2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-35069 | HIGH | 7.5 | 0.6% | Jul 13, 2023 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Bullwark allows Path Tra... |
| CVE-2023-2957 | CRITICAL | 9.8 | 0.5% | Jul 13, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Lisa Software Flor... |
| CVE-2023-1547 | CRITICAL | 9.8 | 0.6% | Jul 13, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Elra Parkmatik all... |
| CVE-2023-37565 | HIGH | 8 | 0.5% | Jul 13, 2023 | Code injection vulnerability in ELECOM wireless LAN routers allows a network-adjacent authenticated attacker to execute ... |
| CVE-2023-37564 | HIGH | 8 | 0.8% | Jul 13, 2023 | OS command injection vulnerability in ELECOM wireless LAN routers allows a network-adjacent authenticated attacker to ex... |
| CVE-2023-3444 | MEDIUM | 6.5 | 0.4% | Jul 13, 2023 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.3 before 15.11.10, all versions sta... |
| CVE-2023-3424 | HIGH | 7.5 | 0.8% | Jul 13, 2023 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 10.3 before 15.11.10, all versions sta... |
| CVE-2023-3363 | LOW | 3.8 | 0.2% | Jul 13, 2023 | An information disclosure issue in Gitlab CE/EE affecting all versions from 13.6 prior to 15.11.10, all versions from 16... |
| CVE-2023-3362 | MEDIUM | 5.3 | 0.5% | Jul 13, 2023 | An information disclosure issue in GitLab CE/EE affecting all versions from 16.0 prior to 16.0.6, and version 16.1.0 all... |
| CVE-2023-3343 | HIGH | 8.8 | 0.9% | Jul 13, 2023 | The User Registration plugin for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 3.0.1... |
| CVE-2023-3342 | CRITICAL | 9.9 | 1.5% | Jul 13, 2023 | The User Registration plugin for WordPress is vulnerable to arbitrary file uploads due to a hardcoded encryption key and... |
| CVE-2023-38199 | CRITICAL | 9.8 | 0.6% | Jul 13, 2023 | coreruleset (aka OWASP ModSecurity Core Rule Set) through 3.3.4 does not detect multiple Content-Type request headers on... |
| CVE-2023-38198 | CRITICAL | 9.8 | 0.9% | Jul 13, 2023 | acme.sh before 3.0.6 runs arbitrary commands from a remote server via eval, as exploited in the wild in June 2023. |
| CVE-2023-37563 | MEDIUM | 6.5 | 0.3% | Jul 13, 2023 | ELECOM wireless LAN routers are vulnerable to sensitive information exposure, which allows a network-adjacent unauthoriz... |
| CVE-2023-37562 | HIGH | 8.8 | 0.2% | Jul 13, 2023 | Cross-site request forgery (CSRF) vulnerability in exists in WTC-C1167GC-B v1.17 and earlier, and WTC-C1167GC-W v1.17 an... |
| CVE-2023-34137 | CRITICAL | 9.8 | 0.9% | Jul 13, 2023 | SonicWall GMS and Analytics CAS Web Services application use static values for authentication without proper checks lead... |
| CVE-2023-34136 | CRITICAL | 9.8 | 0.7% | Jul 13, 2023 | Vulnerability in SonicWall GMS and Analytics allows unauthenticated attacker to upload files to a restricted location no... |
| CVE-2023-34135 | MEDIUM | 6.5 | 1.2% | Jul 13, 2023 | Path Traversal vulnerability in SonicWall GMS and Analytics allows a remote authenticated attacker to read arbitrary fil... |
| CVE-2023-34134 | MEDIUM | 6.5 | 1.2% | Jul 13, 2023 | Exposure of sensitive information to an unauthorized actor vulnerability in SonicWall GMS and Analytics allows authentic... |
| CVE-2023-34133 | HIGH | 7.5 | 77.0% | Jul 13, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in SonicWall GMS and ... |
| CVE-2023-34132 | CRITICAL | 9.8 | 6.5% | Jul 13, 2023 | Use of password hash instead of password for authentication vulnerability in SonicWall GMS and Analytics allows Pass-the... |
| CVE-2023-34131 | MEDIUM | 5.3 | 0.7% | Jul 13, 2023 | Exposure of sensitive information to an unauthorized actor vulnerability in SonicWall GMS and Analytics enables an unaut... |
| CVE-2023-2620 | LOW | 3.8 | 0.5% | Jul 13, 2023 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.1 prior to 15.11.10, all versions f... |
| CVE-2023-2576 | MEDIUM | 4.3 | 0.4% | Jul 13, 2023 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.7 before 15.11.10, all versions sta... |
| CVE-2023-2200 | MEDIUM | 5.4 | 0.4% | Jul 13, 2023 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 7.14 before 15.11.10, all versions sta... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now