2023 CVE Vulnerabilities
31,400 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-45676 | HIGH | 7.8 | 0.5% | Oct 21, 2023 | stb_vorbis is a single file MIT licensed library for processing ogg vorbis files. A crafted file may trigger out of boun... |
| CVE-2023-45675 | HIGH | 7.8 | 0.8% | Oct 21, 2023 | stb_vorbis is a single file MIT licensed library for processing ogg vorbis files. A crafted file may trigger out of boun... |
| CVE-2023-45667 | HIGH | 7.5 | 1.1% | Oct 21, 2023 | stb_image is a single file MIT licensed library for processing images. If `stbi__load_gif_main` in `stbi_load_gif_from_... |
| CVE-2023-45666 | CRITICAL | 9.8 | 1.0% | Oct 21, 2023 | stb_image is a single file MIT licensed library for processing images. It may look like `stbi__load_gif_main` doesn’t g... |
| CVE-2023-45664 | HIGH | 8.8 | 0.9% | Oct 21, 2023 | stb_image is a single file MIT licensed library for processing images. A crafted image file can trigger `stbi__load_gif_... |
| CVE-2023-45663 | MEDIUM | 5.5 | 0.7% | Oct 21, 2023 | stb_image is a single file MIT licensed library for processing images. The stbi__getn function reads a specified number ... |
| CVE-2023-45662 | HIGH | 8.1 | 0.7% | Oct 21, 2023 | stb_image is a single file MIT licensed library for processing images. When `stbi_set_flip_vertically_on_load` is set to... |
| CVE-2023-45661 | HIGH | 7.1 | 0.6% | Oct 21, 2023 | stb_image is a single file MIT licensed library for processing images. A crafted image file may trigger out of bounds me... |
| CVE-2023-43346 | MEDIUM | 5.4 | 0.5% | Oct 20, 2023 | Cross-site scripting (XSS) vulnerability in opensolution Quick CMS v.6.7 allows a local attacker to execute arbitrary co... |
| CVE-2023-43357 | MEDIUM | 5.4 | 0.5% | Oct 20, 2023 | Cross Site Scripting vulnerability in CMSmadesimple v.2.2.18 allows a local attacker to execute arbitrary code via a cra... |
| CVE-2023-43356 | MEDIUM | 5.4 | 0.5% | Oct 20, 2023 | Cross Site Scripting vulnerability in CMSmadesimple v.2.2.18 allows a local attacker to execute arbitrary code via a cra... |
| CVE-2023-43355 | MEDIUM | 5.4 | 0.5% | Oct 20, 2023 | Cross Site Scripting vulnerability in CMSmadesimple v.2.2.18 allows a local attacker to execute arbitrary code via a cra... |
| CVE-2023-43354 | MEDIUM | 5.4 | 0.5% | Oct 20, 2023 | Cross Site Scripting vulnerability in CMSmadesimple v.2.2.18 allows a local attacker to execute arbitrary code via a cra... |
| CVE-2023-43353 | MEDIUM | 5.4 | 0.5% | Oct 20, 2023 | Cross Site Scripting vulnerability in CMSmadesimple v.2.2.18 allows a local attacker to execute arbitrary code via a cra... |
| CVE-2023-38191 | MEDIUM | 6.1 | 0.5% | Oct 20, 2023 | An issue was discovered in SuperWebMailer 9.00.0.01710. It allows spamtest_external.php XSS via a crafted filename. |
| CVE-2023-32786 | HIGH | 7.5 | 0.6% | Oct 20, 2023 | In Langchain through 0.0.155, prompt injection allows an attacker to force the service to retrieve data from an arbitrar... |
| CVE-2023-32785 | — | — | — | Oct 20, 2023 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: CVE-2023-36189. Reason: This record is a duplicate of CVE-2023-... |
| CVE-2023-5682 | CRITICAL | 9.8 | 0.7% | Oct 20, 2023 | A vulnerability has been found in Tongda OA 2017 and classified as critical. This vulnerability affects unknown code of ... |
| CVE-2023-5681 | HIGH | 7.2 | 0.6% | Oct 20, 2023 | A vulnerability, which was classified as critical, was found in Netentsec NS-ASG Application Security Gateway 6.3. This ... |
| CVE-2023-37824 | CRITICAL | 9.8 | 0.5% | Oct 20, 2023 | Sitolog sitologapplicationconnect v7.8.a and before was discovered to contain a SQL injection vulnerability via the comp... |
| CVE-2023-46117 | HIGH | 8.8 | 0.8% | Oct 20, 2023 | reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform sc... |
| CVE-2023-45805 | HIGH | 7.8 | 0.5% | Oct 20, 2023 | pdm is a Python package and dependency manager supporting the latest PEP standards. It's possible to craft a malicious `... |
| CVE-2023-5690 | HIGH | 8.8 | 0.4% | Oct 20, 2023 | Cross-Site Request Forgery (CSRF) in GitHub repository modoboa/modoboa prior to 2.2.2. |
| CVE-2023-5689 | MEDIUM | 5.4 | 0.5% | Oct 20, 2023 | Cross-site Scripting (XSS) - DOM in GitHub repository modoboa/modoboa prior to 2.2.2. |
| CVE-2023-5688 | MEDIUM | 5.4 | 0.6% | Oct 20, 2023 | Cross-site Scripting (XSS) - DOM in GitHub repository modoboa/modoboa prior to 2.2.2. |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now