2023 CVE Vulnerabilities

31,411 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-3291LOW3.3Heap-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.2.2.
CVE-2023-32028HIGH7.8Microsoft SQL OLE DB Remote Code Execution Vulnerability
CVE-2023-32027HIGH7.8Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
CVE-2023-32026HIGH7.8Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
CVE-2023-32025HIGH7.8Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
CVE-2023-29356HIGH7.8Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
CVE-2023-29349HIGH7.8Microsoft ODBC and OLE DB Remote Code Execution Vulnerability
CVE-2023-2080CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Forcepoint Cloud S...
CVE-2023-28810MEDIUM4.3Some access control/intercom products have unauthorized modification of device network configuration vulnerabilities. At...
CVE-2023-23841HIGH7.5SolarWinds Serv-U is submitting an HTTP request when changing or updating the attributes for File Share or File request....
CVE-2023-34800CRITICAL9.8D-Link Go-RT-AC750 revA_v101b03 was discovered to contain a command injection vulnerability via the service parameter at...
CVE-2023-34797MEDIUM5.4Broken access control in the Registration page (/Registration.aspx) of Termenos CWX v8.5.6 allows attackers to access se...
CVE-2023-24032HIGH7.8In Zimbra Collaboration Suite through 9.0 and 8.8.15, an attacker (who has initial user access to a Zimbra server instan...
CVE-2023-24031MEDIUM6.1An issue was discovered in Zimbra Collaboration (ZCS) 9.0 and 8.8.15. XSS can occur, via one of attributes of the webmai...
CVE-2023-24030MEDIUM6.1An open redirect vulnerability exists in the /preauth Servlet in Zimbra Collaboration Suite through 9.0 and 8.8.15. To e...
CVE-2023-34852CRITICAL9.8PublicCMS <=V4.0.202302 is vulnerable to Insecure Permissions.
CVE-2023-34242MEDIUM5.3Cilium is a networking, observability, and security solution with an eBPF-based dataplane. Prior to version 1.13.4, when...
CVE-2023-33243HIGH8.1RedTeam Pentesting discovered that the web interface of STARFACE as well as its REST API allows authentication using the...
CVE-2023-31672CRITICAL9.8In the PrestaShop < 2.4.3 module "Length, weight or volume sell" (ailinear) there is a SQL injection vulnerability.
CVE-2023-2747MEDIUM5.5The initialization vector (IV) used by the secure engine (SE) for encrypting data stored in the SE flash memory is unini...
CVE-2023-2683MEDIUM6.5A memory leak in the EFR32 Bluetooth LE stack 5.1.0 through 5.1.1 allows an attacker to send an invalid pairing message ...
CVE-2023-2686CRITICAL9.8Buffer overflow in Wi-Fi Commissioning MicriumOS example in Silicon Labs Gecko SDK v4.2.3 or earlier allows connected de...
CVE-2023-29322MEDIUM5.4Adobe Experience Manager versions 6.5.16.0 (and earlier) is affected by a reflected Cross-Site Scripting (XSS) vulnerabi...
CVE-2023-29321HIGH7.8Adobe Animate versions 22.0.9 (and earlier) and 23.0.1 (and earlier) are affected by a Use After Free vulnerability that...
CVE-2023-29307MEDIUM5.4Adobe Experience Manager versions 6.5.16.0 (and earlier) is affected by a URL Redirection to Untrusted Site ('Open Redir...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now