2023 CVE Vulnerabilities

31,404 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-4737CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Hedef Tracking Adm...
CVE-2023-4565MEDIUM5.3Broadcast permission control vulnerability in the framework module. Successful exploitation of this vulnerability may ca...
CVE-2023-4506MEDIUM6.5The Active Directory Integration / LDAP Integration plugin for WordPress is vulnerable to LDAP Passback in versions up t...
CVE-2023-4505MEDIUM4.9The Staff / Employee Business Directory for Active Directory plugin for WordPress is vulnerable to LDAP Passback in vers...
CVE-2023-4423MEDIUM4.8The WP Event Manager – Events Calendar, Registrations, Sell Tickets with WooCommerce plugin for WordPress is vulnerable ...
CVE-2023-4264CRITICAL9.6Potential buffer overflow vulnerabilities n the Zephyr Bluetooth subsystem.
CVE-2023-4262Rejected reason: User data field is not attacker controlled
CVE-2023-4260CRITICAL10Potential off-by-one buffer overflow vulnerability in the Zephyr fuse file system.
CVE-2023-4065MEDIUM5.5A flaw was found in Red Hat AMQ Broker Operator, where it displayed a password defined in ActiveMQArtemisAddress CR, sho...
CVE-2023-4003MEDIUM6.8 One Identity Password Manager version 5.9.7.1 - An unauthenticated attacker with physical access to a workstation may u...
CVE-2023-44216MEDIUM5.3PVRIC (PowerVR Image Compression) on Imagination 2018 and later GPU devices offers software-transparent compression that...
CVE-2023-44207MEDIUM5.4Stored cross-site scripting (XSS) vulnerability in protection plan name. The following products are affected: Acronis Cy...
CVE-2023-44206CRITICAL9.1Sensitive information disclosure and manipulation due to improper authorization. The following products are affected: Ac...
CVE-2023-44205MEDIUM5.3Sensitive information disclosure due to improper authorization. The following products are affected: Acronis Cyber Prote...
CVE-2023-44172CRITICAL9.8SeaCMS V12.9 was discovered to contain an arbitrary file write vulnerability via the component admin_weixin.php.
CVE-2023-44171CRITICAL9.8SeaCMS V12.9 was discovered to contain an arbitrary file write vulnerability via the component admin_smtp.php.
CVE-2023-44170CRITICAL9.8SeaCMS V12.9 was discovered to contain an arbitrary file write vulnerability via the component admin_ping.php.
CVE-2023-44169CRITICAL9.8SeaCMS V12.9 was discovered to contain an arbitrary file write vulnerability via the component admin_notify.php.
CVE-2023-44161MEDIUM6.5Sensitive information manipulation due to cross-site request forgery. The following products are affected: Acronis Cyber...
CVE-2023-44160MEDIUM6.5Sensitive information manipulation due to cross-site request forgery. The following products are affected: Acronis Cyber...
CVE-2023-44159HIGH7.5Sensitive information disclosure due to cleartext storage of sensitive information. The following products are affected:...
CVE-2023-44158HIGH7.5Sensitive information disclosure due to insufficient token field masking. The following products are affected: Acronis C...
CVE-2023-44157HIGH7.8Local privilege escalation due to insecure folder permissions. The following products are affected: Acronis Cyber Protec...
CVE-2023-44156HIGH7.5Sensitive information disclosure due to spell-jacking. The following products are affected: Acronis Cyber Protect 15 (Li...
CVE-2023-44155HIGH7.5Sensitive information leak through log files. The following products are affected: Acronis Cyber Protect 15 (Linux, Wind...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now