2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2023-43058CRITICAL9.8IBM Robotic Process Automation 23.0.9 is vulnerable to privilege escalation that affects ownership of projects. IBM X-F...
CVE-2023-38703CRITICAL9.8PJSIP is a free and open source multimedia communication library written in C with high level API in C, C++, Java, C#, a...
CVE-2023-4530CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Turna Advertising ...
CVE-2023-26153CRITICAL9.8Versions of the package geokit-rails before 2.5.0 are vulnerable to Command Injection due to unsafe deserialisation of Y...
CVE-2023-43269CRITICAL9.8pigcms up to 7.0 was discovered to contain an arbitrary file upload vulnerability.
CVE-2023-44024CRITICAL9.8SQL injection vulnerability in KnowBand Module One Page Checkout, Social Login & Mailchimp (supercheckout) v.8.0.3 and b...
CVE-2023-43983CRITICAL9.8Presto Changeo attributegrid up to 2.0.3 was discovered to contain a SQL injection vulnerability via the component disab...
CVE-2023-43981CRITICAL9.8Presto Changeo testsitecreator up to 1.1.1 was discovered to contain a deserialization vulnerability via the component d...
CVE-2023-40920CRITICAL9.8Prixan prixanconnect up to v1.62 was discovered to contain a SQL injection vulnerability via the component CartsGuruCata...
CVE-2023-32485CRITICAL9.8 Dell SmartFabric Storage Software version 1.3 and lower contain an improper input validation vulnerability. A remote un...
CVE-2023-5423CRITICAL9.8A vulnerability has been found in SourceCodester Online Pizza Ordering System 1.0 and classified as critical. This vulne...
CVE-2023-2306CRITICAL9.1 Qognify NiceVision versions 3.1 and prior are vulnerable to exposing sensitive information using hard-coded credent...
CVE-2023-35803CRITICAL9.8IQ Engine before 10.6r2 on Extreme Network AP devices has a Buffer Overflow.
CVE-2023-41094CRITICAL9.8TouchLink packets processed after timeout or out of range due to Operation on a Resource after Expiration and Missing Re...
CVE-2023-36619CRITICAL9.8Atos Unify OpenScape Session Border Controller through V10 R3.01.03 allows execution of administrative scripts by unauth...
CVE-2023-5399CRITICAL9.8 A CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists that ...
CVE-2023-5391CRITICAL9.8 A CWE-502: Deserialization of untrusted data vulnerability exists that could allow an attacker to execute arbitrary c...
CVE-2023-38701CRITICAL9.1Hydra is the layer-two scalability solution for Cardano. Users of the Hydra head protocol send the UTxOs they wish to co...
CVE-2023-5402CRITICAL9.8 A CWE-269: Improper Privilege Management vulnerability exists that could cause a remote code execution when the trans...
CVE-2023-20101CRITICAL9.8A vulnerability in Cisco Emergency Responder could allow an unauthenticated, remote attacker to log in to an affected de...
CVE-2023-5374CRITICAL9.8A vulnerability classified as critical was found in SourceCodester Online Computer and Laptop Store 1.0. Affected by thi...
CVE-2023-22515CRITICAL9.8Atlassian has been made aware of an issue reported by a handful of customers where external attackers may have exploited...
CVE-2023-5373CRITICAL9.8A vulnerability classified as critical has been found in SourceCodester Online Computer and Laptop Store 1.0. Affected i...
CVE-2023-4494CRITICAL9.8Stack-based buffer overflow vulnerability in Easy Chat Server 3.1 version. An attacker could send an excessively long us...
CVE-2023-4491CRITICAL9.8Buffer overflow vulnerability in Easy Address Book Web Server 1.6 version. The exploitation of this vulnerability could ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now