2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-34932 | HIGH | 7.5 | 0.7% | Jun 28, 2023 | A stack overflow in the UpdateWanMode function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (... |
| CVE-2023-34931 | HIGH | 7.5 | 0.7% | Jun 28, 2023 | A stack overflow in the EditWlanMacList function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service... |
| CVE-2023-34930 | HIGH | 7.5 | 0.7% | Jun 28, 2023 | A stack overflow in the EditMacList function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (Do... |
| CVE-2023-34929 | HIGH | 7.5 | 0.7% | Jun 28, 2023 | A stack overflow in the AddMacList function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (DoS... |
| CVE-2023-34928 | HIGH | 7.5 | 1.0% | Jun 28, 2023 | A stack overflow in the Edit_BasicSSID function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service ... |
| CVE-2023-30259 | MEDIUM | 5.5 | 0.3% | Jun 28, 2023 | A Buffer Overflow vulnerability in importshp plugin in LibreCAD 2.2.0 allows attackers to obtain sensitive information v... |
| CVE-2023-1295 | HIGH | 7 | 0.2% | Jun 28, 2023 | A time-of-check to time-of-use issue exists in io_uring subsystem's IORING_OP_CLOSE operation in the Linux kernel's vers... |
| CVE-2023-3034 | MEDIUM | 6.1 | 0.3% | Jun 28, 2023 | Reflected XSS affects the ‘mode’ parameter in the /admin functionality of the web application in versions <=2.0.44 |
| CVE-2023-32623 | CRITICAL | 9.1 | 1.2% | Jun 28, 2023 | Directory traversal vulnerability in Snow Monkey Forms v5.1.1 and earlier allows a remote unauthenticated attacker to de... |
| CVE-2023-26134 | CRITICAL | 9.8 | 3.3% | Jun 28, 2023 | Versions of the package git-commit-info before 2.0.2 are vulnerable to Command Injection such that the package-exported ... |
| CVE-2023-3407 | MEDIUM | 4.3 | 0.3% | Jun 28, 2023 | The Subscribe2 plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 10.40.... |
| CVE-2023-1844 | MEDIUM | 4.3 | 0.4% | Jun 28, 2023 | The Subscribe2 plugin for WordPress is vulnerable to unauthorized access to email functionality due to a missing capabil... |
| CVE-2023-3427 | MEDIUM | 4.3 | 0.2% | Jun 28, 2023 | The Salon Booking System plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includi... |
| CVE-2023-3333 | HIGH | 7.2 | 0.6% | Jun 28, 2023 | Improper Neutralization of Special Elements used in an OS Command vulnerability in NEC Corporation Aterm WG2600HP2, WG26... |
| CVE-2023-3332 | MEDIUM | 4.8 | 0.3% | Jun 28, 2023 | Improper Neutralization of Input During Web Page Generation vulnerability in NEC Corporation Aterm Aterm WG2600HP2, WG26... |
| CVE-2023-3331 | MEDIUM | 5.4 | 0.5% | Jun 28, 2023 | Improper Limitation of a Pathname to a Restricted Directory vulnerability in NEC Corporation Aterm Aterm WG2600HP2, WG26... |
| CVE-2023-3330 | MEDIUM | 4.3 | 0.4% | Jun 28, 2023 | Improper Limitation of a Pathname to a Restricted Directory vulnerability in NEC Corporation Aterm WG2600HP2, WG2600HP, ... |
| CVE-2023-3327 | — | — | — | Jun 27, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2023-35823. Reason: This candidate is a reservation d... |
| CVE-2023-25002 | HIGH | 7.8 | 0.3% | Jun 27, 2023 | A maliciously crafted SKP file in Autodesk products is used to trigger use-after-free vulnerability. Exploitation of thi... |
| CVE-2023-25001 | HIGH | 7.8 | 0.3% | Jun 27, 2023 | A maliciously crafted SKP file in Autodesk Navisworks 2023 and 2022 be used to trigger use-after-free vulnerability. Exp... |
| CVE-2023-36464 | MEDIUM | 5.5 | 0.3% | Jun 27, 2023 | pypdf is an open source, pure-python PDF library. In affected versions an attacker may craft a PDF which leads to an inf... |
| CVE-2023-3436 | LOW | 3.3 | 0.2% | Jun 27, 2023 | Xpdf 4.04 will deadlock on a PDF object stream whose "Length" field is itself in another object stream. |
| CVE-2023-36463 | MEDIUM | 6.1 | 0.4% | Jun 27, 2023 | Meldekarten generator is an open source project to create a program, running locally in the browser without the need for... |
| CVE-2023-30993 | HIGH | 7.5 | 0.6% | Jun 27, 2023 | IBM Cloud Pak for Security (CP4S) 1.9.0.0 through 1.9.2.0 could allow an attacker with a valid API key for one tenant to... |
| CVE-2023-29068 | HIGH | 7.8 | 0.2% | Jun 27, 2023 | A maliciously crafted file consumed through pskernel.dll file could lead to memory corruption vulnerabilities. These vul... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now