2023 CVE Vulnerabilities

31,397 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-45016Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2023-45015CRITICAL9.8Online Bus Booking System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'date' param...
CVE-2023-45014Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2023-45013Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2023-45012CRITICAL9.8Online Bus Booking System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'user_email'...
CVE-2023-45114Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2023-45113Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2023-45112Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2023-45111CRITICAL9.8Online Examination System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'email' para...
CVE-2023-5910MEDIUM6.1A vulnerability was found in PopojiCMS 2.0.1 and classified as problematic. This issue affects some unknown processing o...
CVE-2023-45203MEDIUM6.1Online Examination System v1.0 is vulnerable to multiple Open Redirect vulnerabilities. The 'q' parameter of the login.p...
CVE-2023-45202MEDIUM6.1Online Examination System v1.0 is vulnerable to multiple Open Redirect vulnerabilities. The 'q' parameter of the feed.ph...
CVE-2023-44954MEDIUM5.4Cross Site Scripting vulnerability in BigTree CMS v.4.5.7 allows a remote attacker to execute arbitrary code via the ID ...
CVE-2023-46448MEDIUM6.1Reflected Cross-Site Scripting (XSS) vulnerability in dmpop Mejiro Commit Versions Prior To 3096393 allows attackers to ...
CVE-2023-45201MEDIUM6.1Online Examination System v1.0 is vulnerable to multiple Open Redirect vulnerabilities. The 'q' parameter of the admin.p...
CVE-2023-44025CRITICAL9.8SQL injection vulnerability in addify Addifyfreegifts v.1.0.2 and before allows a remote attacker to execute arbitrary c...
CVE-2023-39281CRITICAL9.8A stack buffer overflow vulnerability discovered in AsfSecureBootDxe in Insyde InsydeH2O with kernel 5.0 through 5.5 all...
CVE-2023-46428HIGH8.8An arbitrary file upload vulnerability in HadSky v7.12.10 allows attackers to execute arbitrary code via a crafted file.
CVE-2023-46724HIGH7.5Squid is a caching proxy for the Web. Due to an Improper Validation of Specified Index bug, Squid versions 3.3.0.1 throu...
CVE-2023-3397MEDIUM6.3A race condition occurred between the functions lmLogClose and txEnd in JFS, in the Linux Kernel, executed in different ...
CVE-2023-1193MEDIUM6.5A use-after-free flaw was found in setup_async_work in the KSMBD implementation of the in-kernel samba server and CIFS i...
CVE-2023-1192MEDIUM6.5A use-after-free flaw was found in smb2_is_status_io_timeout() in CIFS in the Linux Kernel. After CIFS transfers respons...
CVE-2023-46482CRITICAL9.8SQL injection vulnerability in wuzhicms v.4.1.0 allows a remote attacker to execute arbitrary code via the Database Back...
CVE-2023-5859MEDIUM4.3Incorrect security UI in Picture In Picture in Google Chrome prior to 119.0.6045.105 allowed a remote attacker to perfor...
CVE-2023-5858MEDIUM4.3Inappropriate implementation in WebApp Provider in Google Chrome prior to 119.0.6045.105 allowed a remote attacker to ob...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now