2023 CVE Vulnerabilities

31,404 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-41049MEDIUM6.1@dcl/single-sign-on-client is an open source npm library which deals with single sign on authentication flows. Improper ...
CVE-2023-41046MEDIUM6.3XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. It is possible ...
CVE-2023-4709LOW3.1A vulnerability classified as problematic has been found in TOTVS RM 12.1. Affected is an unknown function of the file L...
CVE-2023-41633MEDIUM5.5Catdoc v0.95 was discovered to contain a NULL pointer dereference via the component xls2csv at src/fileutil.c.
CVE-2023-41051MEDIUM4.7In a typical Virtual Machine Monitor (VMM) there are several components, such as boot loader, virtual device drivers, vi...
CVE-2023-1523CRITICAL10Using the TIOCLINUX ioctl request, a malicious snap could inject contents into the input of the controlling terminal whi...
CVE-2023-4708CRITICAL9.8A vulnerability was found in Infosoftbd Clcknshop 1.0.0. It has been rated as critical. This issue affects some unknown ...
CVE-2023-4707MEDIUM6.1A vulnerability was found in Infosoftbd Clcknshop 1.0.0. It has been declared as problematic. This vulnerability affects...
CVE-2023-39714MEDIUM6.1Multiple cross-site scripting (XSS) vulnerabilities in Free and Open Source Inventory Management System v1.0 allows atta...
CVE-2023-41628HIGH7.5An issue in O-RAN Software Community E2 G-Release allows attackers to cause a Denial of Service (DoS) by incorrectly ini...
CVE-2023-41627HIGH7.5O-RAN Software Community ric-plt-lib-rmr v4.9.0 does not validate the source of the routing tables it receives, potentia...
CVE-2023-4722MEDIUM5.5Integer Overflow or Wraparound in GitHub repository gpac/gpac prior to 2.3-DEV.
CVE-2023-4721MEDIUM5.5Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3-DEV.
CVE-2023-4720MEDIUM5.5Floating Point Comparison with Incorrect Operator in GitHub repository gpac/gpac prior to 2.3-DEV.
CVE-2023-40980CRITICAL9.8File Upload vulnerability in DWSurvey DWSurvey-OSS v.3.2.0 and before allows a remote attacker to execute arbitrary code...
CVE-2023-40968HIGH7.5Buffer Overflow vulnerability in hzeller timg v.1.5.1 and before allows a remote attacker to cause a denial of service v...
CVE-2023-40771HIGH7.5SQL injection vulnerability in DataEase v.1.18.9 allows a remote attacker to obtain sensitive information via a crafted ...
CVE-2023-39631CRITICAL9.8An issue in LanChain-ai Langchain v.0.0.245 allows a remote attacker to execute arbitrary code via the evaluate function...
CVE-2023-39582MEDIUM4.9SQL Injection vulnerability in Chamilo LMS v.1.11 thru v.1.11.20 allows a remote privileged attacker to obtain sensitive...
CVE-2023-36328CRITICAL9.8Integer Overflow vulnerability in mp_grow in libtom libtommath before commit beba892bc0d4e4ded4d667ab1d2a94f4d75109a9, a...
CVE-2023-36327CRITICAL9.8Integer Overflow vulnerability in RELIC before commit 421f2e91cf2ba42473d4d54daf24e295679e290e, allows attackers to exec...
CVE-2023-36326CRITICAL9.8Integer Overflow vulnerability in RELIC before commit 34580d840469361ba9b5f001361cad659687b9ab, allows attackers to exec...
CVE-2023-36187CRITICAL9.8Buffer Overflow vulnerability in NETGEAR R6400v2 before version 1.0.4.118, allows remote unauthenticated attackers to ex...
CVE-2023-36100CRITICAL9.8An issue was discovered in IceCMS version 2.0.1, allows attackers to escalate privileges and gain sensitive information ...
CVE-2023-36088HIGH7.5Server Side Request Forgery (SSRF) vulnerability in NebulaGraph Studio version 3.7.0, allows remote attackers to gain se...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now