2023 CVE Vulnerabilities
31,404 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-36479 | LOW | 3.1 | 1.0% | Sep 15, 2023 | Eclipse Jetty Canonical Repository is the canonical repository for the Jetty project. Users of the CgiServlet with a ver... |
| CVE-2023-36472 | MEDIUM | 5.7 | 0.6% | Sep 15, 2023 | Strapi is an open-source headless content management system. Prior to version 4.11.7, an unauthorized actor can get acce... |
| CVE-2023-42398 | CRITICAL | 9.8 | 1.3% | Sep 15, 2023 | An issue in zzCMS v.2023 allows a remote attacker to execute arbitrary code and obtain sensitive information via the ued... |
| CVE-2023-28614 | CRITICAL | 9.8 | 2.3% | Sep 15, 2023 | Freewill iFIS (aka SMART Trade) 20.01.01.04 allows OS Command Injection via shell metacharacters to a report page. |
| CVE-2023-4991 | HIGH | 7.8 | 0.2% | Sep 15, 2023 | A vulnerability was found in NextBX QWAlerter 4.50. It has been rated as critical. Affected by this issue is some unknow... |
| CVE-2023-4988 | CRITICAL | 9.8 | 0.5% | Sep 15, 2023 | A vulnerability, which was classified as problematic, was found in Bettershop LaikeTui. This affects an unknown part of ... |
| CVE-2023-4987 | HIGH | 8 | 0.7% | Sep 15, 2023 | A vulnerability, which was classified as critical, has been found in infinitietech taskhub 2.8.7. Affected by this issue... |
| CVE-2023-4986 | LOW | 2.5 | 0.2% | Sep 15, 2023 | A vulnerability classified as problematic was found in Supcon InPlant SCADA up to 20230901. Affected by this vulnerabili... |
| CVE-2023-4985 | HIGH | 7.8 | 0.4% | Sep 15, 2023 | A vulnerability classified as critical has been found in Supcon InPlant SCADA up to 20230901. Affected is an unknown fun... |
| CVE-2023-4984 | MEDIUM | 6.5 | 0.5% | Sep 15, 2023 | A vulnerability was found in didi KnowSearch 0.3.2/0.3.1.2. It has been rated as problematic. This issue affects some un... |
| CVE-2023-4983 | MEDIUM | 6.1 | 0.4% | Sep 15, 2023 | A vulnerability was found in app1pro Shopicial up to 20230830. It has been declared as problematic. This vulnerability a... |
| CVE-2023-42270 | HIGH | 8.8 | 0.4% | Sep 15, 2023 | Grocy <= 4.0.2 is vulnerable to Cross Site Request Forgery (CSRF). |
| CVE-2023-4959 | MEDIUM | 6.5 | 0.3% | Sep 15, 2023 | A flaw was found in Quay. Cross-site request forgery (CSRF) attacks force a user to perform unwanted actions in an appli... |
| CVE-2023-4835 | CRITICAL | 9.8 | 0.5% | Sep 15, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in CF Software Oil Ma... |
| CVE-2023-4833 | CRITICAL | 9.8 | 0.6% | Sep 15, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Besttem Network Ma... |
| CVE-2023-4665 | HIGH | 8.8 | 1.1% | Sep 15, 2023 | Incorrect Execution-Assigned Permissions vulnerability in Saphira Saphira Connect allows Privilege Escalation. This iss... |
| CVE-2023-4664 | HIGH | 8.8 | 0.8% | Sep 15, 2023 | Incorrect Default Permissions vulnerability in Saphira Saphira Connect allows Privilege Escalation. This issue affects ... |
| CVE-2023-4663 | MEDIUM | 6.1 | 0.8% | Sep 15, 2023 | Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in Saphira Saphira Connect a... |
| CVE-2023-4662 | CRITICAL | 9.8 | 1.2% | Sep 15, 2023 | Execution with Unnecessary Privileges vulnerability in Saphira Saphira Connect allows Remote Code Inclusion. This issue... |
| CVE-2023-4661 | CRITICAL | 9.8 | 0.8% | Sep 15, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Saphira Saphira Co... |
| CVE-2023-4831 | CRITICAL | 9.8 | 0.5% | Sep 15, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Ncode Ncep allows ... |
| CVE-2023-4670 | CRITICAL | 9.8 | 0.5% | Sep 15, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Innosa Probbys all... |
| CVE-2023-4231 | CRITICAL | 9.8 | 0.6% | Sep 15, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Cevik Informatics ... |
| CVE-2023-32461 | MEDIUM | 6.7 | 0.2% | Sep 15, 2023 | Dell PowerEdge BIOS and Dell Precision BIOS contain a buffer overflow vulnerability. A local malicious user with high ... |
| CVE-2023-4830 | CRITICAL | 9.8 | 0.5% | Sep 15, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Tura Signalix allo... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now