2023 CVE Vulnerabilities

31,404 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-45241MEDIUM5.5Sensitive information leak through log files. The following products are affected: Acronis Cyber Protect Cloud Agent (Li...
CVE-2023-45240MEDIUM5.5Sensitive information disclosure due to missing authorization. The following products are affected: Acronis Agent (Linux...
CVE-2023-44214MEDIUM5.5Sensitive information disclosure due to missing authorization. The following products are affected: Acronis Agent (Linux...
CVE-2023-44213MEDIUM5.5Sensitive information disclosure due to excessive collection of system information. The following products are affected:...
CVE-2023-44212HIGH7.1Sensitive information disclosure and manipulation due to missing authorization. The following products are affected: Acr...
CVE-2023-44211HIGH7.1Sensitive information disclosure and manipulation due to missing authorization. The following products are affected: Acr...
CVE-2023-43343MEDIUM5.4Cross-site scripting (XSS) vulnerability in opensolution Quick CMS v.6.7 allows a local attacker to execute arbitrary co...
CVE-2023-43269CRITICAL9.8pigcms up to 7.0 was discovered to contain an arbitrary file upload vulnerability.
CVE-2023-5441MEDIUM5.5NULL Pointer Dereference in GitHub repository vim/vim prior to 20d161ace307e28690229b68584f2d84556f8960.
CVE-2023-39323HIGH8.1Line directives ("//line") can be used to bypass the restrictions on "//go:cgo_" directives, allowing blocked linker and...
CVE-2023-44024CRITICAL9.8SQL injection vulnerability in KnowBand Module One Page Checkout, Social Login & Mailchimp (supercheckout) v.8.0.3 and b...
CVE-2023-43983CRITICAL9.8Presto Changeo attributegrid up to 2.0.3 was discovered to contain a SQL injection vulnerability via the component disab...
CVE-2023-43981CRITICAL9.8Presto Changeo testsitecreator up to 1.1.1 was discovered to contain a deserialization vulnerability via the component d...
CVE-2023-43284HIGH8.8D-Link Wireless MU-MIMO Gigabit AC1200 Router DIR-846 100A53DBR-Retail devices allow an authenticated remote attacker to...
CVE-2023-40920CRITICAL9.8Prixan prixanconnect up to v1.62 was discovered to contain a SQL injection vulnerability via the component CartsGuruCata...
CVE-2023-43260MEDIUM6.1Milesight UR5X, UR32L, UR32, UR35, UR41 before v35.3.0.7 was discovered to contain a cross-site scripting (XSS) vulnerab...
CVE-2023-42755MEDIUM5.5A flaw was found in the IPv4 Resource Reservation Protocol (RSVP) classifier in the Linux kernel. The xprt pointer may g...
CVE-2023-42754MEDIUM5.5A NULL pointer dereference flaw was found in the Linux kernel ipv4 stack. The socket buffer (skb) was assumed to be asso...
CVE-2023-41175MEDIUM6.5A vulnerability was found in libtiff due to multiple potential integer overflows in raw2tiff.c. This flaw allows remote ...
CVE-2023-40745MEDIUM6.5LibTIFF is vulnerable to an integer overflow. This flaw allows remote attackers to cause a denial of service (applicatio...
CVE-2023-32485CRITICAL9.8 Dell SmartFabric Storage Software version 1.3 and lower contain an improper input validation vulnerability. A remote un...
CVE-2023-5423CRITICAL9.8A vulnerability has been found in SourceCodester Online Pizza Ordering System 1.0 and classified as critical. This vulne...
CVE-2023-5346HIGH8.8Type confusion in V8 in Google Chrome prior to 117.0.5938.149 allowed a remote attacker to potentially exploit heap corr...
CVE-2023-4401HIGH8.8 Dell SmartFabric Storage Software v1.4 (and earlier) contains an OS Command Injection Vulnerability in the CLI use of t...
CVE-2023-44387MEDIUM6.5Gradle is a build tool with a focus on build automation and support for multi-language development. When copying or arch...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now