2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2023-35002CRITICAL9.8A heap-based buffer overflow vulnerability exists in the pictwread functionality of Accusoft ImageGear 20.1. A specially...
CVE-2023-32614CRITICAL9.8A heap-based buffer overflow vulnerability exists in the create_png_object functionality of Accusoft ImageGear 20.1. A s...
CVE-2023-32284CRITICAL9.8An out-of-bounds write vulnerability exists in the tiff_planar_adobe functionality of Accusoft ImageGear 20.1. A special...
CVE-2023-0626CRITICAL9.8Docker Desktop before 4.12.0 is vulnerable to RCE via query parameters in message-box route. This issue affects Docker ...
CVE-2023-0625CRITICAL9.8Docker Desktop before 4.12.0 is vulnerable to RCE via a crafted extension description or changelog. This issue affects ...
CVE-2023-43131CRITICAL9.8General Device Manager 2.5.2.2 is vulnerable to Buffer Overflow.
CVE-2023-41419CRITICAL9.8An issue in Gevent before version 23.9.0 allows a remote attacker to escalate privileges via a crafted script to the WSG...
CVE-2023-41297CRITICAL9.8Vulnerability of defects introduced in the design process in the HiviewTunner module. Successful exploitation of this vu...
CVE-2023-41296CRITICAL9.1Vulnerability of missing authorization in the kernel module. Successful exploitation of this vulnerability may affect in...
CVE-2023-41294CRITICAL9.8The DP module has a service hijacking vulnerability.Successful exploitation of this vulnerability may affect some Super ...
CVE-2023-39407CRITICAL9.1The Watchkit has a risk of unauthorized file access.Successful exploitation of this vulnerability may affect confidentia...
CVE-2023-5143CRITICAL9.8** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as critical, has been found in D-Link DAR-7000 up ...
CVE-2023-43470CRITICAL9.8SQL injection vulnerability in janobe Online Voting System v.1.0 allows a remote attacker to execute arbitrary code via ...
CVE-2023-43469CRITICAL9.8SQL injection vulnerability in janobe Online Job Portal v.2020 allows a remote attacker to execute arbitrary code via th...
CVE-2023-43468CRITICAL9.8SQL injection vulnerability in janobe Online Job Portal v.2020 allows a remote attacker to execute arbitrary code via th...
CVE-2023-43338CRITICAL9.8Cesanta mjs v2.20.0 was discovered to contain a function pointer hijacking vulnerability via the function mjs_get_ptr()....
CVE-2023-43130CRITICAL9.8D-LINK DIR-806 1200M11AC wireless router DIR806A1_FW100CNb11 is vulnerable to command injection.
CVE-2023-43129CRITICAL9.8D-LINK DIR-806 1200M11AC wireless router DIR806A1_FW100CNb11 is vulnerable to command injection due to lax filtering of ...
CVE-2023-40989CRITICAL9.8SQL injection vulnerbility in jeecgboot jeecg-boot v 3.0, 3.5.3 that allows a remote attacker to execute arbitrary code ...
CVE-2023-43270CRITICAL9.8dst-admin v1.5.0 was discovered to contain a remote command execution (RCE) vulnerability via the userId parameter at /h...
CVE-2023-42798CRITICAL9.1AutomataCI is a template git repository equipped with a native built-in semi-autonomous CI tools. An issue in versions 1...
CVE-2023-43144CRITICAL9.8Projectworldsl Assets-management-system-in-php 1.0 is vulnerable to SQL Injection via the "id" parameter in delete.php.
CVE-2023-43762CRITICAL9.8Certain WithSecure products allow Unauthenticated Remote Code Execution via the web server (backend). This affects WithS...
CVE-2023-23364CRITICAL9.8A buffer copy without checking size of input vulnerability has been reported to affect QNAP operating systems. If exploi...
CVE-2023-23363CRITICAL9.8A buffer copy without checking size of input vulnerability has been reported to affect QNAP operating system. If exploit...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now