2023 CVE Vulnerabilities

31,411 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-36345HIGH8.8A Cross-Site Request Forgery (CSRF) in POS Codekop v2.0 allows attackers to escalate privileges.
CVE-2023-35931MEDIUM4.3Shescape is a simple shell escape library for JavaScript. An attacker may be able to get read-only access to environment...
CVE-2023-35759MEDIUM6.1In Progress WhatsUp Gold before 23.0.0, an SNMP-related application endpoint failed to adequately sanitize malicious inp...
CVE-2023-35167MEDIUM6.3Remult is a CRUD framework for full-stack TypeScript. If you used the apiPrefilter option of the `@Entity` decorator, by...
CVE-2023-34460CRITICAL9.8Tauri is a framework for building binaries for all major desktop platforms. The 1.4.0 release includes a regression on t...
CVE-2023-34203HIGH8.8In Progress OpenEdge OEM (OpenEdge Management) and OEE (OpenEdge Explorer) before 12.7, a remote user (who has any OEM o...
CVE-2023-34188HIGH7.5The HTTP server in Mongoose before 7.10 accepts requests containing negative Content-Length headers. By sending a single...
CVE-2023-27908HIGH7.8A maliciously crafted DLL file can be forced to write beyond allocated boundaries in the Autodesk installer when parsing...
CVE-2023-3394MEDIUM5.4Session Fixation in GitHub repository fossbilling/fossbilling prior to 0.5.1.
CVE-2023-3393HIGH7.2 Code Injection in GitHub repository fossbilling/fossbilling prior to 0.5.1.
CVE-2023-35162MEDIUM6.1XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Users are able ...
CVE-2023-35161MEDIUM6.1XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Users are able ...
CVE-2023-35160MEDIUM6.1XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Users are able ...
CVE-2023-35159MEDIUM6.1XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Users are able ...
CVE-2023-35158MEDIUM6.1XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Users are able ...
CVE-2023-35157MEDIUM4.8XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. It's possible t...
CVE-2023-35156MEDIUM6.1XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Users are able ...
CVE-2023-35155MEDIUM6.1XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Users are able ...
CVE-2023-34673MEDIUM6.5Elenos ETG150 FM transmitter running on version 3.12 was discovered to be leaking SMTP credentials and other sensitive i...
CVE-2023-34672HIGH8.8Improper Access Control leads to adding a high-privilege user affecting Elenos ETG150 FM transmitter running on version ...
CVE-2023-33565Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2023-25003HIGH7.8A maliciously crafted pskernel.dll file in Autodesk AutoCAD 2023 and Maya 2022 may be used to trigger out-of-bound read ...
CVE-2023-3317HIGH7.1A use-after-free flaw was found in mt7921_check_offload_capability in drivers/net/wireless/mediatek/mt76/mt7921/init.c i...
CVE-2023-35153MEDIUM5.4XWiki Platform is a generic wiki platform. Starting in version 5.4.4 and prior to versions 14.4.8, 14.10.4, and 15.0, a ...
CVE-2023-34671HIGH8.8Improper Access Control leads to privilege escalation affecting Elenos ETG150 FM transmitter running on version 3.12 by ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now