2023 CVE Vulnerabilities
31,397 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-45340 | CRITICAL | 9.8 | 0.7% | Nov 2, 2023 | Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'phone' pa... |
| CVE-2023-45339 | — | — | — | Nov 2, 2023 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2023-45337 | — | — | — | Nov 2, 2023 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2023-45336 | CRITICAL | 9.8 | 0.7% | Nov 2, 2023 | Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'password'... |
| CVE-2023-45335 | — | — | — | Nov 2, 2023 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2023-45334 | CRITICAL | 9.8 | 0.7% | Nov 2, 2023 | Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'status' p... |
| CVE-2023-45333 | — | — | — | Nov 2, 2023 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2023-45332 | — | — | — | Nov 2, 2023 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2023-45331 | — | — | — | Nov 2, 2023 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2023-45330 | — | — | — | Nov 2, 2023 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2023-45329 | — | — | — | Nov 2, 2023 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2023-45328 | — | — | — | Nov 2, 2023 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2023-45327 | — | — | — | Nov 2, 2023 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2023-45326 | — | — | — | Nov 2, 2023 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2023-45325 | CRITICAL | 9.8 | 0.7% | Nov 2, 2023 | Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'address' ... |
| CVE-2023-45324 | — | — | — | Nov 2, 2023 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2023-45323 | CRITICAL | 9.8 | 0.7% | Nov 2, 2023 | Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'name' par... |
| CVE-2023-42802 | CRITICAL | 9.8 | 0.8% | Nov 2, 2023 | GLPI is a free asset and IT management software package. Starting in version 10.0.7 and prior to version 10.0.10, an unv... |
| CVE-2023-29047 | HIGH | 7.3 | 0.3% | Nov 2, 2023 | Imageconverter API endpoints provided methods that were not sufficiently validating and sanitizing client input, allowin... |
| CVE-2023-29046 | MEDIUM | 4.3 | 0.5% | Nov 2, 2023 | Connections to external data sources, like e-mail autoconfiguration, were not terminated in case they hit a timeout, ins... |
| CVE-2023-29045 | MEDIUM | 5.4 | 0.4% | Nov 2, 2023 | Documents operations, in this case "drawing", could be manipulated to contain invalid data types, possibly script code. ... |
| CVE-2023-29044 | MEDIUM | 5.4 | 0.4% | Nov 2, 2023 | Documents operations could be manipulated to contain invalid data types, possibly script code. Script code could be inje... |
| CVE-2023-29043 | MEDIUM | 6.1 | 0.3% | Nov 2, 2023 | Presentations may contain references to images, which are user-controlled, and could include malicious script code that ... |
| CVE-2023-26456 | MEDIUM | 5.4 | 0.4% | Nov 2, 2023 | Users were able to set an arbitrary "product name" for OX Guard. The chosen value was not sufficiently sanitized before ... |
| CVE-2023-26455 | HIGH | 7.8 | 0.2% | Nov 2, 2023 | RMI was not requiring authentication when calling ChronosRMIService:setEventOrganizer. Attackers with local or adjacent ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now