2023 CVE Vulnerabilities

31,400 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-31122HIGH7.5Out-of-bounds Read vulnerability in mod_macro of Apache HTTP Server.This issue affects Apache HTTP Server: through 2.4.5...
CVE-2023-43624MEDIUM5.5CX-Designer Ver.3.740 and earlier (included in CX-One CXONE-AL[][]D-V4) contains an improper restriction of XML externa...
CVE-2023-5702MEDIUM6.5A vulnerability was found in Viessmann Vitogate 300 up to 2.1.3.0 and classified as problematic. Affected by this issue ...
CVE-2023-5701MEDIUM6.1A vulnerability has been found in vnotex vnote up to 3.17.0 and classified as problematic. Affected by this vulnerabilit...
CVE-2023-46324HIGH7.5pkg/suci/suci.go in free5GC udm before 1.2.0, when Go before 1.19 is used, allows an Invalid Curve Attack because it may...
CVE-2023-5700CRITICAL9.8A vulnerability, which was classified as critical, was found in Netentsec NS-ASG Application Security Gateway 6.3. Affec...
CVE-2023-5699MEDIUM6.1A vulnerability, which was classified as problematic, has been found in CodeAstro Internet Banking System 1.0. This issu...
CVE-2023-5698MEDIUM6.1A vulnerability classified as problematic was found in CodeAstro Internet Banking System 1.0. This vulnerability affects...
CVE-2023-5697MEDIUM6.1A vulnerability classified as problematic has been found in CodeAstro Internet Banking System 1.0. This affects an unkno...
CVE-2023-46322CRITICAL9.8iTermSessionLauncher.m in iTerm2 before 3.5.0beta12 does not sanitize ssh hostnames in URLs. The hostname's initial char...
CVE-2023-46321CRITICAL9.8iTermSessionLauncher.m in iTerm2 before 3.5.0beta12 does not sanitize paths in x-man-page URLs. They may have shell meta...
CVE-2023-46319HIGH7.5WALLIX Bastion 9.x before 9.0.9 and 10.x before 10.0.5 allows unauthenticated access to sensitive information by bypassi...
CVE-2023-5696MEDIUM6.1A vulnerability was found in CodeAstro Internet Banking System 1.0. It has been rated as problematic. Affected by this i...
CVE-2023-5695MEDIUM6.1A vulnerability was found in CodeAstro Internet Banking System 1.0. It has been declared as problematic. Affected by thi...
CVE-2023-5694MEDIUM6.1A vulnerability was found in CodeAstro Internet Banking System 1.0. It has been classified as problematic. Affected is a...
CVE-2023-5693CRITICAL9.8A vulnerability was found in CodeAstro Internet Banking System 1.0 and classified as critical. This issue affects some u...
CVE-2023-46317HIGH7.5Knot Resolver before 5.7.0 performs many TCP reconnections upon receiving certain nonsensical responses from servers.
CVE-2023-46315HIGH7.5The zanllp sd-webui-infinite-image-browsing (aka Infinite Image Browsing) extension before 977815a for stable-diffusion-...
CVE-2023-46095HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Chetan Gole Smooth Scroll Links [SSL] plugin <= 1.1.0 versions.
CVE-2023-46089HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Lee Le @ Userback Userback plugin <= 1.0.13 versions.
CVE-2023-46085HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Wpmet Wp Ultimate Review plugin <= 2.2.4 versions.
CVE-2023-46306MEDIUM6.6The web administration interface in NetModule Router Software (NRSW) 4.6 before 4.6.0.106 and 4.8 before 4.8.0.101 execu...
CVE-2023-46303HIGH7.5link_to_local_path in ebooks/conversion/plugins/html_input.py in calibre before 6.19.0 can, by default, add resources ou...
CVE-2023-46301CRITICAL9.8iTerm2 before 3.4.20 allow (potentially remote) code execution because of mishandling of certain escape sequences relate...
CVE-2023-46300CRITICAL9.8iTerm2 before 3.4.20 allow (potentially remote) code execution because of mishandling of certain escape sequences relate...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now