2023 CVE Vulnerabilities

31,397 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-46813HIGH7An issue was discovered in the Linux kernel before 6.5.9, exploitable by local users with userspace access to MMIO regis...
CVE-2023-44375Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2023-44162Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2023-43738Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2023-5814HIGH8.8A vulnerability was found in SourceCodester Task Reminder System 1.0. It has been classified as critical. This affects a...
CVE-2023-5813HIGH8.8A vulnerability was found in SourceCodester Task Reminder System 1.0 and classified as critical. Affected by this issue ...
CVE-2023-5812HIGH8.8A vulnerability has been found in flusity CMS and classified as critical. Affected by this vulnerability is the function...
CVE-2023-5811MEDIUM4.8A vulnerability, which was classified as problematic, was found in flusity CMS. Affected is the function loadPostAddForm...
CVE-2023-5810MEDIUM4.8A vulnerability, which was classified as problematic, has been found in flusity CMS. This issue affects the function loa...
CVE-2023-46505MEDIUM6.1Cross Site Scripting vulnerability in FanCMS v.1.0.0 allows an attacker to execute arbitrary code via the content1 param...
CVE-2023-46376HIGH7.5Zentao Biz version 8.7 and before is vulnerable to Information Disclosure.
CVE-2023-46375HIGH8.8ZenTao Biz version 4.1.3 and before is vulnerable to Cross Site Request Forgery (CSRF).
CVE-2023-46491MEDIUM6.1ZenTao Biz version 4.1.3 and before has a Cross Site Scripting (XSS) vulnerability in the Version Library.
CVE-2023-46374MEDIUM6.1ZenTao Enterprise Edition version 4.1.3 and before is vulnerable to Cross Site Scripting (XSS).
CVE-2023-42188MEDIUM6.5IceCMS v2.0.1 is vulnerable to Cross Site Request Forgery (CSRF).
CVE-2023-44268Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2023-43737Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2023-27170HIGH7.5Xpand IT Write-back manager v2.3.1 allows attackers to perform a directory traversal via modification of the siteName pa...
CVE-2023-5805CRITICAL9.8A vulnerability was found in SourceCodester Simple Real Estate Portal System 1.0. It has been classified as critical. Af...
CVE-2023-43352HIGH7.8An issue in CMSmadesimple v.2.2.18 allows a local attacker to execute arbitrary code via a crafted payload to the Conten...
CVE-2023-42406CRITICAL9.8SQL injection vulnerability in D-Link Online behavior audit gateway DAR-7000 V31R02B1413C allows a remote attacker to ob...
CVE-2023-38328MEDIUM4.9An issue was discovered in eGroupWare 17.1.20190111. An Improper Password Storage vulnerability affects the setup panel ...
CVE-2023-46748HIGH8.8An authenticated SQL injection vulnerability exists in the BIG-IP Configuration utility which may allow an authenticat...
CVE-2023-46747CRITICAL9.8Undisclosed requests may bypass configuration utility authentication, allowing an attacker with network access to the BI...
CVE-2023-46665CRITICAL9.8 Sielco PolyEco1000 is vulnerable to an authentication bypass vulnerability due to an attacker modifying...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now