2023 CVE Vulnerabilities

31,411 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-22586HIGH7.5The Danfoss AK-EM100 web applications allow for Local File Inclusion in the file parameter.
CVE-2023-22585MEDIUM6.1The Danfoss AK-EM100 web applications allow for Reflected Cross-Site Scripting in the title parameter.
CVE-2023-22584HIGH7.5The Danfoss AK-EM100 stores login credentials in cleartext.
CVE-2023-22583CRITICAL9.8The Danfoss AK-EM100 web forms allow for SQL injection in the login forms.
CVE-2023-22582MEDIUM6.1The Danfoss AK-EM100 web applications allow for Reflected Cross-Site Scripting.
CVE-2023-3192MEDIUM5.4Session Fixation in GitHub repository froxlor/froxlor prior to 2.1.0.
CVE-2023-3191MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository nilsteampassnet/teampass prior to 3.0.9.
CVE-2023-3190MEDIUM4.6Improper Encoding or Escaping of Output in GitHub repository nilsteampassnet/teampass prior to 3.0.9.
CVE-2023-26132HIGH7.5Versions of the package dottie before 2.0.4 are vulnerable to Prototype Pollution due to insufficient checks, via the se...
CVE-2023-3188MEDIUM6.5Server-Side Request Forgery (SSRF) in GitHub repository owncast/owncast prior to 0.1.0.
CVE-2023-3187MEDIUM5.4A vulnerability, which was classified as critical, has been found in PHPGurukul Teachers Record Management System 1.0. A...
CVE-2023-29753MEDIUM5.5An issue found in Facemoji Emoji Keyboard v.2.9.1.2 for Android allows a local attacker to cause a denial of service via...
CVE-2023-29751MEDIUM5.5An issue found in Yandex Navigator v.6.60 for Android allows unauthorized apps to cause a persistent denial of service b...
CVE-2023-26465MEDIUM6.1Pega Platform versions 7.2 to 8.8.1 are affected by an XSS issue.
CVE-2023-3141HIGH7.1A use-after-free flaw was found in r592_remove in drivers/memstick/host/r592.c in media access in the Linux Kernel. This...
CVE-2023-34856MEDIUM5.4A Cross Site Scripting (XSS) vulnerability in D-Link DI-7500G-CI-19.05.29A allows attackers to execute arbitrary code vi...
CVE-2023-32312MEDIUM5.3UmbracoIdentityExtensions is an Umbraco add-on package that enables easy extensibility points for ASP.Net Identity integ...
CVE-2023-29767MEDIUM5.5An issue found in CrossX v.1.15.3 for Android allows a local attacker to cause a persistent denial of service via the da...
CVE-2023-29766HIGH7.8An issue found in CrossX v.1.15.3 for Android allows a local attacker to cause an escalation of Privileges via the datab...
CVE-2023-29761MEDIUM5.5An issue found in Sleep v.20230303 for Android allows unauthorized apps to cause a persistent denial of service by manip...
CVE-2023-29759MEDIUM5.5An issue found in FlightAware v.5.8.0 for Android allows unauthorized apps to cause a persistent denial of service by ma...
CVE-2023-29758MEDIUM5.5An issue found in Blue Light Filter v.1.5.5 for Android allows unauthorized apps to cause a persistent denial of service...
CVE-2023-29757HIGH7.8An issue found in Blue Light Filter v.1.5.5 for Android allows unauthorized apps to cause escalation of privilege attack...
CVE-2023-29756MEDIUM5.5An issue found in Twilight v.13.3 for Android allows unauthorized apps to cause a persistent denial of service by manipu...
CVE-2023-29755HIGH7.8An issue found in Twilight v.13.3 for Android allows unauthorized apps to cause escalation of privilege attacks by manip...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now