2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-43058 | CRITICAL | 9.8 | 0.6% | Oct 6, 2023 | IBM Robotic Process Automation 23.0.9 is vulnerable to privilege escalation that affects ownership of projects. IBM X-F... |
| CVE-2023-38703 | CRITICAL | 9.8 | 1.3% | Oct 6, 2023 | PJSIP is a free and open source multimedia communication library written in C with high level API in C, C++, Java, C#, a... |
| CVE-2023-4530 | CRITICAL | 9.8 | 0.5% | Oct 6, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Turna Advertising ... |
| CVE-2023-26153 | CRITICAL | 9.8 | 3.2% | Oct 6, 2023 | Versions of the package geokit-rails before 2.5.0 are vulnerable to Command Injection due to unsafe deserialisation of Y... |
| CVE-2023-43269 | CRITICAL | 9.8 | 0.6% | Oct 5, 2023 | pigcms up to 7.0 was discovered to contain an arbitrary file upload vulnerability. |
| CVE-2023-44024 | CRITICAL | 9.8 | 0.8% | Oct 5, 2023 | SQL injection vulnerability in KnowBand Module One Page Checkout, Social Login & Mailchimp (supercheckout) v.8.0.3 and b... |
| CVE-2023-43983 | CRITICAL | 9.8 | 0.5% | Oct 5, 2023 | Presto Changeo attributegrid up to 2.0.3 was discovered to contain a SQL injection vulnerability via the component disab... |
| CVE-2023-43981 | CRITICAL | 9.8 | 0.6% | Oct 5, 2023 | Presto Changeo testsitecreator up to 1.1.1 was discovered to contain a deserialization vulnerability via the component d... |
| CVE-2023-40920 | CRITICAL | 9.8 | 0.6% | Oct 5, 2023 | Prixan prixanconnect up to v1.62 was discovered to contain a SQL injection vulnerability via the component CartsGuruCata... |
| CVE-2023-32485 | CRITICAL | 9.8 | 0.7% | Oct 5, 2023 | Dell SmartFabric Storage Software version 1.3 and lower contain an improper input validation vulnerability. A remote un... |
| CVE-2023-5423 | CRITICAL | 9.8 | 0.4% | Oct 5, 2023 | A vulnerability has been found in SourceCodester Online Pizza Ordering System 1.0 and classified as critical. This vulne... |
| CVE-2023-2306 | CRITICAL | 9.1 | 0.5% | Oct 5, 2023 | Qognify NiceVision versions 3.1 and prior are vulnerable to exposing sensitive information using hard-coded credent... |
| CVE-2023-35803 | CRITICAL | 9.8 | 1.6% | Oct 4, 2023 | IQ Engine before 10.6r2 on Extreme Network AP devices has a Buffer Overflow. |
| CVE-2023-41094 | CRITICAL | 9.8 | 0.6% | Oct 4, 2023 | TouchLink packets processed after timeout or out of range due to Operation on a Resource after Expiration and Missing Re... |
| CVE-2023-36619 | CRITICAL | 9.8 | 3.6% | Oct 4, 2023 | Atos Unify OpenScape Session Border Controller through V10 R3.01.03 allows execution of administrative scripts by unauth... |
| CVE-2023-5399 | CRITICAL | 9.8 | 38.5% | Oct 4, 2023 | A CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists that ... |
| CVE-2023-5391 | CRITICAL | 9.8 | 0.8% | Oct 4, 2023 | A CWE-502: Deserialization of untrusted data vulnerability exists that could allow an attacker to execute arbitrary c... |
| CVE-2023-38701 | CRITICAL | 9.1 | 0.9% | Oct 4, 2023 | Hydra is the layer-two scalability solution for Cardano. Users of the Hydra head protocol send the UTxOs they wish to co... |
| CVE-2023-5402 | CRITICAL | 9.8 | 0.7% | Oct 4, 2023 | A CWE-269: Improper Privilege Management vulnerability exists that could cause a remote code execution when the trans... |
| CVE-2023-20101 | CRITICAL | 9.8 | 2.4% | Oct 4, 2023 | A vulnerability in Cisco Emergency Responder could allow an unauthenticated, remote attacker to log in to an affected de... |
| CVE-2023-5374 | CRITICAL | 9.8 | 0.7% | Oct 4, 2023 | A vulnerability classified as critical was found in SourceCodester Online Computer and Laptop Store 1.0. Affected by thi... |
| CVE-2023-22515 | CRITICAL | 9.8 | 99.2% | Oct 4, 2023 | Atlassian has been made aware of an issue reported by a handful of customers where external attackers may have exploited... |
| CVE-2023-5373 | CRITICAL | 9.8 | 0.8% | Oct 4, 2023 | A vulnerability classified as critical has been found in SourceCodester Online Computer and Laptop Store 1.0. Affected i... |
| CVE-2023-4494 | CRITICAL | 9.8 | 0.9% | Oct 4, 2023 | Stack-based buffer overflow vulnerability in Easy Chat Server 3.1 version. An attacker could send an excessively long us... |
| CVE-2023-4491 | CRITICAL | 9.8 | 0.9% | Oct 4, 2023 | Buffer overflow vulnerability in Easy Address Book Web Server 1.6 version. The exploitation of this vulnerability could ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now