2023 CVE Vulnerabilities
31,397 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-25193 | HIGH | 7.5 | 1.8% | Feb 4, 2023 | hb-ot-layout-gsubgpos.hh in HarfBuzz through 6.0.0 allows attackers to trigger O(n^2) growth via consecutive marks durin... |
| CVE-2023-0675 | HIGH | 8.8 | 0.7% | Feb 4, 2023 | A vulnerability, which was classified as critical, was found in Calendar Event Management System 2.3.0. This affects an ... |
| CVE-2023-0673 | HIGH | 8.1 | 0.5% | Feb 4, 2023 | A vulnerability classified as critical was found in SourceCodester Online Eyewear Shop 1.0. Affected by this vulnerabili... |
| CVE-2023-0671 | HIGH | 8.8 | 1.1% | Feb 4, 2023 | Code Injection in GitHub repository froxlor/froxlor prior to 2.0.10. |
| CVE-2023-22746 | HIGH | 7.5 | 0.7% | Feb 3, 2023 | CKAN is an open-source DMS (data management system) for powering data hubs and data portals. When creating a new contain... |
| CVE-2023-24029 | HIGH | 7.2 | 0.9% | Feb 3, 2023 | In Progress WS_FTP Server before 8.8, it is possible for a host administrator to elevate their privileges via the admini... |
| CVE-2023-23941 | HIGH | 7.5 | 0.3% | Feb 3, 2023 | SwagPayPal is a PayPal integration for shopware/platform. If JavaScript-based PayPal checkout methods are used (PayPal P... |
| CVE-2023-23932 | HIGH | 7.5 | 0.7% | Feb 3, 2023 | OpenDDS is an open source C++ implementation of the Object Management Group (OMG) Data Distribution Service (DDS). OpenD... |
| CVE-2023-23925 | HIGH | 7.5 | 0.5% | Feb 3, 2023 | Switcher Client is a JavaScript SDK to work with Switcher API which is cloud-based Feature Flag. Unsanitized input flows... |
| CVE-2023-22474 | HIGH | 8.1 | 0.7% | Feb 3, 2023 | Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Parse Server use... |
| CVE-2023-20854 | HIGH | 8.4 | 0.3% | Feb 3, 2023 | VMware Workstation contains an arbitrary file deletion vulnerability. A malicious actor with local user privileges on th... |
| CVE-2023-0659 | HIGH | 7.5 | 0.7% | Feb 3, 2023 | A vulnerability was found in BDCOM 1704-WGL 2.0.6314. It has been classified as critical. This affects an unknown part o... |
| CVE-2023-24147 | HIGH | 7.5 | 0.7% | Feb 3, 2023 | TOTOLINK CA300-PoE V6.2c.884 was discovered to contain a hard code password for the telnet service which is stored in th... |
| CVE-2023-0124 | HIGH | 7.8 | 0.2% | Feb 3, 2023 | Delta Electronics DOPSoft versions 4.00.16.22 and prior are vulnerable to an out-of-bounds write, which could allow an a... |
| CVE-2023-0123 | HIGH | 7.8 | 0.2% | Feb 3, 2023 | Delta Electronics DOPSoft versions 4.00.16.22 and prior are vulnerable to a stack-based buffer overflow, which could all... |
| CVE-2023-0658 | HIGH | 7.5 | 0.7% | Feb 3, 2023 | A vulnerability, which was classified as critical, was found in Multilaser RE057 and RE170 2.1/2.2. This affects an unkn... |
| CVE-2023-24574 | HIGH | 7.5 | 0.9% | Feb 2, 2023 | Dell Enterprise SONiC OS, 3.5.3, 4.0.0, 4.0.1, 4.0.2, contains an "Uncontrolled Resource Consumption vulnerability" in ... |
| CVE-2023-23110 | HIGH | 7.4 | 0.6% | Feb 2, 2023 | An exploitable firmware modification vulnerability was discovered in certain Netgear products. The data integrity of the... |
| CVE-2023-0649 | HIGH | 7.5 | 3.2% | Feb 2, 2023 | A vulnerability has been found in dst-admin 1.5.0 and classified as critical. This vulnerability affects unknown code of... |
| CVE-2023-0648 | HIGH | 7.5 | 3.1% | Feb 2, 2023 | A vulnerability, which was classified as critical, was found in dst-admin 1.5.0. This affects an unknown part of the fil... |
| CVE-2023-0647 | HIGH | 7.5 | 3.1% | Feb 2, 2023 | A vulnerability, which was classified as critical, has been found in dst-admin 1.5.0. Affected by this issue is some unk... |
| CVE-2023-0646 | HIGH | 7.5 | 3.2% | Feb 2, 2023 | A vulnerability classified as critical was found in dst-admin 1.5.0. Affected by this vulnerability is an unknown functi... |
| CVE-2023-0400 | HIGH | 8.2 | 0.4% | Feb 2, 2023 | The protection bypass vulnerability in DLP for Windows 11.9.x is addressed in version 11.10.0. This allowed a local use... |
| CVE-2023-25014 | HIGH | 7.5 | 0.5% | Feb 2, 2023 | An issue was discovered in the femanager extension before 5.5.3, 6.x before 6.3.4, and 7.x before 7.1.0 for TYPO3. Missi... |
| CVE-2023-25013 | HIGH | 7.5 | 0.5% | Feb 2, 2023 | An issue was discovered in the femanager extension before 5.5.3, 6.x before 6.3.4, and 7.x before 7.1.0 for TYPO3. Missi... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now