2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-2781 | CRITICAL | 9.8 | 1.2% | Jun 3, 2023 | The User Email Verification for WooCommerce plugin for WordPress is vulnerable to authentication bypass via authenticate... |
| CVE-2023-3044 | LOW | 3.3 | 0.3% | Jun 2, 2023 | An excessively large PDF page size (found in fuzz testing, unlikely in normal PDF files) can result in a divide-by-zero ... |
| CVE-2023-2816 | MEDIUM | 6.5 | 0.6% | Jun 2, 2023 | Consul and Consul Enterprise allowed any user with service:write permissions to use Envoy extensions configured via serv... |
| CVE-2023-1297 | HIGH | 7.5 | 0.8% | Jun 2, 2023 | Consul and Consul Enterprise's cluster peering implementation contained a flaw whereby a peer cluster with service of th... |
| CVE-2023-33763 | MEDIUM | 6.1 | 0.5% | Jun 2, 2023 | eMedia Consulting simpleRedak up to v2.47.23.05 was discovered to contain a reflected cross-site scripting (XSS) vulnera... |
| CVE-2023-33762 | CRITICAL | 9.8 | 0.9% | Jun 2, 2023 | eMedia Consulting simpleRedak up to v2.47.23.05 was discovered to contain a SQL injection vulnerability via the Activity... |
| CVE-2023-33761 | MEDIUM | 6.1 | 0.5% | Jun 2, 2023 | eMedia Consulting simpleRedak up to v2.47.23.05 was discovered to contain a reflected cross-site scripting (XSS) vulnera... |
| CVE-2023-33675 | CRITICAL | 9.8 | 1.2% | Jun 2, 2023 | Tenda AC8V4.0-V16.03.34.06 was discovered to contain a stack overflow via the time parameter in the get_parentControl_li... |
| CVE-2023-33673 | CRITICAL | 9.8 | 1.1% | Jun 2, 2023 | Tenda AC8V4.0-V16.03.34.06 was discovered to contain a stack overflow via the firewallEn parameter in the formSetFirewal... |
| CVE-2023-33672 | HIGH | 7.5 | 0.9% | Jun 2, 2023 | Tenda AC8V4.0-V16.03.34.06 was discovered to contain a stack overflow via the shareSpeed parameter in the fromSetWifiGus... |
| CVE-2023-33671 | CRITICAL | 9.8 | 0.9% | Jun 2, 2023 | Tenda AC8V4.0-V16.03.34.06 was discovered to contain a stack overflow via the deviceId parameter in the saveParentContro... |
| CVE-2023-33670 | CRITICAL | 9.8 | 1.1% | Jun 2, 2023 | Tenda AC8V4.0-V16.03.34.06 was discovered to contain a stack overflow via the time parameter in the sub_4a79ec function. |
| CVE-2023-33669 | CRITICAL | 9.8 | 2.1% | Jun 2, 2023 | Tenda AC8V4.0-V16.03.34.06 was discovered to contain a stack overflow via the timeZone parameter in the sub_44db3c funct... |
| CVE-2023-3073 | MEDIUM | 5.4 | 0.5% | Jun 2, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository tsolucio/corebos prior to 8 via evvtgendoc. |
| CVE-2023-3075 | MEDIUM | 6.5 | 0.3% | Jun 2, 2023 | Cross-Site Request Forgery (CSRF) in GitHub repository tsolucio/corebos prior to 8. |
| CVE-2023-3074 | MEDIUM | 5.4 | 0.5% | Jun 2, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository tsolucio/corebos prior to 8. |
| CVE-2023-3071 | MEDIUM | 5.4 | 0.5% | Jun 2, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository tsolucio/corebos prior to 8. |
| CVE-2023-3070 | MEDIUM | 5.4 | 0.6% | Jun 2, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository tsolucio/corebos prior to 8. |
| CVE-2023-3069 | CRITICAL | 9.8 | 0.6% | Jun 2, 2023 | Unverified Password Change in GitHub repository tsolucio/corebos prior to 8. |
| CVE-2023-32215 | HIGH | 8.8 | 0.8% | Jun 2, 2023 | Mozilla developers and community members Gabriele Svelto, Andrew Osmond, Emily McDonough, Sebastian Hengst, Andrew McCre... |
| CVE-2023-32213 | HIGH | 8.8 | 0.8% | Jun 2, 2023 | When reading a file, an uninitialized value could have been used as read limit. This vulnerability affects Firefox < 113... |
| CVE-2023-32212 | MEDIUM | 4.3 | 0.6% | Jun 2, 2023 | An attacker could have positioned a `datalist` element to obscure the address bar. This vulnerability affects Firefox < ... |
| CVE-2023-32211 | MEDIUM | 6.5 | 0.7% | Jun 2, 2023 | A type checking bug would have led to invalid code being compiled. This vulnerability affects Firefox < 113, Firefox ESR... |
| CVE-2023-32207 | HIGH | 8.8 | 0.7% | Jun 2, 2023 | A missing delay in popup notifications could have made it possible for an attacker to trick a user into granting permiss... |
| CVE-2023-32206 | MEDIUM | 6.5 | 0.7% | Jun 2, 2023 | An out-of-bound read could have led to a crash in the RLBox Expat driver. This vulnerability affects Firefox < 113, Fire... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now