2023 CVE Vulnerabilities
31,397 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-41347 | HIGH | 8.8 | 1.3% | Nov 3, 2023 | ASUS RT-AX55’s authentication-related function has a vulnerability of insufficient filtering of special characters withi... |
| CVE-2023-41346 | HIGH | 8.8 | 1.2% | Nov 3, 2023 | ASUS RT-AX55’s authentication-related function has a vulnerability of insufficient filtering of special characters withi... |
| CVE-2023-41345 | HIGH | 8.8 | 1.3% | Nov 3, 2023 | ASUS RT-AX55’s authentication-related function has a vulnerability of insufficient filtering of special characters withi... |
| CVE-2023-41343 | MEDIUM | 5.4 | 0.3% | Nov 3, 2023 | Rogic No-Code Database Builder's file uploading function has insufficient filtering for special characters. A remote att... |
| CVE-2023-41260 | HIGH | 7.5 | 0.7% | Nov 3, 2023 | Best Practical Request Tracker (RT) before 4.4.7 and 5.x before 5.0.5 allows Information Exposure in responses to mail-g... |
| CVE-2023-41259 | HIGH | 7.5 | 0.7% | Nov 3, 2023 | Best Practical Request Tracker (RT) before 4.4.7 and 5.x before 5.0.5 allows Information Disclosure via fake or spoofed ... |
| CVE-2023-41164 | HIGH | 7.5 | 1.3% | Nov 3, 2023 | In Django 3.2 before 3.2.21, 4.1 before 4.1.11, and 4.2 before 4.2.5, django.utils.encoding.uri_to_iri() is subject to a... |
| CVE-2023-38965 | CRITICAL | 9.8 | 1.3% | Nov 3, 2023 | Lost and Found Information System 1.0 allows account takeover via username and password to a /classes/Users.php?f=save U... |
| CVE-2023-36621 | CRITICAL | 9.1 | 0.9% | Nov 3, 2023 | An issue was discovered in the Boomerang Parental Control application through 13.83 for Android. The child can use Safe ... |
| CVE-2023-36620 | MEDIUM | 4.6 | 0.5% | Nov 3, 2023 | An issue was discovered in the Boomerang Parental Control application before 13.83 for Android. The app is missing the a... |
| CVE-2023-34261 | MEDIUM | 5.3 | 6.7% | Nov 3, 2023 | Kyocera TASKalfa 4053ci printers through 2VG_S000.002.561 allow identification of valid user accounts via username enume... |
| CVE-2023-34260 | HIGH | 7.5 | 68.0% | Nov 3, 2023 | Kyocera TASKalfa 4053ci printers through 2VG_S000.002.561 allow a denial of service (service outage) via /wlmdeu%2f%2e%2... |
| CVE-2023-34259 | MEDIUM | 4.9 | 57.7% | Nov 3, 2023 | Kyocera TASKalfa 4053ci printers through 2VG_S000.002.561 allow /wlmdeu%2f%2e%2e%2f%2e%2e directory traversal to read ar... |
| CVE-2023-31102 | HIGH | 7.8 | 71.0% | Nov 3, 2023 | Ppmd7.c in 7-Zip before 23.00 allows an integer underflow and invalid read operation via a crafted 7Z archive. |
| CVE-2023-46954 | CRITICAL | 9.8 | 1.1% | Nov 3, 2023 | SQL Injection vulnerability in Relativity ODA LLC RelativityOne v.12.1.537.3 Patch 2 and earlier allows a remote attacke... |
| CVE-2023-35896 | MEDIUM | 5.4 | 0.3% | Nov 3, 2023 | IBM Content Navigator 3.0.13 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attack... |
| CVE-2023-46176 | HIGH | 7.8 | 0.2% | Nov 3, 2023 | IBM MQ Appliance 9.3 CD could allow a local attacker to gain elevated privileges on the system, caused by improper valid... |
| CVE-2023-36034 | HIGH | 7.3 | 2.7% | Nov 3, 2023 | Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability |
| CVE-2023-36029 | MEDIUM | 4.3 | 1.0% | Nov 3, 2023 | Microsoft Edge (Chromium-based) Spoofing Vulnerability |
| CVE-2023-36022 | MEDIUM | 6.6 | 1.2% | Nov 3, 2023 | Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability |
| CVE-2023-43018 | HIGH | 7.5 | 0.4% | Nov 3, 2023 | IBM CICS TX Standard 11.1 and Advanced 10.1, 11.1 performs an operation at a privilege level that is higher than the min... |
| CVE-2023-42029 | MEDIUM | 5.4 | 0.4% | Nov 3, 2023 | IBM CICS TX Standard 11.1, Advanced 10.1, 11.1, and TXSeries for Multiplatforms 8.1, 8.2, 9.1 are vulnerable to cross-si... |
| CVE-2023-42027 | HIGH | 8.8 | 0.3% | Nov 3, 2023 | IBM CICS TX Standard 11.1, Advanced 10.1, 11.1, and TXSeries for Multiplatforms 8.1, 8.2, 9.1 are vulnerable to cross-si... |
| CVE-2023-46958 | CRITICAL | 9.8 | 1.3% | Nov 2, 2023 | An issue in lmxcms v.1.41 allows a remote attacker to execute arbitrary code via a crafted script to the admin.php file. |
| CVE-2023-46352 | HIGH | 7.5 | 0.5% | Nov 2, 2023 | In the module "Pixel Plus: Events + CAPI + Pixel Catalog for Facebook Module" (facebookconversiontrackingplus) up to ver... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now