2023 CVE Vulnerabilities
31,404 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-41049 | MEDIUM | 6.1 | 0.4% | Sep 1, 2023 | @dcl/single-sign-on-client is an open source npm library which deals with single sign on authentication flows. Improper ... |
| CVE-2023-41046 | MEDIUM | 6.3 | 0.4% | Sep 1, 2023 | XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. It is possible ... |
| CVE-2023-4709 | LOW | 3.1 | 0.3% | Sep 1, 2023 | A vulnerability classified as problematic has been found in TOTVS RM 12.1. Affected is an unknown function of the file L... |
| CVE-2023-41633 | MEDIUM | 5.5 | 0.2% | Sep 1, 2023 | Catdoc v0.95 was discovered to contain a NULL pointer dereference via the component xls2csv at src/fileutil.c. |
| CVE-2023-41051 | MEDIUM | 4.7 | 0.2% | Sep 1, 2023 | In a typical Virtual Machine Monitor (VMM) there are several components, such as boot loader, virtual device drivers, vi... |
| CVE-2023-1523 | CRITICAL | 10 | 1.4% | Sep 1, 2023 | Using the TIOCLINUX ioctl request, a malicious snap could inject contents into the input of the controlling terminal whi... |
| CVE-2023-4708 | CRITICAL | 9.8 | 45.6% | Sep 1, 2023 | A vulnerability was found in Infosoftbd Clcknshop 1.0.0. It has been rated as critical. This issue affects some unknown ... |
| CVE-2023-4707 | MEDIUM | 6.1 | 0.5% | Sep 1, 2023 | A vulnerability was found in Infosoftbd Clcknshop 1.0.0. It has been declared as problematic. This vulnerability affects... |
| CVE-2023-39714 | MEDIUM | 6.1 | 0.5% | Sep 1, 2023 | Multiple cross-site scripting (XSS) vulnerabilities in Free and Open Source Inventory Management System v1.0 allows atta... |
| CVE-2023-41628 | HIGH | 7.5 | 1.7% | Sep 1, 2023 | An issue in O-RAN Software Community E2 G-Release allows attackers to cause a Denial of Service (DoS) by incorrectly ini... |
| CVE-2023-41627 | HIGH | 7.5 | 1.2% | Sep 1, 2023 | O-RAN Software Community ric-plt-lib-rmr v4.9.0 does not validate the source of the routing tables it receives, potentia... |
| CVE-2023-4722 | MEDIUM | 5.5 | 0.3% | Sep 1, 2023 | Integer Overflow or Wraparound in GitHub repository gpac/gpac prior to 2.3-DEV. |
| CVE-2023-4721 | MEDIUM | 5.5 | 0.3% | Sep 1, 2023 | Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3-DEV. |
| CVE-2023-4720 | MEDIUM | 5.5 | 0.3% | Sep 1, 2023 | Floating Point Comparison with Incorrect Operator in GitHub repository gpac/gpac prior to 2.3-DEV. |
| CVE-2023-40980 | CRITICAL | 9.8 | 1.1% | Sep 1, 2023 | File Upload vulnerability in DWSurvey DWSurvey-OSS v.3.2.0 and before allows a remote attacker to execute arbitrary code... |
| CVE-2023-40968 | HIGH | 7.5 | 0.8% | Sep 1, 2023 | Buffer Overflow vulnerability in hzeller timg v.1.5.1 and before allows a remote attacker to cause a denial of service v... |
| CVE-2023-40771 | HIGH | 7.5 | 0.7% | Sep 1, 2023 | SQL injection vulnerability in DataEase v.1.18.9 allows a remote attacker to obtain sensitive information via a crafted ... |
| CVE-2023-39631 | CRITICAL | 9.8 | 1.3% | Sep 1, 2023 | An issue in LanChain-ai Langchain v.0.0.245 allows a remote attacker to execute arbitrary code via the evaluate function... |
| CVE-2023-39582 | MEDIUM | 4.9 | 0.5% | Sep 1, 2023 | SQL Injection vulnerability in Chamilo LMS v.1.11 thru v.1.11.20 allows a remote privileged attacker to obtain sensitive... |
| CVE-2023-36328 | CRITICAL | 9.8 | 1.3% | Sep 1, 2023 | Integer Overflow vulnerability in mp_grow in libtom libtommath before commit beba892bc0d4e4ded4d667ab1d2a94f4d75109a9, a... |
| CVE-2023-36327 | CRITICAL | 9.8 | 0.8% | Sep 1, 2023 | Integer Overflow vulnerability in RELIC before commit 421f2e91cf2ba42473d4d54daf24e295679e290e, allows attackers to exec... |
| CVE-2023-36326 | CRITICAL | 9.8 | 0.8% | Sep 1, 2023 | Integer Overflow vulnerability in RELIC before commit 34580d840469361ba9b5f001361cad659687b9ab, allows attackers to exec... |
| CVE-2023-36187 | CRITICAL | 9.8 | 0.9% | Sep 1, 2023 | Buffer Overflow vulnerability in NETGEAR R6400v2 before version 1.0.4.118, allows remote unauthenticated attackers to ex... |
| CVE-2023-36100 | CRITICAL | 9.8 | 0.6% | Sep 1, 2023 | An issue was discovered in IceCMS version 2.0.1, allows attackers to escalate privileges and gain sensitive information ... |
| CVE-2023-36088 | HIGH | 7.5 | 0.7% | Sep 1, 2023 | Server Side Request Forgery (SSRF) vulnerability in NebulaGraph Studio version 3.7.0, allows remote attackers to gain se... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now