2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-36263 | CRITICAL | 9.8 | 0.5% | Oct 31, 2023 | Prestashop opartlimitquantity 1.4.5 and before is vulnerable to SQL Injection. OpartlimitquantityAlertlimitModuleFrontCo... |
| CVE-2023-47174 | CRITICAL | 9.8 | 1.0% | Oct 31, 2023 | Thorn SFTP gateway 3.4.x before 3.4.4 uses Pivotal Spring Framework for Java deserialization of untrusted data, which is... |
| CVE-2023-46356 | CRITICAL | 9.8 | 0.6% | Oct 31, 2023 | In the module "CSV Feeds PRO" (csvfeeds) before 2.6.1 from Bl Modules for PrestaShop, a guest can perform SQL injection.... |
| CVE-2023-45378 | CRITICAL | 9.8 | 0.5% | Oct 31, 2023 | In the module "PrestaBlog" (prestablog) version 4.4.7 and before from HDclic for PrestaShop, a guest can perform SQL inj... |
| CVE-2023-27846 | CRITICAL | 9.8 | 0.6% | Oct 31, 2023 | SQL injection vulnerability found in PrestaShop themevolty v.4.0.8 and before allow a remote attacker to gain privileges... |
| CVE-2023-5865 | CRITICAL | 9.8 | 0.6% | Oct 31, 2023 | Insufficient Session Expiration in GitHub repository thorsten/phpmyfaq prior to 3.2.2. |
| CVE-2023-46502 | CRITICAL | 9.8 | 0.7% | Oct 30, 2023 | An issue in openCRX v.5.2.2 allows a remote attacker to read internal files and execute server side request forgery atta... |
| CVE-2023-44397 | CRITICAL | 9.8 | 0.6% | Oct 30, 2023 | CloudExplorer Lite is an open source, lightweight cloud management platform. Prior to version 1.4.1, the gateway filter ... |
| CVE-2023-43792 | CRITICAL | 9.8 | 0.6% | Oct 30, 2023 | baserCMS is a website development framework. In versions 4.6.0 through 4.7.6, there is a Code Injection vulnerability in... |
| CVE-2023-47104 | CRITICAL | 9.8 | 0.7% | Oct 30, 2023 | tinyfiledialogs (aka tiny file dialogs) before 3.15.0 allows shell metacharacters (such as a backquote or a dollar sign)... |
| CVE-2023-43649 | CRITICAL | 9.8 | 0.3% | Oct 30, 2023 | baserCMS is a website development framework. Prior to version 4.8.0, there is a cross site request forgery vulnerability... |
| CVE-2023-5843 | CRITICAL | 9.8 | 2.2% | Oct 30, 2023 | The Ads by datafeedr.com plugin for WordPress is vulnerable to Remote Code Execution in versions up to, and including, 1... |
| CVE-2023-5832 | CRITICAL | 9.1 | 0.7% | Oct 30, 2023 | Improper Input Validation in GitHub repository mintplex-labs/anything-llm prior to 0.1.0. |
| CVE-2023-45799 | CRITICAL | 9.8 | 0.3% | Oct 30, 2023 | In MLSoft TCO!stream versions 8.0.22.1115 and below, a vulnerability exists due to insufficient permission validation. T... |
| CVE-2023-45798 | CRITICAL | 9.8 | 0.6% | Oct 30, 2023 | In Yettiesoft VestCert versions 2.36 to 2.5.29, a vulnerability exists due to improper validation of third-party modules... |
| CVE-2023-45797 | CRITICAL | 9.8 | 0.8% | Oct 30, 2023 | A Buffer overflow vulnerability in DreamSecurity MagicLine4NX versions 1.0.0.1 to 1.0.0.26 allows an attacker to remotel... |
| CVE-2023-5838 | CRITICAL | 9.8 | 0.5% | Oct 29, 2023 | Insufficient Session Expiration in GitHub repository linkstackorg/linkstack prior to v4.2.9. |
| CVE-2023-5836 | CRITICAL | 9.8 | 0.4% | Oct 28, 2023 | A vulnerability was found in SourceCodester Task Reminder System 1.0. It has been rated as critical. Affected by this is... |
| CVE-2023-46570 | CRITICAL | 9.8 | 0.9% | Oct 28, 2023 | An out-of-bounds read in radare2 v.5.8.9 and before exists in the print_insn32 function of libr/arch/p/nds32/nds32-dis.h... |
| CVE-2023-46569 | CRITICAL | 9.8 | 0.9% | Oct 28, 2023 | An out-of-bounds read in radare2 v.5.8.9 and before exists in the print_insn32_fpu function of libr/arch/p/nds32/nds32-d... |
| CVE-2023-5830 | CRITICAL | 9.8 | 61.0% | Oct 27, 2023 | A vulnerability classified as critical has been found in ColumbiaSoft Document Locator. This affects an unknown part of ... |
| CVE-2023-46510 | CRITICAL | 9.8 | 0.8% | Oct 27, 2023 | An issue in ZIONCOM (Hong Kong) Technology Limited A7000R v.4.1cu.4154 allows an attacker to execute arbitrary code via ... |
| CVE-2023-46509 | CRITICAL | 9.8 | 0.8% | Oct 27, 2023 | An issue in Contec SolarView Compact v.6.0 and before allows an attacker to execute arbitrary code via the texteditor.ph... |
| CVE-2023-5828 | CRITICAL | 9.8 | 0.7% | Oct 27, 2023 | A vulnerability was found in Nanning Ontall Longxing Industrial Development Zone Project Construction and Installation M... |
| CVE-2023-46853 | CRITICAL | 9.8 | 0.8% | Oct 27, 2023 | In Memcached before 1.6.22, an off-by-one error exists when processing proxy requests in proxy mode, if \n is used inste... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now