2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-33781 | HIGH | 8.8 | 36.0% | Jun 7, 2023 | An issue in D-Link DIR-842V2 v1.0.3 allows attackers to execute arbitrary commands via importing a crafted file. |
| CVE-2023-30400 | CRITICAL | 9.8 | 3.5% | Jun 7, 2023 | An issue was discovered in Anyka Microelectronics AK3918EV300 MCU v18. A command injection vulnerability in the network ... |
| CVE-2023-34409 | CRITICAL | 9.8 | 1.3% | Jun 6, 2023 | In Percona Monitoring and Management (PMM) server 2.x before 2.37.1, the authenticate function in auth_server.go does no... |
| CVE-2023-33684 | MEDIUM | 5.7 | 0.3% | Jun 6, 2023 | Weak session management in DB Elettronica Telecomunicazioni SpA SFT DAB 600/C Firmware: 1.9.3 Bios firmware: 7.1 (Apr 19... |
| CVE-2023-33569 | HIGH | 7.2 | 1.1% | Jun 6, 2023 | Sourcecodester Faculty Evaluation System v1.0 is vulnerable to arbitrary code execution via ip/eval/ajax.php?action=upda... |
| CVE-2023-33477 | MEDIUM | 6.5 | 1.0% | Jun 6, 2023 | In Harmonic NSG 9000-6G devices, an authenticated remote user can obtain source code by directly requesting a special pa... |
| CVE-2023-2961 | LOW | 3.3 | 0.2% | Jun 6, 2023 | A segmentation fault flaw was found in the Advancecomp package. This may lead to decreased availability. |
| CVE-2023-2603 | HIGH | 7.8 | 0.6% | Jun 6, 2023 | A vulnerability was found in libcap. This issue occurs in the _libcap_strdup() function and can lead to an integer overf... |
| CVE-2023-2602 | LOW | 3.3 | 0.4% | Jun 6, 2023 | A vulnerability was found in the pthread_create() function in libcap. This issue may allow a malicious actor to use caus... |
| CVE-2023-2253 | MEDIUM | 6.5 | 0.9% | Jun 6, 2023 | A flaw was found in the `/v2/_catalog` endpoint in distribution/distribution, which accepts a parameter to control the m... |
| CVE-2023-2157 | MEDIUM | 5.5 | 1.0% | Jun 6, 2023 | A heap-based buffer overflow vulnerability was found in the ImageMagick package that can lead to the application crashin... |
| CVE-2023-29632 | CRITICAL | 9.8 | 1.0% | Jun 6, 2023 | PrestaShop jmspagebuilder 3.x is vulnerable to SQL Injection via ajax_jmspagebuilder.php. |
| CVE-2023-1621 | MEDIUM | 6.5 | 0.9% | Jun 6, 2023 | An issue has been discovered in GitLab EE affecting all versions starting from 12.0 before 15.10.5, all versions startin... |
| CVE-2023-33977 | MEDIUM | 5.4 | 0.9% | Jun 6, 2023 | Kiwi TCMS is an open source test management system for both manual and automated testing. Kiwi TCMS allows users to uplo... |
| CVE-2023-33959 | HIGH | 8.8 | 0.4% | Jun 6, 2023 | notation is a CLI tool to sign and verify OCI artifacts and container images. An attacker who has compromised a registry... |
| CVE-2023-33958 | MEDIUM | 6.5 | 0.5% | Jun 6, 2023 | notation is a CLI tool to sign and verify OCI artifacts and container images. An attacker who has compromised a registry... |
| CVE-2023-33957 | MEDIUM | 5.7 | 0.5% | Jun 6, 2023 | notation is a CLI tool to sign and verify OCI artifacts and container images. An attacker who has compromised a registry... |
| CVE-2023-33653 | HIGH | 8.8 | 2.1% | Jun 6, 2023 | Sitecore Experience Platform (XP) v9.3 was discovered to contain an authenticated remote code execution (RCE) vulnerabil... |
| CVE-2023-33652 | HIGH | 8.8 | 2.5% | Jun 6, 2023 | Sitecore Experience Platform (XP) v9.3 was discovered to contain an authenticated remote code execution (RCE) vulnerabil... |
| CVE-2023-33651 | HIGH | 7.5 | 1.4% | Jun 6, 2023 | An issue in the MVC Device Simulator of Sitecore Experience Platform (XP), Experience Manager (XM), and Experience Comme... |
| CVE-2023-32683 | MEDIUM | 5.4 | 0.6% | Jun 6, 2023 | Synapse is a Matrix protocol homeserver written in Python with the Twisted framework. A discovered oEmbed or image URL c... |
| CVE-2023-32682 | MEDIUM | 5.4 | 0.8% | Jun 6, 2023 | Synapse is a Matrix protocol homeserver written in Python with the Twisted framework. In affected versions it may be pos... |
| CVE-2023-2801 | MEDIUM | 5.3 | 0.7% | Jun 6, 2023 | Grafana is an open-source platform for monitoring and observability. Using public dashboards users can query multiple ... |
| CVE-2023-2183 | MEDIUM | 6.4 | 1.0% | Jun 6, 2023 | Grafana is an open-source platform for monitoring and observability. The option to send a test alert is not available ... |
| CVE-2023-22833 | MEDIUM | 6.5 | 0.4% | Jun 6, 2023 | Palantir Foundry deployments running Lime2 versions between 2.519.0 and 2.532.0 were vulnerable a bug that allowed authe... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now