2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-53970 | HIGH | 8.7 | 0.5% | Dec 22, 2025 | Screen SFT DAB 600/C Firmware 1.9.3 contains a weak session management vulnerability that allows attackers to bypass aut... |
| CVE-2023-53965 | HIGH | 7.8 | 0.2% | Dec 22, 2025 | SOUND4 Server Service 4.1.102 contains an unquoted service path vulnerability that allows local non-privileged users to ... |
| CVE-2023-53962 | HIGH | 8.8 | 1.0% | Dec 22, 2025 | SOUND4 IMPACT/FIRST/PULSE/Eco v2.x contains an unauthenticated directory traversal vulnerability that allows remote atta... |
| CVE-2023-25446 | HIGH | 7.7 | 0.3% | Dec 21, 2025 | Missing Authorization vulnerability in HappyFiles HappyFiles Pro happyfiles-pro allows Exploiting Incorrectly Configured... |
| CVE-2023-53958 | HIGH | 8.6 | 0.3% | Dec 19, 2025 | LDAP Tool Box Self Service Password 1.5.2 contains a password reset vulnerability that allows attackers to manipulate HT... |
| CVE-2023-53957 | HIGH | 8.8 | 0.5% | Dec 19, 2025 | Kimai 1.30.10 contains a SameSite cookie vulnerability that allows attackers to steal user session cookies through malic... |
| CVE-2023-53956 | HIGH | 8.8 | 0.7% | Dec 19, 2025 | Flatnux 2021-03.25 contains an authenticated file upload vulnerability that allows administrative users to upload arbitr... |
| CVE-2023-53954 | HIGH | 8.5 | 0.1% | Dec 19, 2025 | ActFax 10.10 contains an unquoted service path vulnerability that allows local attackers to potentially escalate privile... |
| CVE-2023-53952 | HIGH | 8.8 | 1.0% | Dec 19, 2025 | Dotclear 2.25.3 contains a remote code execution vulnerability that allows authenticated attackers to upload malicious P... |
| CVE-2023-53949 | HIGH | 8.5 | 0.1% | Dec 19, 2025 | AspEmail 5.6.0.2 contains a binary permission vulnerability that allows local users to escalate privileges through the P... |
| CVE-2023-53947 | HIGH | 8.5 | 0.1% | Dec 19, 2025 | OCS Inventory NG 2.3.0.0 contains an unquoted service path vulnerability that allows local attackers to escalate privile... |
| CVE-2023-53946 | HIGH | 8.5 | 0.1% | Dec 19, 2025 | Arcsoft PhotoStudio 6.0.0.172 contains an unquoted service path vulnerability in the ArcSoft Exchange Service that allow... |
| CVE-2023-53945 | HIGH | 8.8 | 1.0% | Dec 19, 2025 | BrainyCP 1.0 contains an authenticated remote code execution vulnerability that allows logged-in users to inject arbitra... |
| CVE-2023-53944 | HIGH | 7.1 | 0.8% | Dec 18, 2025 | EasyPHP Webserver 14.1 contains a path traversal vulnerability that allows remote users with low privileges to access fi... |
| CVE-2023-53940 | HIGH | 8.4 | 0.2% | Dec 18, 2025 | Codigo Markdown Editor 1.0.1 contains a code execution vulnerability that allows attackers to run arbitrary system comma... |
| CVE-2023-53937 | HIGH | 8.5 | 0.2% | Dec 18, 2025 | Hubstaff 1.6.14 contains a DLL search order hijacking vulnerability that allows attackers to replace a missing system32 ... |
| CVE-2023-53934 | HIGH | 8.7 | 0.4% | Dec 18, 2025 | A denial of service vulnerability in Kentico Xperience allows attackers to launch DoS attacks via specially crafted requ... |
| CVE-2023-53933 | HIGH | 8.8 | 0.9% | Dec 17, 2025 | Serendipity 2.4.0 contains a remote code execution vulnerability that allows authenticated attackers to upload malicious... |
| CVE-2023-53930 | HIGH | 7.5 | 0.3% | Dec 17, 2025 | ProjectSend r1605 contains an insecure direct object reference vulnerability that allows unauthenticated attackers to do... |
| CVE-2023-53929 | HIGH | 8 | 0.4% | Dec 17, 2025 | phpMyFAQ 3.1.12 contains a CSV injection vulnerability that allows authenticated users to inject malicious formulas into... |
| CVE-2023-53924 | HIGH | 8.8 | 0.8% | Dec 17, 2025 | UliCMS 2023.1-sniffing-vicuna contains a remote code execution vulnerability that allows authenticated attackers to uplo... |
| CVE-2023-53917 | HIGH | 8.7 | 0.3% | Dec 17, 2025 | Affiliate Me version 5.0.1 contains a SQL injection vulnerability in the admin.php endpoint that allows authenticated ad... |
| CVE-2023-53913 | HIGH | 8.8 | 0.6% | Dec 17, 2025 | Rukovoditel 3.3.1 contains a CSV injection vulnerability that allows authenticated users to inject malicious formulas in... |
| CVE-2023-53912 | HIGH | 8.5 | 0.1% | Dec 17, 2025 | USB Flash Drives Control 4.1.0.0 contains an unquoted service path vulnerability in its service configuration that allow... |
| CVE-2023-53908 | HIGH | 8.8 | 0.3% | Dec 17, 2025 | HiSecOS 04.0.01 contains a privilege escalation vulnerability that allows authenticated users to modify their access rol... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now