2023 CVE Vulnerabilities

31,397 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-45340CRITICAL9.8Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'phone' pa...
CVE-2023-45339Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2023-45337Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2023-45336CRITICAL9.8Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'password'...
CVE-2023-45335Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2023-45334CRITICAL9.8Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'status' p...
CVE-2023-45333Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2023-45332Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2023-45331Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2023-45330Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2023-45329Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2023-45328Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2023-45327Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2023-45326Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2023-45325CRITICAL9.8Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'address' ...
CVE-2023-45324Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2023-45323CRITICAL9.8Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'name' par...
CVE-2023-42802CRITICAL9.8GLPI is a free asset and IT management software package. Starting in version 10.0.7 and prior to version 10.0.10, an unv...
CVE-2023-29047HIGH7.3Imageconverter API endpoints provided methods that were not sufficiently validating and sanitizing client input, allowin...
CVE-2023-29046MEDIUM4.3Connections to external data sources, like e-mail autoconfiguration, were not terminated in case they hit a timeout, ins...
CVE-2023-29045MEDIUM5.4Documents operations, in this case "drawing", could be manipulated to contain invalid data types, possibly script code. ...
CVE-2023-29044MEDIUM5.4Documents operations could be manipulated to contain invalid data types, possibly script code. Script code could be inje...
CVE-2023-29043MEDIUM6.1Presentations may contain references to images, which are user-controlled, and could include malicious script code that ...
CVE-2023-26456MEDIUM5.4Users were able to set an arbitrary "product name" for OX Guard. The chosen value was not sufficiently sanitized before ...
CVE-2023-26455HIGH7.8RMI was not requiring authentication when calling ChronosRMIService:setEventOrganizer. Attackers with local or adjacent ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now