2023 CVE Vulnerabilities

31,397 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-41347HIGH8.8ASUS RT-AX55’s authentication-related function has a vulnerability of insufficient filtering of special characters withi...
CVE-2023-41346HIGH8.8ASUS RT-AX55’s authentication-related function has a vulnerability of insufficient filtering of special characters withi...
CVE-2023-41345HIGH8.8ASUS RT-AX55’s authentication-related function has a vulnerability of insufficient filtering of special characters withi...
CVE-2023-41343MEDIUM5.4Rogic No-Code Database Builder's file uploading function has insufficient filtering for special characters. A remote att...
CVE-2023-41260HIGH7.5Best Practical Request Tracker (RT) before 4.4.7 and 5.x before 5.0.5 allows Information Exposure in responses to mail-g...
CVE-2023-41259HIGH7.5Best Practical Request Tracker (RT) before 4.4.7 and 5.x before 5.0.5 allows Information Disclosure via fake or spoofed ...
CVE-2023-41164HIGH7.5In Django 3.2 before 3.2.21, 4.1 before 4.1.11, and 4.2 before 4.2.5, django.utils.encoding.uri_to_iri() is subject to a...
CVE-2023-38965CRITICAL9.8Lost and Found Information System 1.0 allows account takeover via username and password to a /classes/Users.php?f=save U...
CVE-2023-36621CRITICAL9.1An issue was discovered in the Boomerang Parental Control application through 13.83 for Android. The child can use Safe ...
CVE-2023-36620MEDIUM4.6An issue was discovered in the Boomerang Parental Control application before 13.83 for Android. The app is missing the a...
CVE-2023-34261MEDIUM5.3Kyocera TASKalfa 4053ci printers through 2VG_S000.002.561 allow identification of valid user accounts via username enume...
CVE-2023-34260HIGH7.5Kyocera TASKalfa 4053ci printers through 2VG_S000.002.561 allow a denial of service (service outage) via /wlmdeu%2f%2e%2...
CVE-2023-34259MEDIUM4.9Kyocera TASKalfa 4053ci printers through 2VG_S000.002.561 allow /wlmdeu%2f%2e%2e%2f%2e%2e directory traversal to read ar...
CVE-2023-31102HIGH7.8Ppmd7.c in 7-Zip before 23.00 allows an integer underflow and invalid read operation via a crafted 7Z archive.
CVE-2023-46954CRITICAL9.8SQL Injection vulnerability in Relativity ODA LLC RelativityOne v.12.1.537.3 Patch 2 and earlier allows a remote attacke...
CVE-2023-35896MEDIUM5.4IBM Content Navigator 3.0.13 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attack...
CVE-2023-46176HIGH7.8IBM MQ Appliance 9.3 CD could allow a local attacker to gain elevated privileges on the system, caused by improper valid...
CVE-2023-36034HIGH7.3Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
CVE-2023-36029MEDIUM4.3Microsoft Edge (Chromium-based) Spoofing Vulnerability
CVE-2023-36022MEDIUM6.6Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
CVE-2023-43018HIGH7.5IBM CICS TX Standard 11.1 and Advanced 10.1, 11.1 performs an operation at a privilege level that is higher than the min...
CVE-2023-42029MEDIUM5.4IBM CICS TX Standard 11.1, Advanced 10.1, 11.1, and TXSeries for Multiplatforms 8.1, 8.2, 9.1 are vulnerable to cross-si...
CVE-2023-42027HIGH8.8IBM CICS TX Standard 11.1, Advanced 10.1, 11.1, and TXSeries for Multiplatforms 8.1, 8.2, 9.1 are vulnerable to cross-si...
CVE-2023-46958CRITICAL9.8An issue in lmxcms v.1.41 allows a remote attacker to execute arbitrary code via a crafted script to the admin.php file.
CVE-2023-46352HIGH7.5In the module "Pixel Plus: Events + CAPI + Pixel Catalog for Facebook Module" (facebookconversiontrackingplus) up to ver...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now