2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2023-36735CRITICAL9.6Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
CVE-2023-41887CRITICAL9.8OpenRefine is a powerful free, open source tool for working with messy data. Prior to version 3.7.5, a remote code execu...
CVE-2023-0923CRITICAL9.8A flaw was found in the Kubernetes service for notebooks in RHODS, where it does not prevent pods from other namespaces ...
CVE-2023-38507CRITICAL9.8Strapi is the an open-source headless content management system. Prior to version 4.12.1, there is a rate limit on the l...
CVE-2023-42398CRITICAL9.8An issue in zzCMS v.2023 allows a remote attacker to execute arbitrary code and obtain sensitive information via the ued...
CVE-2023-28614CRITICAL9.8Freewill iFIS (aka SMART Trade) 20.01.01.04 allows OS Command Injection via shell metacharacters to a report page.
CVE-2023-4988CRITICAL9.8A vulnerability, which was classified as problematic, was found in Bettershop LaikeTui. This affects an unknown part of ...
CVE-2023-4835CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in CF Software Oil Ma...
CVE-2023-4833CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Besttem Network Ma...
CVE-2023-4662CRITICAL9.8Execution with Unnecessary Privileges vulnerability in Saphira Saphira Connect allows Remote Code Inclusion. This issue...
CVE-2023-4661CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Saphira Saphira Co...
CVE-2023-4831CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Ncode Ncep allows ...
CVE-2023-4670CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Innosa Probbys all...
CVE-2023-4231CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Cevik Informatics ...
CVE-2023-4830CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Tura Signalix allo...
CVE-2023-4673CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Sanalogy Turasista...
CVE-2023-36659CRITICAL9.8An issue was discovered in OPSWAT MetaDefender KIOSK 4.6.1.9996. Long inputs were not properly processed, which allows r...
CVE-2023-36657CRITICAL9.8An issue was discovered in OPSWAT MetaDefender KIOSK 4.6.1.9996. Built-in features of Windows (desktop shortcuts, narrat...
CVE-2023-4974CRITICAL9.8A vulnerability was found in Academy LMS 6.2. It has been rated as critical. Affected by this issue is some unknown func...
CVE-2023-39643CRITICAL9.8Bl Modules xmlfeeds before v3.9.8 was discovered to contain a SQL injection vulnerability via the component SearchApiXml...
CVE-2023-39642CRITICAL9.8Carts Guru cartsguru up to v2.4.2 was discovered to contain a SQL injection vulnerability via the component CartsGuruCat...
CVE-2023-39641CRITICAL9.8Active Design psaffiliate before v1.9.8 was discovered to contain a SQL injection vulnerability via the component Psaffi...
CVE-2023-39639CRITICAL9.8LeoTheme leoblog up to v3.1.2 was discovered to contain a SQL injection vulnerability via the component LeoBlogBlog::get...
CVE-2023-42405CRITICAL9.8SQL injection vulnerability in FIT2CLOUD RackShift v1.7.1 allows attackers to execute arbitrary code via the `sort` para...
CVE-2023-39638CRITICAL9.8D-LINK DIR-859 A1 1.05 and A1 1.06B01 Beta01 was discovered to contain a command injection vulnerability via the lxmldbc...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now