2023 CVE Vulnerabilities

31,404 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-38211HIGH7.8Adobe Dimension version 3.4.9 is affected by a Use After Free vulnerability that could result in arbitrary code executio...
CVE-2023-24471MEDIUM6.5An access control vulnerability was found, due to the restrictions that are applied on actual assertions not being enfor...
CVE-2023-23574HIGH8.8A blind SQL Injection vulnerability in Nozomi Networks Guardian and CMC, due to improper input validation in the alerts_...
CVE-2023-22843MEDIUM4.8An authenticated attacker with administrative access to the web management interface can inject malicious JavaScript cod...
CVE-2023-22378MEDIUM6.5A blind SQL Injection vulnerability in Nozomi Networks Guardian and CMC, due to improper input validation in the sorting...
CVE-2023-38209MEDIUM6.5Adobe Commerce versions 2.4.6-p1 (and earlier), 2.4.5-p3 (and earlier) and 2.4.4-p4 (and earlier) are affected by an Inc...
CVE-2023-38208HIGH7.2Adobe Commerce versions 2.4.6-p1 (and earlier), 2.4.5-p3 (and earlier) and 2.4.4-p4 (and earlier) are affected by an Imp...
CVE-2023-38207HIGH7.5Adobe Commerce versions 2.4.6-p1 (and earlier), 2.4.5-p3 (and earlier) and 2.4.4-p4 (and earlier) are affected by a XML ...
CVE-2023-24477HIGH7In certain conditions, depending on timing and the usage of the Chrome web browser, Guardian/CMC versions before 22.6.2 ...
CVE-2023-37864HIGH7.2In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote attacker with SNMPv2 write privileges...
CVE-2023-37863HIGH7.2In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote attacker with SNMPv2 write privileges...
CVE-2023-37862HIGH8.2In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 an unauthenticated remote attacker can access ...
CVE-2023-37861HIGH8.8In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 an authenticated remote attacker can execute c...
CVE-2023-37860HIGH7.5In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote unauthenticated attacker can obtain t...
CVE-2023-37859HIGH7.2In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 the SNMP daemon is running with root privilege...
CVE-2023-37858MEDIUM4.9In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 an authenticated, remote attacker with admin p...
CVE-2023-37857HIGH7.2In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 an authenticated, remote attacker with admin p...
CVE-2023-37856MEDIUM4.3In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote attacker with low privileges is able ...
CVE-2023-37855MEDIUM4.3In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote attacker with low privileges is able ...
CVE-2023-33934CRITICAL9.1Improper Input Validation vulnerability in Apache Software Foundation Apache Traffic Server.This issue affects Apache Tr...
CVE-2023-26310CRITICAL9.8There is a command injection problem in the old version of the mobile phone backup app.
CVE-2023-2905HIGH8.8Due to a failure in validating the length of a provided MQTT_CMD_PUBLISH parsed message with a variable length header, C...
CVE-2023-4243HIGH8.8The FULL - Customer plugin for WordPress is vulnerable to Arbitrary File Upload via the /install-plugin REST route in ve...
CVE-2023-4242MEDIUM4.3The FULL - Customer plugin for WordPress is vulnerable to Information Disclosure via the /health REST route in versions ...
CVE-2023-38752MEDIUM4.3Improper authorization vulnerability in Special Interest Group Network for Analysis and Liaison versions 4.4.0 to 4.7.7 ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now