2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-30920 | MEDIUM | 5.5 | 0.1% | Jul 12, 2023 | In messaging service, there is a missing permission check. This could lead to local information disclosure with no addit... |
| CVE-2023-30919 | MEDIUM | 5.5 | 0.1% | Jul 12, 2023 | In messaging service, there is a missing permission check. This could lead to local information disclosure with no addit... |
| CVE-2023-30918 | MEDIUM | 5.5 | 0.1% | Jul 12, 2023 | In telephony service, there is a missing permission check. This could lead to local information disclosure with no addit... |
| CVE-2023-30917 | HIGH | 7.8 | 0.1% | Jul 12, 2023 | In DMService, there is a possible missing permission check. This could lead to local escalation of privilege with no add... |
| CVE-2023-30916 | HIGH | 7.8 | 0.1% | Jul 12, 2023 | In DMService, there is a possible missing permission check. This could lead to local escalation of privilege with no add... |
| CVE-2023-30913 | MEDIUM | 5.5 | 0.1% | Jul 12, 2023 | In telephony service, there is a missing permission check. This could lead to local information disclosure with no addit... |
| CVE-2023-29414 | HIGH | 7.8 | 0.2% | Jul 12, 2023 | A CWE-120: Buffer Copy without Checking Size of Input (Classic Buffer Overflow) vulnerability exists that could cause u... |
| CVE-2023-37200 | MEDIUM | 5.5 | 0.2% | Jul 12, 2023 | A CWE-611: Improper Restriction of XML External Entity Reference vulnerability exists that could cause loss of confiden... |
| CVE-2023-37199 | HIGH | 7.2 | 0.8% | Jul 12, 2023 | A CWE-94: Improper Control of Generation of Code ('Code Injection') vulnerability exists that could cause remote code e... |
| CVE-2023-32200 | HIGH | 8.8 | 1.0% | Jul 12, 2023 | There is insufficient restrictions of called script functions in Apache Jena versions 4.8.0 and earlier. It allows a r... |
| CVE-2023-2763 | HIGH | 7.8 | 0.3% | Jul 12, 2023 | Use-After-Free, Out-of-bounds Write and Heap-based Buffer Overflow vulnerabilities exist in the DWG and DXF file reading... |
| CVE-2023-2762 | HIGH | 7.8 | 0.3% | Jul 12, 2023 | A Use-After-Free vulnerability in SLDPRT file reading procedure exists in SOLIDWORKS Desktop from Release SOLIDWORKS 202... |
| CVE-2023-37198 | HIGH | 7.2 | 0.8% | Jul 12, 2023 | A CWE-94: Improper Control of Generation of Code ('Code Injection') vulnerability exists that could cause remote co... |
| CVE-2023-37197 | HIGH | 8.8 | 0.5% | Jul 12, 2023 | A CWE-89: Improper Neutralization of Special Elements vulnerability used in an SQL Command ('SQL Injection') vulnerab... |
| CVE-2023-37196 | HIGH | 8.8 | 0.5% | Jul 12, 2023 | A CWE-89: Improper Neutralization of Special Elements vulnerability used in an SQL Command ('SQL Injection') vulnerabil... |
| CVE-2023-3525 | HIGH | 7.5 | 0.6% | Jul 12, 2023 | The Getnet Argentina para Woocommerce plugin for WordPress is vulnerable to authorization bypass due to missing validati... |
| CVE-2023-3369 | MEDIUM | 4.8 | 0.4% | Jul 12, 2023 | The About Me 3000 widget plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in version... |
| CVE-2023-3202 | MEDIUM | 4.3 | 0.3% | Jul 12, 2023 | The MStore API plugin for WordPress is vulnerable to Cross-Site Request Forgery due to missing nonce validation on the m... |
| CVE-2023-3199 | MEDIUM | 4.3 | 0.3% | Jul 12, 2023 | The MStore API plugin for WordPress is vulnerable to Cross-Site Request Forgery due to missing nonce validation on the m... |
| CVE-2023-3168 | MEDIUM | 6.1 | 0.4% | Jul 12, 2023 | The WP Reroute Email plugin for WordPress is vulnerable to Stored Cross-Site Scripting via an email subject in versions ... |
| CVE-2023-3167 | MEDIUM | 6.1 | 0.4% | Jul 12, 2023 | The Mail Queue plugin for WordPress is vulnerable to Stored Cross-Site Scripting via an email subject in versions up to,... |
| CVE-2023-3166 | MEDIUM | 6.1 | 0.5% | Jul 12, 2023 | The Lana Email Logger plugin for WordPress is vulnerable to Stored Cross-Site Scripting via an email subject in versions... |
| CVE-2023-3158 | MEDIUM | 6.1 | 0.5% | Jul 12, 2023 | The Mail Control plugin for WordPress is vulnerable to Stored Cross-Site Scripting via an email subject in versions up t... |
| CVE-2023-3135 | MEDIUM | 6.1 | 0.5% | Jul 12, 2023 | The Mailtree Log Mail plugin for WordPress is vulnerable to Stored Cross-Site Scripting via an email subject in versions... |
| CVE-2023-3122 | MEDIUM | 6.1 | 0.5% | Jul 12, 2023 | The GD Mail Queue plugin for WordPress is vulnerable to Stored Cross-Site Scripting via email contents in versions up to... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now