 CVE Vulnerabilities

31,397 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-20076HIGH8.8A vulnerability in the Cisco IOx application hosting environment could allow an authenticated, remote attacker to execut...
CVE-2023-0127HIGH7.8A command injection vulnerability in the firmware_update command, in the device's restricted telnet interface, allows an...
CVE-2023-25559HIGH8.1DataHub is an open-source metadata platform. When not using authentication for the metadata service, which is the defaul...
CVE-2023-25558HIGH8.8DataHub is an open-source metadata platform. When the DataHub frontend is configured to authenticate via SSO, it will le...
CVE-2023-24816HIGH7IPython (Interactive Python) is a command shell for interactive computing in multiple programming languages, originally ...
CVE-2023-24347HIGH8.8D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the webpage parameter at /gofo...
CVE-2023-24346HIGH8.8D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the wan_connected parameter at...
CVE-2023-24345HIGH8.8D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the curTime parameter at /gofo...
CVE-2023-24344HIGH8.8D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the webpage parameter at /gofo...
CVE-2023-24343HIGH8.8D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the curTime parameter at /gofo...
CVE-2023-24573HIGH7.1 Dell Command | Monitor versions prior to 10.9 contain an arbitrary folder delete vulnerability during uninstallation. A...
CVE-2023-24569HIGH7.8 Dell Alienware Command Center versions 5.5.37.0 and prior contain an Improper Input validation vulnerability. A local a...
CVE-2023-23698HIGH7.1 Dell Command | Update, Dell Update, and Alienware Update versions before 4.6.0 and 4.7.1 contain Insecure Operation on ...
CVE-2023-22832HIGH7.5The ExtractCCDAAttributes Processor in Apache NiFi 1.2.0 through 1.19.1 does not restrict XML External Entity references...
CVE-2023-0771HIGH8.8SQL Injection in GitHub repository ampache/ampache prior to 5.5.7,develop.
CVE-2023-24685HIGH7.2ChurchCRM v4.5.3 and below was discovered to contain a SQL injection vulnerability via the Event parameter under the Eve...
CVE-2023-24684HIGH7.2ChurchCRM v4.5.3 and below was discovered to contain a SQL injection vulnerability via the EID parameter at GetText.php.
CVE-2023-23592HIGH7.5WALLIX Access Manager 3.x through 4.0.x allows a remote attacker to access sensitive information.
CVE-2023-0770HIGH7.8Stack-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.2.
CVE-2023-23631HIGH7.5github.com/ipfs/go-unixfsnode is an ADL IPLD prime node that wraps go-codec-dagpb's implementation of protobuf to enable...
CVE-2023-23626HIGH7.5go-bitfield is a simple bitfield package for the go language aiming to be more performant that the standard library. Whe...
CVE-2023-23625HIGH7.5go-unixfs is an implementation of a unix-like filesystem on top of an ipld merkledag. Trying to read malformed HAMT shar...
CVE-2023-24323HIGH8.8Mojoportal v2.7 was discovered to contain an authenticated XML external entity (XXE) injection vulnerability.
CVE-2023-23912HIGH8.8A vulnerability, found in EdgeRouters Version 2.0.9-hotfix.5 and earlier and UniFi Security Gateways (USG) Version 4.4.5...
CVE-2023-22799HIGH7.5A ReDoS based DoS vulnerability in the GlobalID <1.0.1 which could allow an attacker supplying a carefully crafted input...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now