2023 CVE Vulnerabilities

31,411 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-21407HIGH8.8 A broken access control was found allowing for privileged escalation of the operator account to gain administrator priv...
CVE-2023-4115MEDIUM6.1A vulnerability classified as problematic has been found in PHP Jabbers Cleaning Business 1.0. Affected is an unknown fu...
CVE-2023-4114MEDIUM6.1A vulnerability was found in PHP Jabbers Night Club Booking Software 1.0. It has been rated as problematic. This issue a...
CVE-2023-38748HIGH7.8Use after free vulnerability exists in CX-Programmer Included in CX-One CXONE-AL[][]D-V4 V9.80 and earlier. By having a ...
CVE-2023-38747HIGH7.8Heap-based buffer overflow vulnerability exists in CX-Programmer Included in CX-One CXONE-AL[][]D-V4 V9.80 and earlier. ...
CVE-2023-4113MEDIUM6.1A vulnerability was found in PHP Jabbers Service Booking Script 1.0. It has been declared as problematic. This vulnerabi...
CVE-2023-4112MEDIUM6.1A vulnerability was found in PHP Jabbers Shuttle Booking Software 1.0. It has been classified as problematic. This affec...
CVE-2023-3932MEDIUM6.5An issue has been discovered in GitLab EE affecting all versions starting from 13.12 before 16.0.8, all versions startin...
CVE-2023-3346CRITICAL9.8Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in MITSUBSHI CNC Series allows a re...
CVE-2023-38746HIGH7.8Out-of-bounds read vulnerability/issue exists in CX-Programmer Included in CX-One CXONE-AL[][]D-V4 V9.80 and earlier. By...
CVE-2023-38744HIGH7.5Denial-of-service (DoS) vulnerability due to improper validation of specified type of input issue exists in the built-in...
CVE-2023-4127MEDIUM5.9Race Condition within a Thread in GitHub repository answerdev/answer prior to v1.1.1.
CVE-2023-4126HIGH8.8Insufficient Session Expiration in GitHub repository answerdev/answer prior to v1.1.0.
CVE-2023-4125HIGH8.8Weak Password Requirements in GitHub repository answerdev/answer prior to v1.1.0.
CVE-2023-4124MEDIUM6.5Missing Authorization in GitHub repository answerdev/answer prior to v1.1.1.
CVE-2023-4111MEDIUM6.1A vulnerability was found in PHP Jabbers Bus Reservation System 1.1 and classified as problematic. Affected by this issu...
CVE-2023-4110MEDIUM6.1A vulnerability has been found in PHP Jabbers Availability Booking Calendar 5.0 and classified as problematic. Affected ...
CVE-2023-39144HIGH7.5Element55 KnowMore appliances version 21 and older was discovered to store passwords in plaintext.
CVE-2023-37679CRITICAL9.8A remote command execution (RCE) vulnerability in NextGen Mirth Connect v4.3.0 allows attackers to execute arbitrary com...
CVE-2023-37364CRITICAL9.1In WS-Inc J WBEM Server 4.7.4 before 4.7.5, the CIM-XML protocol adapter does not disable entity resolution. This allows...
CVE-2023-34196HIGH8.2In the Keyfactor EJBCA before 8.0.0, the RA web certificate distribution servlet /ejbca/ra/cert allows partial denial of...
CVE-2023-38958MEDIUM5.3An access control issue in ZKTeco BioAccess IVS v3.3.1 allows unauthenticated attackers to arbitrarily close and open th...
CVE-2023-38956HIGH7.5A path traversal vulnerability in ZKTeco BioAccess IVS v3.3.1 allows unauthenticated attackers to read arbitrary files v...
CVE-2023-38955HIGH7.5ZKTeco BioAccess IVS v3.3.1 allows unauthenticated attackers to obtain sensitive information about all managed devices, ...
CVE-2023-38954CRITICAL9.8ZKTeco BioAccess IVS v3.3.1 was discovered to contain a SQL injection vulnerability.

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now