2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-36345 | HIGH | 8.8 | 1.0% | Jun 23, 2023 | A Cross-Site Request Forgery (CSRF) in POS Codekop v2.0 allows attackers to escalate privileges. |
| CVE-2023-35931 | MEDIUM | 4.3 | 0.8% | Jun 23, 2023 | Shescape is a simple shell escape library for JavaScript. An attacker may be able to get read-only access to environment... |
| CVE-2023-35759 | MEDIUM | 6.1 | 2.1% | Jun 23, 2023 | In Progress WhatsUp Gold before 23.0.0, an SNMP-related application endpoint failed to adequately sanitize malicious inp... |
| CVE-2023-35167 | MEDIUM | 6.3 | 0.5% | Jun 23, 2023 | Remult is a CRUD framework for full-stack TypeScript. If you used the apiPrefilter option of the `@Entity` decorator, by... |
| CVE-2023-34460 | CRITICAL | 9.8 | 0.6% | Jun 23, 2023 | Tauri is a framework for building binaries for all major desktop platforms. The 1.4.0 release includes a regression on t... |
| CVE-2023-34203 | HIGH | 8.8 | 1.1% | Jun 23, 2023 | In Progress OpenEdge OEM (OpenEdge Management) and OEE (OpenEdge Explorer) before 12.7, a remote user (who has any OEM o... |
| CVE-2023-34188 | HIGH | 7.5 | 1.0% | Jun 23, 2023 | The HTTP server in Mongoose before 7.10 accepts requests containing negative Content-Length headers. By sending a single... |
| CVE-2023-27908 | HIGH | 7.8 | 0.2% | Jun 23, 2023 | A maliciously crafted DLL file can be forced to write beyond allocated boundaries in the Autodesk installer when parsing... |
| CVE-2023-3394 | MEDIUM | 5.4 | 0.5% | Jun 23, 2023 | Session Fixation in GitHub repository fossbilling/fossbilling prior to 0.5.1. |
| CVE-2023-3393 | HIGH | 7.2 | 1.0% | Jun 23, 2023 | Code Injection in GitHub repository fossbilling/fossbilling prior to 0.5.1. |
| CVE-2023-35162 | MEDIUM | 6.1 | 2.4% | Jun 23, 2023 | XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Users are able ... |
| CVE-2023-35161 | MEDIUM | 6.1 | 2.4% | Jun 23, 2023 | XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Users are able ... |
| CVE-2023-35160 | MEDIUM | 6.1 | 2.3% | Jun 23, 2023 | XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Users are able ... |
| CVE-2023-35159 | MEDIUM | 6.1 | 2.2% | Jun 23, 2023 | XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Users are able ... |
| CVE-2023-35158 | MEDIUM | 6.1 | 2.0% | Jun 23, 2023 | XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Users are able ... |
| CVE-2023-35157 | MEDIUM | 4.8 | 0.6% | Jun 23, 2023 | XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. It's possible t... |
| CVE-2023-35156 | MEDIUM | 6.1 | 2.1% | Jun 23, 2023 | XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Users are able ... |
| CVE-2023-35155 | MEDIUM | 6.1 | 1.5% | Jun 23, 2023 | XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Users are able ... |
| CVE-2023-34673 | MEDIUM | 6.5 | 0.7% | Jun 23, 2023 | Elenos ETG150 FM transmitter running on version 3.12 was discovered to be leaking SMTP credentials and other sensitive i... |
| CVE-2023-34672 | HIGH | 8.8 | 0.8% | Jun 23, 2023 | Improper Access Control leads to adding a high-privilege user affecting Elenos ETG150 FM transmitter running on version ... |
| CVE-2023-33565 | — | — | — | Jun 23, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2023-25003 | HIGH | 7.8 | 0.3% | Jun 23, 2023 | A maliciously crafted pskernel.dll file in Autodesk AutoCAD 2023 and Maya 2022 may be used to trigger out-of-bound read ... |
| CVE-2023-3317 | HIGH | 7.1 | 0.2% | Jun 23, 2023 | A use-after-free flaw was found in mt7921_check_offload_capability in drivers/net/wireless/mediatek/mt76/mt7921/init.c i... |
| CVE-2023-35153 | MEDIUM | 5.4 | 0.7% | Jun 23, 2023 | XWiki Platform is a generic wiki platform. Starting in version 5.4.4 and prior to versions 14.4.8, 14.10.4, and 15.0, a ... |
| CVE-2023-34671 | HIGH | 8.8 | 0.9% | Jun 23, 2023 | Improper Access Control leads to privilege escalation affecting Elenos ETG150 FM transmitter running on version 3.12 by ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now