2023 CVE Vulnerabilities
31,401 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-43667 | HIGH | 7.5 | 1.2% | Oct 16, 2023 | Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') vulnerability in Apac... |
| CVE-2023-43666 | MEDIUM | 6.5 | 0.4% | Oct 16, 2023 | Insufficient Verification of Data Authenticity vulnerability in Apache InLong.This issue affects Apache InLong: from 1.4... |
| CVE-2023-3392 | HIGH | 7.2 | 0.8% | Oct 16, 2023 | The Read More & Accordion WordPress plugin before 3.2.7 unserializes user input provided via the settings, which could a... |
| CVE-2023-38059 | MEDIUM | 5.3 | 0.5% | Oct 16, 2023 | The loading of external images is not blocked, even if configured, if the attacker uses protocol-relative URL in the pay... |
| CVE-2023-45158 | CRITICAL | 9.8 | 3.7% | Oct 16, 2023 | An OS command injection vulnerability exists in web2py 2.24.1 and earlier. When the product is configured to use notifyS... |
| CVE-2023-45580 | CRITICAL | 9.8 | 1.2% | Oct 16, 2023 | Buffer Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and be... |
| CVE-2023-45579 | CRITICAL | 9.8 | 1.2% | Oct 16, 2023 | Buffer Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and be... |
| CVE-2023-45578 | CRITICAL | 9.8 | 1.2% | Oct 16, 2023 | Buffer Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and be... |
| CVE-2023-45577 | CRITICAL | 9.8 | 1.2% | Oct 16, 2023 | Stack Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and bef... |
| CVE-2023-45576 | CRITICAL | 9.8 | 1.2% | Oct 16, 2023 | Buffer Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and be... |
| CVE-2023-21415 | HIGH | 8.1 | 0.6% | Oct 16, 2023 | Sandro Poppi, member of the AXIS OS Bug Bounty Program, has found that the VAPIX API overlay_del.cgi is vulnerable to pa... |
| CVE-2023-21414 | MEDIUM | 6.8 | 0.2% | Oct 16, 2023 | NCC Group has found a flaw during the annual internal penetration test ordered by Axis Communications. The protection fo... |
| CVE-2023-21413 | HIGH | 7.2 | 1.2% | Oct 16, 2023 | GoSecure on behalf of Genetec Inc. has found a flaw that allows for a remote code execution during the installation of A... |
| CVE-2023-45575 | CRITICAL | 9.8 | 1.2% | Oct 16, 2023 | Stack Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and bef... |
| CVE-2023-45574 | CRITICAL | 9.8 | 1.6% | Oct 16, 2023 | Buffer Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and be... |
| CVE-2023-45573 | CRITICAL | 9.8 | 1.4% | Oct 16, 2023 | Buffer Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and be... |
| CVE-2023-45572 | CRITICAL | 9.8 | 1.2% | Oct 16, 2023 | Buffer Overflow vulnerability in D-Link device DI-7003GV2.D1 v.23.08.25D1 and before, DI-7100G+V2.D1 v.23.08.23D1 and be... |
| CVE-2023-44809 | CRITICAL | 9.8 | 0.9% | Oct 16, 2023 | D-Link device DIR-820L 1.05B03 is vulnerable to Insecure Permissions. |
| CVE-2023-44808 | CRITICAL | 9.8 | 0.9% | Oct 16, 2023 | D-Link DIR-820L 1.05B03 has a stack overflow vulnerability in the sub_4507CC function. |
| CVE-2023-36955 | CRITICAL | 9.8 | 0.7% | Oct 16, 2023 | TOTOLINK CP300+ <=V5.2cu.7594_B20200910 was discovered to contain a stack overflow via the File parameter in the functio... |
| CVE-2023-36954 | CRITICAL | 9.8 | 1.6% | Oct 16, 2023 | TOTOLINK CP300+ V5.2cu.7594_B20200910 and before is vulnerable to command injection. |
| CVE-2023-36953 | CRITICAL | 9.8 | 1.5% | Oct 16, 2023 | TOTOLINK CP300+ V5.2cu.7594_B20200910 and before is vulnerable to command injection. |
| CVE-2023-36950 | CRITICAL | 9.8 | 0.8% | Oct 16, 2023 | TOTOLINK X5000R V9.1.0u.6118_B20201102 and TOTOLINK A7000R V9.1.0u.6115_B20201022 was discovered to contain a stack over... |
| CVE-2023-36952 | CRITICAL | 9.8 | 0.7% | Oct 16, 2023 | TOTOLINK CP300+ V5.2cu.7594_B20200910 was discovered to contain a stack overflow via the pingIp parameter in the functio... |
| CVE-2023-36947 | CRITICAL | 9.8 | 0.8% | Oct 16, 2023 | TOTOLINK X5000R V9.1.0u.6118_B20201102 and TOTOLINK A7000R V9.1.0u.6115_B20201022 was discovered to contain a stack over... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now