2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2023-5601CRITICAL9.8The WooCommerce Ninja Forms Product Add-ons WordPress plugin before 1.7.1 does not validate the file to be uploaded, all...
CVE-2023-5777CRITICAL9.8 Weintek EasyBuilder Pro contains a vulnerability that, even when the private key is immediately deleted after the cra...
CVE-2023-5719CRITICAL9.8 The Crimson 3.2 Windows-based configuration tool allows users with administrative access to define new passwords for us...
CVE-2023-46731CRITICAL9.8XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. XWiki doesn't p...
CVE-2023-45827CRITICAL9.8Dot diver is a lightweight, powerful, and dependency-free TypeScript utility library that provides types and functions t...
CVE-2023-45830CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Online ADA Accessi...
CVE-2023-45657CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in POSIMYTH Nexter al...
CVE-2023-45074CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Page Visit Counter...
CVE-2023-45069CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Video Gallery by T...
CVE-2023-45055CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in InspireUI MStore A...
CVE-2023-45046CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Pressference Press...
CVE-2023-45001CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Castos Seriously S...
CVE-2023-41685CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in ilGhera Woocommerc...
CVE-2023-40609CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Aiyaz, maheshpatel...
CVE-2023-40207CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in RedNao Donations M...
CVE-2023-38382CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Daniel Söderström ...
CVE-2023-35911CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Creative Solutions...
CVE-2023-33924CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Felix Welberg SIS ...
CVE-2023-28748CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in biztechc Copy or M...
CVE-2023-27605CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Sajjad Hossain WP ...
CVE-2023-4699CRITICAL9.1Missing Authentication for Critical Function vulnerability in Mitsubishi Electric Corporation MELSEC-F Series CPU module...
CVE-2023-47253CRITICAL9.8Qualitor through 8.20 allows remote attackers to execute arbitrary code via PHP code in the html/ad/adpesquisasql/reques...
CVE-2023-38406CRITICAL9.8bgpd/bgp_flowspec.c in FRRouting (FRR) before 8.4.3 mishandles an nlri length of zero, aka a "flowspec overflow."
CVE-2023-46981CRITICAL9.8SQL injection vulnerability in Novel-Plus v.4.2.0 allows a remote attacker to execute arbitrary code via a crafted scrip...
CVE-2023-40922CRITICAL9.8kerawen before v2.5.1 was discovered to contain a SQL injection vulnerability via the ocs_id_cart parameter at KerawenDe...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now