2023 CVE Vulnerabilities

31,411 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-31748HIGH7.8Insecure permissions in MobileTrans v4.0.11 allows attackers to escalate privileges to local admin via replacing the exe...
CVE-2023-33940MEDIUM5.4Cross-site scripting (XSS) vulnerability in IFrame type Remote Apps in Liferay Portal 7.4.0 through 7.4.3.30, and Lifera...
CVE-2023-33939MEDIUM5.4Cross-site scripting (XSS) vulnerability in the Modified Facet widget in Liferay Portal 7.1.0 through 7.4.3.12, and Life...
CVE-2023-33938MEDIUM6.1Cross-site scripting (XSS) vulnerability in the App Builder module's custom object details page in Liferay Portal 7.3.0 ...
CVE-2023-2064CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Minova Technology ...
CVE-2023-2045CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Ipekyolu Software ...
CVE-2023-33937MEDIUM5.4Stored cross-site scripting (XSS) vulnerability in Form widget configuration in Liferay Portal 7.1.0 through 7.3.0, and ...
CVE-2023-33010CRITICAL9.8A buffer overflow vulnerability in the ID processing function in Zyxel ATP series firmware versions 4.32 through 5.36 Pa...
CVE-2023-33009CRITICAL9.8A buffer overflow vulnerability in the notification function in Zyxel ATP series firmware versions 4.60 through 5.36 Pat...
CVE-2023-2065HIGH8.8Authorization Bypass Through User-Controlled Key vulnerability in Armoli Technology Cargo Tracking System allows Authent...
CVE-2023-2750CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Cityboss E-municip...
CVE-2023-2865CRITICAL9.8A vulnerability was found in SourceCodester Theme Park Ticketing System 1.0. It has been classified as critical. This af...
CVE-2023-2864MEDIUM6.1A vulnerability was found in SourceCodester Online Jewelry Store 1.0 and classified as problematic. Affected by this iss...
CVE-2023-2863MEDIUM5.5A vulnerability has been found in Simple Design Daily Journal 1.012.GP.B on Android and classified as problematic. Affec...
CVE-2023-2862MEDIUM6.1A vulnerability, which was classified as problematic, was found in SiteServer CMS up to 7.2.1. Affected is an unknown fu...
CVE-2023-2859HIGH8.8Code Injection in GitHub repository nilsteampassnet/teampass prior to 3.0.9.
CVE-2023-1424HIGH8.1Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in Mitsubishi Electric Corporation ...
CVE-2023-31763HIGH7.5Weak security in the transmitter of AGShome Smart Alarm v1.0 allows attackers to gain full access to the system via a co...
CVE-2023-31762HIGH7.5Weak security in the transmitter of Digoo DG-HAMB Smart Home Security System v1.0 allows attackers to gain full access t...
CVE-2023-31761HIGH7.5Weak security in the transmitter of Blitzwolf BW-IS22 Smart Home Security Alarm v1.0 allows attackers to gain full acces...
CVE-2023-31759HIGH7.5Weak Security in the 433MHz keyfob of Kerui W18 Alarm System v1.0 allows attackers to gain full access via a code replay...
CVE-2023-2498MEDIUM5.4The Go Pricing - WordPress Responsive Pricing Tables plugin for WordPress is vulnerable to Stored Cross-Site Scripting v...
CVE-2023-2496HIGH7.5The Go Pricing - WordPress Responsive Pricing Tables plugin for WordPress is vulnerable to unauthorized arbitrary file u...
CVE-2023-2494HIGH8.8The Go Pricing - WordPress Responsive Pricing Tables plugin for WordPress is vulnerable to unauthorized modification of ...
CVE-2023-32697CRITICAL9.8SQLite JDBC is a library for accessing and creating SQLite database files in Java. Sqlite-jdbc addresses a remote code e...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now