2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-35002 | CRITICAL | 9.8 | 1.3% | Sep 25, 2023 | A heap-based buffer overflow vulnerability exists in the pictwread functionality of Accusoft ImageGear 20.1. A specially... |
| CVE-2023-32614 | CRITICAL | 9.8 | 0.7% | Sep 25, 2023 | A heap-based buffer overflow vulnerability exists in the create_png_object functionality of Accusoft ImageGear 20.1. A s... |
| CVE-2023-32284 | CRITICAL | 9.8 | 0.8% | Sep 25, 2023 | An out-of-bounds write vulnerability exists in the tiff_planar_adobe functionality of Accusoft ImageGear 20.1. A special... |
| CVE-2023-0626 | CRITICAL | 9.8 | 0.7% | Sep 25, 2023 | Docker Desktop before 4.12.0 is vulnerable to RCE via query parameters in message-box route. This issue affects Docker ... |
| CVE-2023-0625 | CRITICAL | 9.8 | 0.7% | Sep 25, 2023 | Docker Desktop before 4.12.0 is vulnerable to RCE via a crafted extension description or changelog. This issue affects ... |
| CVE-2023-43131 | CRITICAL | 9.8 | 0.9% | Sep 25, 2023 | General Device Manager 2.5.2.2 is vulnerable to Buffer Overflow. |
| CVE-2023-41419 | CRITICAL | 9.8 | 1.3% | Sep 25, 2023 | An issue in Gevent before version 23.9.0 allows a remote attacker to escalate privileges via a crafted script to the WSG... |
| CVE-2023-41297 | CRITICAL | 9.8 | 0.4% | Sep 25, 2023 | Vulnerability of defects introduced in the design process in the HiviewTunner module. Successful exploitation of this vu... |
| CVE-2023-41296 | CRITICAL | 9.1 | 0.3% | Sep 25, 2023 | Vulnerability of missing authorization in the kernel module. Successful exploitation of this vulnerability may affect in... |
| CVE-2023-41294 | CRITICAL | 9.8 | 0.4% | Sep 25, 2023 | The DP module has a service hijacking vulnerability.Successful exploitation of this vulnerability may affect some Super ... |
| CVE-2023-39407 | CRITICAL | 9.1 | 0.4% | Sep 25, 2023 | The Watchkit has a risk of unauthorized file access.Successful exploitation of this vulnerability may affect confidentia... |
| CVE-2023-5143 | CRITICAL | 9.8 | 3.6% | Sep 24, 2023 | ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as critical, has been found in D-Link DAR-7000 up ... |
| CVE-2023-43470 | CRITICAL | 9.8 | 1.2% | Sep 23, 2023 | SQL injection vulnerability in janobe Online Voting System v.1.0 allows a remote attacker to execute arbitrary code via ... |
| CVE-2023-43469 | CRITICAL | 9.8 | 1.0% | Sep 23, 2023 | SQL injection vulnerability in janobe Online Job Portal v.2020 allows a remote attacker to execute arbitrary code via th... |
| CVE-2023-43468 | CRITICAL | 9.8 | 1.2% | Sep 23, 2023 | SQL injection vulnerability in janobe Online Job Portal v.2020 allows a remote attacker to execute arbitrary code via th... |
| CVE-2023-43338 | CRITICAL | 9.8 | 0.9% | Sep 23, 2023 | Cesanta mjs v2.20.0 was discovered to contain a function pointer hijacking vulnerability via the function mjs_get_ptr().... |
| CVE-2023-43130 | CRITICAL | 9.8 | 2.4% | Sep 22, 2023 | D-LINK DIR-806 1200M11AC wireless router DIR806A1_FW100CNb11 is vulnerable to command injection. |
| CVE-2023-43129 | CRITICAL | 9.8 | 2.4% | Sep 22, 2023 | D-LINK DIR-806 1200M11AC wireless router DIR806A1_FW100CNb11 is vulnerable to command injection due to lax filtering of ... |
| CVE-2023-40989 | CRITICAL | 9.8 | 1.8% | Sep 22, 2023 | SQL injection vulnerbility in jeecgboot jeecg-boot v 3.0, 3.5.3 that allows a remote attacker to execute arbitrary code ... |
| CVE-2023-43270 | CRITICAL | 9.8 | 1.4% | Sep 22, 2023 | dst-admin v1.5.0 was discovered to contain a remote command execution (RCE) vulnerability via the userId parameter at /h... |
| CVE-2023-42798 | CRITICAL | 9.1 | 0.3% | Sep 22, 2023 | AutomataCI is a template git repository equipped with a native built-in semi-autonomous CI tools. An issue in versions 1... |
| CVE-2023-43144 | CRITICAL | 9.8 | 0.9% | Sep 22, 2023 | Projectworldsl Assets-management-system-in-php 1.0 is vulnerable to SQL Injection via the "id" parameter in delete.php. |
| CVE-2023-43762 | CRITICAL | 9.8 | 1.1% | Sep 22, 2023 | Certain WithSecure products allow Unauthenticated Remote Code Execution via the web server (backend). This affects WithS... |
| CVE-2023-23364 | CRITICAL | 9.8 | 0.8% | Sep 22, 2023 | A buffer copy without checking size of input vulnerability has been reported to affect QNAP operating systems. If exploi... |
| CVE-2023-23363 | CRITICAL | 9.8 | 0.8% | Sep 22, 2023 | A buffer copy without checking size of input vulnerability has been reported to affect QNAP operating system. If exploit... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now