2023 CVE Vulnerabilities

31,397 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-21842HIGH7.5Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Web Container). Supported v...
CVE-2023-21841HIGH7.5Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions t...
CVE-2023-21839HIGH7.5Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions t...
CVE-2023-21838HIGH7.5Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions t...
CVE-2023-21837HIGH7.5Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions t...
CVE-2023-21832HIGH8.8Vulnerability in the Oracle BI Publisher product of Oracle Fusion Middleware (component: Security). Supported versions ...
CVE-2023-21828HIGH8.1Vulnerability in the Oracle Hospitality Reporting and Analytics product of Oracle Food and Beverage Applications (compon...
CVE-2023-21826HIGH7.6Vulnerability in the Oracle Hospitality Reporting and Analytics product of Oracle Food and Beverage Applications (compon...
CVE-2023-22734HIGH7.5Shopware is an open source commerce platform based on Symfony Framework and Vue js. The newsletter double opt-in validat...
CVE-2023-22731HIGH8.8Shopware is an open source commerce platform based on Symfony Framework and Vue js. In a Twig environment **without the ...
CVE-2023-22730HIGH7.5Shopware is an open source commerce platform based on Symfony Framework and Vue js. In affected versions It was possible...
CVE-2023-23637HIGH7.6IMPatienT before 1.5.2 allows stored XSS via onmouseover in certain text fields within a PATCH /modify_onto request to t...
CVE-2023-22499HIGH7.5Deno is a runtime for JavaScript and TypeScript that uses V8 and is built in Rust. Multi-threaded programs were able to ...
CVE-2023-0122HIGH7.5A NULL pointer dereference vulnerability in the Linux kernel NVMe functionality, in nvmet_setup_auth(), allows an attack...
CVE-2023-23749HIGH7.5The 'LDAP Integration with Active Directory and OpenLDAP - NTLM & Kerberos Login' extension is vulnerable to LDAP Inject...
CVE-2023-22624HIGH7.5Zoho ManageEngine Exchange Reporter Plus before 5708 allows attackers to conduct XXE attacks.
CVE-2023-22875HIGH7.5 IBM QRadar SIEM 7.4 and 7.5copies certificate key files used for SSL/TLS in the QRadar web user interface to managed ho...
CVE-2023-0158HIGH7.5NLnet Labs Krill supports direct access to the RRDP repository content through its built-in web server at the "/rrdp" en...
CVE-2023-22366HIGH7.8CX-Motion-MCH v2.32 and earlier contains an access of uninitialized pointer vulnerability. Having a user to open a speci...
CVE-2023-22304HIGH8OS command injection vulnerability in PIX-RT100 versions RT100_TEQ_2.1.1_EQ101 and RT100_TEQ_2.1.2_EQ101 allows a networ...
CVE-2023-22286HIGH8.1Cross-site request forgery (CSRF) vulnerability in MAHO-PBX NetDevancer Lite/Uni/Pro/Cloud prior to Ver.1.11.00, MAHO-PB...
CVE-2023-22280HIGH7.2MAHO-PBX NetDevancer Lite/Uni/Pro/Cloud prior to Ver.1.11.00, MAHO-PBX NetDevancer VSG Lite/Uni prior to Ver.1.11.00, an...
CVE-2023-0315HIGH8.8Command Injection in GitHub repository froxlor/froxlor prior to 2.0.8.
CVE-2023-0305HIGH7.5A vulnerability classified as critical was found in SourceCodester Online Food Ordering System. This vulnerability affec...
CVE-2023-0304HIGH7.5A vulnerability classified as critical has been found in SourceCodester Online Food Ordering System. This affects an unk...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now