2023 CVE Vulnerabilities

31,400 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-45676HIGH7.8stb_vorbis is a single file MIT licensed library for processing ogg vorbis files. A crafted file may trigger out of boun...
CVE-2023-45675HIGH7.8stb_vorbis is a single file MIT licensed library for processing ogg vorbis files. A crafted file may trigger out of boun...
CVE-2023-45667HIGH7.5stb_image is a single file MIT licensed library for processing images. If `stbi__load_gif_main` in `stbi_load_gif_from_...
CVE-2023-45666CRITICAL9.8stb_image is a single file MIT licensed library for processing images. It may look like `stbi__load_gif_main` doesn’t g...
CVE-2023-45664HIGH8.8stb_image is a single file MIT licensed library for processing images. A crafted image file can trigger `stbi__load_gif_...
CVE-2023-45663MEDIUM5.5stb_image is a single file MIT licensed library for processing images. The stbi__getn function reads a specified number ...
CVE-2023-45662HIGH8.1stb_image is a single file MIT licensed library for processing images. When `stbi_set_flip_vertically_on_load` is set to...
CVE-2023-45661HIGH7.1stb_image is a single file MIT licensed library for processing images. A crafted image file may trigger out of bounds me...
CVE-2023-43346MEDIUM5.4Cross-site scripting (XSS) vulnerability in opensolution Quick CMS v.6.7 allows a local attacker to execute arbitrary co...
CVE-2023-43357MEDIUM5.4Cross Site Scripting vulnerability in CMSmadesimple v.2.2.18 allows a local attacker to execute arbitrary code via a cra...
CVE-2023-43356MEDIUM5.4Cross Site Scripting vulnerability in CMSmadesimple v.2.2.18 allows a local attacker to execute arbitrary code via a cra...
CVE-2023-43355MEDIUM5.4Cross Site Scripting vulnerability in CMSmadesimple v.2.2.18 allows a local attacker to execute arbitrary code via a cra...
CVE-2023-43354MEDIUM5.4Cross Site Scripting vulnerability in CMSmadesimple v.2.2.18 allows a local attacker to execute arbitrary code via a cra...
CVE-2023-43353MEDIUM5.4Cross Site Scripting vulnerability in CMSmadesimple v.2.2.18 allows a local attacker to execute arbitrary code via a cra...
CVE-2023-38191MEDIUM6.1An issue was discovered in SuperWebMailer 9.00.0.01710. It allows spamtest_external.php XSS via a crafted filename.
CVE-2023-32786HIGH7.5In Langchain through 0.0.155, prompt injection allows an attacker to force the service to retrieve data from an arbitrar...
CVE-2023-32785Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: CVE-2023-36189. Reason: This record is a duplicate of CVE-2023-...
CVE-2023-5682CRITICAL9.8A vulnerability has been found in Tongda OA 2017 and classified as critical. This vulnerability affects unknown code of ...
CVE-2023-5681HIGH7.2A vulnerability, which was classified as critical, was found in Netentsec NS-ASG Application Security Gateway 6.3. This ...
CVE-2023-37824CRITICAL9.8Sitolog sitologapplicationconnect v7.8.a and before was discovered to contain a SQL injection vulnerability via the comp...
CVE-2023-46117HIGH8.8reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform sc...
CVE-2023-45805HIGH7.8pdm is a Python package and dependency manager supporting the latest PEP standards. It's possible to craft a malicious `...
CVE-2023-5690HIGH8.8Cross-Site Request Forgery (CSRF) in GitHub repository modoboa/modoboa prior to 2.2.2.
CVE-2023-5689MEDIUM5.4Cross-site Scripting (XSS) - DOM in GitHub repository modoboa/modoboa prior to 2.2.2.
CVE-2023-5688MEDIUM5.4Cross-site Scripting (XSS) - DOM in GitHub repository modoboa/modoboa prior to 2.2.2.

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now