2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2023-25533CRITICAL9.8NVIDIA DGX H100 BMC contains a vulnerability in the web UI, where an attacker may cause improper input validation. A suc...
CVE-2023-25531CRITICAL9.8NVIDIA DGX H100 BMC contains a vulnerability in IPMI, where an attacker may cause insufficient protection of credentials...
CVE-2023-25530CRITICAL9.8NVIDIA DGX H100 BMC contains a vulnerability in the KVM service, where an attacker may cause improper input validation. ...
CVE-2023-25528CRITICAL9.8NVIDIA DGX H100 baseboard management controller (BMC) contains a vulnerability in a web server plugin, where an unauthen...
CVE-2023-42793CRITICAL9.8In JetBrains TeamCity before 2023.05.4 authentication bypass leading to RCE on TeamCity Server was possible
CVE-2023-4092CRITICAL9.8SQL injection vulnerability in Arconte Áurea, in its 1.5.0.0 version. The exploitation of this vulnerability could allow...
CVE-2023-0773CRITICAL9.8The vulnerability exists in Uniview IP Camera due to identification and authentication failure at its web-based manageme...
CVE-2023-41387CRITICAL9.1A SQL injection in the flutter_downloader component through 1.11.1 for iOS allows remote attackers to steal session toke...
CVE-2023-5009CRITICAL9.8An issue has been discovered in GitLab EE affecting all versions starting from 13.12 before 16.2.7, all versions startin...
CVE-2023-26143CRITICAL9.1Versions of the package blamer before 1.0.4 are vulnerable to Arbitrary Argument Injection via the blameByFile() API. Th...
CVE-2023-42454CRITICAL9.1SQLpage is a SQL-only webapp builder. Someone using SQLpage versions prior to 0.11.1, whose SQLpage instance is exposed ...
CVE-2023-41084CRITICAL9.8 Session management within the web application is incorrect and allows attackers to steal session cookies to p...
CVE-2023-33831CRITICAL9.8A remote command execution (RCE) vulnerability in the /api/runscript endpoint of FUXA 1.1.13 allows attackers to execute...
CVE-2023-41030CRITICAL9.8Hard-coded credentials in Juplink RX4-1500 versions V1.0.2 through V1.0.5 allow unauthenticated attackers to log in to t...
CVE-2023-42320CRITICAL9.8Buffer Overflow vulnerability in Tenda AC10V4 v.US_AC10V4.0si_V16.03.10.13_cn_TDC01 allows a remote attacker to cause a ...
CVE-2023-42359CRITICAL9.8SQL injection vulnerability in Exam Form Submission in PHP with Source Code v.1.0 allows a remote attacker to escalate p...
CVE-2023-5034CRITICAL9.8A vulnerability classified as problematic was found in SourceCodester My Food Recipe 1.0. This vulnerability affects unk...
CVE-2023-5020CRITICAL9.8A vulnerability, which was classified as critical, has been found in 07FLY CRM V2. This issue affects some unknown proce...
CVE-2023-5019CRITICAL9.8A vulnerability classified as critical was found in Tongda OA. This vulnerability affects unknown code of the file gener...
CVE-2023-5018CRITICAL9.8A vulnerability classified as critical has been found in SourceCodester Lost and Found Information System 1.0. This affe...
CVE-2023-5017CRITICAL9.8A vulnerability was found in lmxcms up to 1.41. It has been rated as critical. Affected by this issue is some unknown fu...
CVE-2023-5016CRITICAL9.8A vulnerability was found in spider-flow up to 0.5.0. It has been declared as critical. Affected by this vulnerability i...
CVE-2023-5014CRITICAL9.8A vulnerability was found in Sakshi2610 Food Ordering Website 1.0 and classified as critical. This issue affects some un...
CVE-2023-42336CRITICAL9.8An issue in NETIS SYSTEMS WF2409Ev4 v.1.0.1.705 allows a remote attacker to execute arbitrary code and obtain sensitive ...
CVE-2023-39612CRITICAL9A cross-site scripting (XSS) vulnerability in FileBrowser before v2.23.0 allows an authenticated attacker to escalate pr...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now