2023 CVE Vulnerabilities

31,397 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-25193HIGH7.5hb-ot-layout-gsubgpos.hh in HarfBuzz through 6.0.0 allows attackers to trigger O(n^2) growth via consecutive marks durin...
CVE-2023-0675HIGH8.8A vulnerability, which was classified as critical, was found in Calendar Event Management System 2.3.0. This affects an ...
CVE-2023-0673HIGH8.1A vulnerability classified as critical was found in SourceCodester Online Eyewear Shop 1.0. Affected by this vulnerabili...
CVE-2023-0671HIGH8.8Code Injection in GitHub repository froxlor/froxlor prior to 2.0.10.
CVE-2023-22746HIGH7.5CKAN is an open-source DMS (data management system) for powering data hubs and data portals. When creating a new contain...
CVE-2023-24029HIGH7.2In Progress WS_FTP Server before 8.8, it is possible for a host administrator to elevate their privileges via the admini...
CVE-2023-23941HIGH7.5SwagPayPal is a PayPal integration for shopware/platform. If JavaScript-based PayPal checkout methods are used (PayPal P...
CVE-2023-23932HIGH7.5OpenDDS is an open source C++ implementation of the Object Management Group (OMG) Data Distribution Service (DDS). OpenD...
CVE-2023-23925HIGH7.5Switcher Client is a JavaScript SDK to work with Switcher API which is cloud-based Feature Flag. Unsanitized input flows...
CVE-2023-22474HIGH8.1Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Parse Server use...
CVE-2023-20854HIGH8.4VMware Workstation contains an arbitrary file deletion vulnerability. A malicious actor with local user privileges on th...
CVE-2023-0659HIGH7.5A vulnerability was found in BDCOM 1704-WGL 2.0.6314. It has been classified as critical. This affects an unknown part o...
CVE-2023-24147HIGH7.5TOTOLINK CA300-PoE V6.2c.884 was discovered to contain a hard code password for the telnet service which is stored in th...
CVE-2023-0124HIGH7.8Delta Electronics DOPSoft versions 4.00.16.22 and prior are vulnerable to an out-of-bounds write, which could allow an a...
CVE-2023-0123HIGH7.8Delta Electronics DOPSoft versions 4.00.16.22 and prior are vulnerable to a stack-based buffer overflow, which could all...
CVE-2023-0658HIGH7.5A vulnerability, which was classified as critical, was found in Multilaser RE057 and RE170 2.1/2.2. This affects an unkn...
CVE-2023-24574HIGH7.5 Dell Enterprise SONiC OS, 3.5.3, 4.0.0, 4.0.1, 4.0.2, contains an "Uncontrolled Resource Consumption vulnerability" in ...
CVE-2023-23110HIGH7.4An exploitable firmware modification vulnerability was discovered in certain Netgear products. The data integrity of the...
CVE-2023-0649HIGH7.5A vulnerability has been found in dst-admin 1.5.0 and classified as critical. This vulnerability affects unknown code of...
CVE-2023-0648HIGH7.5A vulnerability, which was classified as critical, was found in dst-admin 1.5.0. This affects an unknown part of the fil...
CVE-2023-0647HIGH7.5A vulnerability, which was classified as critical, has been found in dst-admin 1.5.0. Affected by this issue is some unk...
CVE-2023-0646HIGH7.5A vulnerability classified as critical was found in dst-admin 1.5.0. Affected by this vulnerability is an unknown functi...
CVE-2023-0400HIGH8.2 The protection bypass vulnerability in DLP for Windows 11.9.x is addressed in version 11.10.0. This allowed a local use...
CVE-2023-25014HIGH7.5An issue was discovered in the femanager extension before 5.5.3, 6.x before 6.3.4, and 7.x before 7.1.0 for TYPO3. Missi...
CVE-2023-25013HIGH7.5An issue was discovered in the femanager extension before 5.5.3, 6.x before 6.3.4, and 7.x before 7.1.0 for TYPO3. Missi...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now