2023 CVE Vulnerabilities

31,401 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-43667HIGH7.5Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') vulnerability in Apac...
CVE-2023-43666MEDIUM6.5Insufficient Verification of Data Authenticity vulnerability in Apache InLong.This issue affects Apache InLong: from 1.4...
CVE-2023-3392HIGH7.2The Read More & Accordion WordPress plugin before 3.2.7 unserializes user input provided via the settings, which could a...
CVE-2023-38059MEDIUM5.3The loading of external images is not blocked, even if configured, if the attacker uses protocol-relative URL in the pay...
CVE-2023-45158CRITICAL9.8An OS command injection vulnerability exists in web2py 2.24.1 and earlier. When the product is configured to use notifyS...
CVE-2023-45580CRITICAL9.8Buffer Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and be...
CVE-2023-45579CRITICAL9.8Buffer Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and be...
CVE-2023-45578CRITICAL9.8Buffer Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and be...
CVE-2023-45577CRITICAL9.8Stack Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and bef...
CVE-2023-45576CRITICAL9.8Buffer Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and be...
CVE-2023-21415HIGH8.1Sandro Poppi, member of the AXIS OS Bug Bounty Program, has found that the VAPIX API overlay_del.cgi is vulnerable to pa...
CVE-2023-21414MEDIUM6.8NCC Group has found a flaw during the annual internal penetration test ordered by Axis Communications. The protection fo...
CVE-2023-21413HIGH7.2GoSecure on behalf of Genetec Inc. has found a flaw that allows for a remote code execution during the installation of A...
CVE-2023-45575CRITICAL9.8Stack Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and bef...
CVE-2023-45574CRITICAL9.8Buffer Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and be...
CVE-2023-45573CRITICAL9.8Buffer Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and be...
CVE-2023-45572CRITICAL9.8Buffer Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and be...
CVE-2023-44809CRITICAL9.8D-Link device DIR-820L 1.05B03 is vulnerable to Insecure Permissions.
CVE-2023-44808CRITICAL9.8D-Link DIR-820L 1.05B03 has a stack overflow vulnerability in the sub_4507CC function.
CVE-2023-36955CRITICAL9.8TOTOLINK CP300+ <=V5.2cu.7594_B20200910 was discovered to contain a stack overflow via the File parameter in the functio...
CVE-2023-36954CRITICAL9.8TOTOLINK CP300+ V5.2cu.7594_B20200910 and before is vulnerable to command injection.
CVE-2023-36953CRITICAL9.8TOTOLINK CP300+ V5.2cu.7594_B20200910 and before is vulnerable to command injection.
CVE-2023-36950CRITICAL9.8TOTOLINK X5000R V9.1.0u.6118_B20201102 and TOTOLINK A7000R V9.1.0u.6115_B20201022 was discovered to contain a stack over...
CVE-2023-36952CRITICAL9.8TOTOLINK CP300+ V5.2cu.7594_B20200910 was discovered to contain a stack overflow via the pingIp parameter in the functio...
CVE-2023-36947CRITICAL9.8TOTOLINK X5000R V9.1.0u.6118_B20201102 and TOTOLINK A7000R V9.1.0u.6115_B20201022 was discovered to contain a stack over...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now