2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2023-36263CRITICAL9.8Prestashop opartlimitquantity 1.4.5 and before is vulnerable to SQL Injection. OpartlimitquantityAlertlimitModuleFrontCo...
CVE-2023-47174CRITICAL9.8Thorn SFTP gateway 3.4.x before 3.4.4 uses Pivotal Spring Framework for Java deserialization of untrusted data, which is...
CVE-2023-46356CRITICAL9.8In the module "CSV Feeds PRO" (csvfeeds) before 2.6.1 from Bl Modules for PrestaShop, a guest can perform SQL injection....
CVE-2023-45378CRITICAL9.8In the module "PrestaBlog" (prestablog) version 4.4.7 and before from HDclic for PrestaShop, a guest can perform SQL inj...
CVE-2023-27846CRITICAL9.8SQL injection vulnerability found in PrestaShop themevolty v.4.0.8 and before allow a remote attacker to gain privileges...
CVE-2023-5865CRITICAL9.8Insufficient Session Expiration in GitHub repository thorsten/phpmyfaq prior to 3.2.2.
CVE-2023-46502CRITICAL9.8An issue in openCRX v.5.2.2 allows a remote attacker to read internal files and execute server side request forgery atta...
CVE-2023-44397CRITICAL9.8CloudExplorer Lite is an open source, lightweight cloud management platform. Prior to version 1.4.1, the gateway filter ...
CVE-2023-43792CRITICAL9.8baserCMS is a website development framework. In versions 4.6.0 through 4.7.6, there is a Code Injection vulnerability in...
CVE-2023-47104CRITICAL9.8tinyfiledialogs (aka tiny file dialogs) before 3.15.0 allows shell metacharacters (such as a backquote or a dollar sign)...
CVE-2023-43649CRITICAL9.8baserCMS is a website development framework. Prior to version 4.8.0, there is a cross site request forgery vulnerability...
CVE-2023-5843CRITICAL9.8The Ads by datafeedr.com plugin for WordPress is vulnerable to Remote Code Execution in versions up to, and including, 1...
CVE-2023-5832CRITICAL9.1Improper Input Validation in GitHub repository mintplex-labs/anything-llm prior to 0.1.0.
CVE-2023-45799CRITICAL9.8In MLSoft TCO!stream versions 8.0.22.1115 and below, a vulnerability exists due to insufficient permission validation. T...
CVE-2023-45798CRITICAL9.8In Yettiesoft VestCert versions 2.36 to 2.5.29, a vulnerability exists due to improper validation of third-party modules...
CVE-2023-45797CRITICAL9.8A Buffer overflow vulnerability in DreamSecurity MagicLine4NX versions 1.0.0.1 to 1.0.0.26 allows an attacker to remotel...
CVE-2023-5838CRITICAL9.8Insufficient Session Expiration in GitHub repository linkstackorg/linkstack prior to v4.2.9.
CVE-2023-5836CRITICAL9.8A vulnerability was found in SourceCodester Task Reminder System 1.0. It has been rated as critical. Affected by this is...
CVE-2023-46570CRITICAL9.8An out-of-bounds read in radare2 v.5.8.9 and before exists in the print_insn32 function of libr/arch/p/nds32/nds32-dis.h...
CVE-2023-46569CRITICAL9.8An out-of-bounds read in radare2 v.5.8.9 and before exists in the print_insn32_fpu function of libr/arch/p/nds32/nds32-d...
CVE-2023-5830CRITICAL9.8A vulnerability classified as critical has been found in ColumbiaSoft Document Locator. This affects an unknown part of ...
CVE-2023-46510CRITICAL9.8An issue in ZIONCOM (Hong Kong) Technology Limited A7000R v.4.1cu.4154 allows an attacker to execute arbitrary code via ...
CVE-2023-46509CRITICAL9.8An issue in Contec SolarView Compact v.6.0 and before allows an attacker to execute arbitrary code via the texteditor.ph...
CVE-2023-5828CRITICAL9.8A vulnerability was found in Nanning Ontall Longxing Industrial Development Zone Project Construction and Installation M...
CVE-2023-46853CRITICAL9.8In Memcached before 1.6.22, an off-by-one error exists when processing proxy requests in proxy mode, if \n is used inste...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now