2023 CVE Vulnerabilities
31,401 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-5582 | MEDIUM | 5.4 | 0.5% | Oct 14, 2023 | A vulnerability, which was classified as problematic, has been found in ZZZCMS 2.2.0. This issue affects some unknown pr... |
| CVE-2023-5581 | MEDIUM | 6.1 | 0.5% | Oct 14, 2023 | A vulnerability classified as problematic was found in SourceCodester Medicine Tracker System 1.0. This vulnerability af... |
| CVE-2023-5580 | CRITICAL | 9.8 | 0.6% | Oct 14, 2023 | A vulnerability classified as critical has been found in SourceCodester Library System 1.0. This affects an unknown part... |
| CVE-2023-5579 | MEDIUM | 6.5 | 0.3% | Oct 14, 2023 | A vulnerability was found in yhz66 Sandbox 6.1.0. It has been rated as problematic. Affected by this issue is some unkno... |
| CVE-2023-1259 | MEDIUM | 5.5 | 0.5% | Oct 14, 2023 | The Hotjar plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the hotjar_site_id in versions up to, a... |
| CVE-2023-5578 | MEDIUM | 5.4 | 0.3% | Oct 14, 2023 | A vulnerability was found in Portábilis i-Educar up to 2.7.5. It has been declared as problematic. Affected by this vuln... |
| CVE-2023-45348 | MEDIUM | 4.3 | 1.2% | Oct 14, 2023 | Apache Airflow, versions 2.7.0 and 2.7.1, is affected by a vulnerability that allows an authenticated user to retrieve s... |
| CVE-2023-42792 | MEDIUM | 6.5 | 1.4% | Oct 14, 2023 | Apache Airflow, in versions prior to 2.7.2, contains a security vulnerability that allows an authenticated user with lim... |
| CVE-2023-42780 | MEDIUM | 6.5 | 1.1% | Oct 14, 2023 | Apache Airflow, versions prior to 2.7.2, contains a security vulnerability that allows authenticated users of Airflow to... |
| CVE-2023-42663 | MEDIUM | 6.5 | 1.6% | Oct 14, 2023 | Apache Airflow, versions before 2.7.2, has a vulnerability that allows an authorized user who has access to read specifi... |
| CVE-2023-45856 | CRITICAL | 9.8 | 1.4% | Oct 14, 2023 | qdPM 9.2 allows remote code execution by using the Add Attachments feature of Edit Project to upload a .php file to the ... |
| CVE-2023-45855 | HIGH | 7.5 | 3.3% | Oct 14, 2023 | qdPM 9.2 allows Directory Traversal to list files and directories by navigating to the /uploads URI. |
| CVE-2023-44037 | HIGH | 7.5 | 0.4% | Oct 14, 2023 | An issue in ZPE Systems, Inc Nodegrid OS v.5.8.10 thru v.5.8.13 and v.5.10.3 thru v.5.10.5 allows a remote attacker to o... |
| CVE-2023-26155 | CRITICAL | 9.8 | 2.1% | Oct 14, 2023 | All versions of the package node-qpdf are vulnerable to Command Injection such that the package-exported method encrypt(... |
| CVE-2023-30154 | CRITICAL | 9.8 | 0.6% | Oct 14, 2023 | Multiple improper neutralization of SQL parameters in module AfterMail (aftermailpresta) for PrestaShop, before version ... |
| CVE-2023-30148 | MEDIUM | 5.4 | 0.4% | Oct 14, 2023 | Multiple Stored Cross Site Scripting (XSS) vulnerabilities in Opart opartmultihtmlblock before version 2.0.12 and Opart ... |
| CVE-2023-45853 | CRITICAL | 9.8 | 2.9% | Oct 14, 2023 | MiniZip in zlib through 1.3 has an integer overflow and resultant heap-based buffer overflow in zipOpenNewFileInZip4_64 ... |
| CVE-2023-45852 | CRITICAL | 9.8 | 14.0% | Oct 14, 2023 | In Vitogate 300 2.1.3.0, /cgi-bin/vitogate.cgi allows an unauthenticated attacker to bypass authentication and execute a... |
| CVE-2023-45674 | MEDIUM | 6.5 | 0.5% | Oct 14, 2023 | Farmbot-Web-App is a web control interface for the Farmbot farm automation platform. An SQL injection vulnerability was ... |
| CVE-2023-4257 | CRITICAL | 9.8 | 0.9% | Oct 13, 2023 | Unchecked user input length in /subsys/net/l2/wifi/wifi_shell.c can cause buffer overflows. |
| CVE-2023-4263 | HIGH | 8.8 | 0.5% | Oct 13, 2023 | Potential buffer overflow vulnerability in the Zephyr IEEE 802.15.4 nRF 15.4 driver |
| CVE-2023-36559 | MEDIUM | 4.2 | 0.8% | Oct 13, 2023 | Microsoft Edge (Chromium-based) Spoofing Vulnerability |
| CVE-2023-34977 | MEDIUM | 5.4 | 0.3% | Oct 13, 2023 | A cross-site scripting (XSS) vulnerability has been reported to affect Video Station. If exploited, the vulnerability co... |
| CVE-2023-34976 | HIGH | 8.8 | 0.5% | Oct 13, 2023 | A SQL injection vulnerability has been reported to affect Video Station. If exploited, the vulnerability could allow aut... |
| CVE-2023-34975 | HIGH | 8.8 | 1.1% | Oct 13, 2023 | An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now