2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-25185 | HIGH | 7.8 | 0.1% | Jun 16, 2023 | An issue was discovered on NOKIA Airscale ASIKA Single RAN devices before 21B. A mobile network solution internal fault ... |
| CVE-2023-34832 | CRITICAL | 9.8 | 1.7% | Jun 16, 2023 | TP-Link Archer AX10(EU)_V1.2_230220 was discovered to contain a buffer overflow via the function FUN_131e8 - 0x132B4. |
| CVE-2023-34660 | MEDIUM | 6.5 | 0.6% | Jun 16, 2023 | jjeecg-boot V3.5.0 has an unauthorized arbitrary file upload in /jeecg-boot/jmreport/upload interface. |
| CVE-2023-34659 | CRITICAL | 9.8 | 12.5% | Jun 16, 2023 | jeecg-boot 3.5.0 and 3.5.1 have a SQL injection vulnerability the id parameter of the /jeecg-boot/jmreport/show interfac... |
| CVE-2023-34645 | HIGH | 7.5 | 0.8% | Jun 16, 2023 | jfinal CMS 5.1.0 has an arbitrary file read vulnerability. |
| CVE-2023-34733 | MEDIUM | 6.8 | 0.5% | Jun 16, 2023 | A lack of exception handling in the Volkswagen Discover Media Infotainment System Software Version 0876 allows attackers... |
| CVE-2023-30625 | HIGH | 8.8 | 85.8% | Jun 16, 2023 | rudder-server is part of RudderStack, an open source Customer Data Platform (CDP). Versions of rudder-server prior to 1.... |
| CVE-2023-30223 | HIGH | 7.5 | 1.1% | Jun 16, 2023 | A broken authentication vulnerability in 4D SAS 4D Server software v17, v18, v19 R7, and earlier allows attackers to sen... |
| CVE-2023-30222 | HIGH | 7.5 | 1.2% | Jun 16, 2023 | An information disclosure vulnerability in 4D SAS 4D Server Application v17, v18, v19 R7 and earlier allows attackers to... |
| CVE-2023-2918 | — | — | — | Jun 16, 2023 | Rejected reason: Duplicate Assignment. |
| CVE-2023-24243 | HIGH | 7.5 | 4.0% | Jun 16, 2023 | CData RSB Connect v22.0.8336 was discovered to contain a Server-Side Request Forgery (SSRF). |
| CVE-2023-34795 | HIGH | 7.8 | 0.4% | Jun 16, 2023 | xlsxio v0.1.2 to v0.2.34 was discovered to contain a free of uninitialized pointer in the xlsxioread_sheetlist_close() f... |
| CVE-2023-30453 | MEDIUM | 5.4 | 0.3% | Jun 16, 2023 | The Teamlead Reminder plugin through 2.6.5 for Jira allows persistent XSS via the message parameter. |
| CVE-2023-25366 | CRITICAL | 9.8 | 0.4% | Jun 16, 2023 | In Siglent SDS 1104X-E SDS1xx4X-E_V6.1.37R9.ADS, insecure SCPI interface discloses web password. |
| CVE-2023-35783 | MEDIUM | 6.1 | 0.3% | Jun 16, 2023 | The ke_search (aka Faceted Search) extension before 4.0.3, 4.1.x through 4.6.x before 4.6.6, and 5.x before 5.0.2 for TY... |
| CVE-2023-35782 | CRITICAL | 9.8 | 0.5% | Jun 16, 2023 | The ipandlanguageredirect extension before 5.1.2 for TYPO3 allows SQL Injection. |
| CVE-2023-34548 | CRITICAL | 9.8 | 0.9% | Jun 16, 2023 | Simple Customer Relationship Management 1.0 is vulnerable to SQL Injection via the email parameter. |
| CVE-2023-20885 | MEDIUM | 6.5 | 0.5% | Jun 16, 2023 | Vulnerability in Cloud Foundry Notifications, Cloud Foundry SMB-volume release, Cloud FOundry cf-nfs-volume release.This... |
| CVE-2023-3294 | MEDIUM | 6.1 | 0.5% | Jun 16, 2023 | Cross-site Scripting (XSS) - DOM in GitHub repository saleor/react-storefront prior to c29aab226f07ca980cc19787dcef101e1... |
| CVE-2023-26537 | MEDIUM | 4.8 | 0.4% | Jun 16, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in nicolly WP No External Links plugin <= 1.0.2 versions. |
| CVE-2023-26527 | MEDIUM | 4.8 | 0.4% | Jun 16, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in WPIndeed Debug Assistant plugin <= 1.4 versions. |
| CVE-2023-25974 | MEDIUM | 4.8 | 0.4% | Jun 16, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in psicosi448 wp2syslog plugin <= 1.0.5 versions. |
| CVE-2023-3293 | MEDIUM | 4.8 | 0.5% | Jun 16, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository salesagility/suitecrm-core prior to 8.3.0. |
| CVE-2023-27420 | MEDIUM | 6.1 | 0.4% | Jun 16, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Everest Themes Arya Multipurpose theme <= 1.0.5 versions. |
| CVE-2023-26515 | MEDIUM | 4.8 | 0.4% | Jun 16, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Ko Takagi Simple Slug Translate plugin <= 2.7.2 versio... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now