2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2023-48805CRITICAL9.8In TOTOLINK X6000R V9.4.0cu.852_B20230719, the shttpd file, sub_4119A0 function obtains fields from the front-end throug...
CVE-2023-48804CRITICAL9.8In TOTOLINK X6000R V9.4.0cu.852_B20230719, the shttpd file, sub_4119A0 function obtains fields from the front-end throug...
CVE-2023-48803CRITICAL9.8In TOTOLINK X6000R V9.4.0cu.852_B20230719, the shttpd file, sub_4119A0 function obtains fields from the front-end throug...
CVE-2023-48802CRITICAL9.8In TOTOLINK X6000R V9.4.0cu.852_B20230719, the shttpd file, sub_4119A0 function obtains fields from the front-end throug...
CVE-2023-34388CRITICAL9.8An Improper Authentication vulnerability in the Schweitzer Engineering Laboratories SEL-451 could allow a remote unauthe...
CVE-2023-31176CRITICAL9.8An Insufficient Entropy vulnerability in the Schweitzer Engineering Laboratories SEL-451 could allow an unauthenticated ...
CVE-2023-6360CRITICAL9.8The 'My Calendar' WordPress Plugin, version < 3.4.22 is affected by an unauthenticated SQL injection vulnerability in th...
CVE-2023-6026CRITICAL9.1A Path traversal vulnerability has been reported in elijaa/phpmemcachedadmin affecting version 1.3.0. This vulnerability...
CVE-2023-49733CRITICAL9.8Improper Restriction of XML External Entity Reference vulnerability in Apache Cocoon.This issue affects Apache Cocoon: f...
CVE-2023-49701CRITICAL9.8Memory Corruption in SIM management while USIMPhase2init
CVE-2023-47418CRITICAL9.8Remote Code Execution (RCE) vulnerability in o2oa version 8.1.2 and before, allows attackers to create a new interface i...
CVE-2023-47463CRITICAL9.8Insecure Permissions vulnerability in GL.iNet AX1800 version 4.0.0 before 4.5.0 allows a remote attacker to execute arbi...
CVE-2023-4474CRITICAL9.8The improper neutralization of special elements in the WSGI server of the Zyxel NAS326 firmware version V5.21(AAZF.14)C0...
CVE-2023-4473CRITICAL9.8A command injection vulnerability in the web server of the Zyxel NAS326 firmware version V5.21(AAZF.14)C0 and NAS542 fir...
CVE-2023-35138CRITICAL9.8A command injection vulnerability in the “show_zysync_server_contents” function of the Zyxel NAS326 firmware version V5....
CVE-2023-3741CRITICAL9.8An OS Command injection vulnerability in NEC Platforms DT900 and DT900S Series all versions allows an attacker to execut...
CVE-2023-49693CRITICAL9.8 NETGEAR ProSAFE Network Management System has Java Debug Wire Protocol (JDWP) listening on port 11611 and it is remotel...
CVE-2023-49091CRITICAL9.8Cosmos provides users the ability self-host a home server by acting as a secure gateway to your application, as well as ...
CVE-2023-49656CRITICAL9.8Jenkins MATLAB Plugin 2.11.0 and earlier does not configure its XML parser to prevent XML external entity (XXE) attacks.
CVE-2023-49654CRITICAL9.8Missing permission checks in Jenkins MATLAB Plugin 2.11.0 and earlier allow attackers to have Jenkins parse an XML file ...
CVE-2023-6345CRITICAL9.6Integer overflow in Skia in Google Chrome prior to 119.0.6045.199 allowed a remote attacker who had compromised the rend...
CVE-2023-45484CRITICAL9.8Tenda AC10 version US_AC10V4.0si_V16.03.10.13_cn was discovered to contain a stack overflow via the shareSpeed parameter...
CVE-2023-45483CRITICAL9.8Tenda AC10 version US_AC10V4.0si_V16.03.10.13_cn was discovered to contain a stack overflow via the time parameter in th...
CVE-2023-45482CRITICAL9.8Tenda AC10 version US_AC10V4.0si_V16.03.10.13_cn was discovered to contain a stack overflow via the urls parameter in th...
CVE-2023-45481CRITICAL9.8Tenda AC10 version US_AC10V4.0si_V16.03.10.13_cn was discovered to contain a stack overflow via the firewallEn parameter...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now