2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-28394 | HIGH | 8.8 | 1.4% | May 23, 2023 | Beekeeper Studio versions prior to 3.9.9 allows a remote authenticated attacker to execute arbitrary JavaScript code wit... |
| CVE-2023-28392 | HIGH | 7.2 | 0.9% | May 23, 2023 | Wi-Fi AP UNIT AC-PD-WAPU v1.05_B04 and earlier, AC-PD-WAPUM v1.05_B04 and earlier, AC-PD-WAPU-P v1.05_B04P and earlier, ... |
| CVE-2023-28390 | MEDIUM | 6.8 | 0.3% | May 23, 2023 | Privilege escalation vulnerability in SR-7100VN firmware Ver.1.38(N) and earlier and SR-7100VN #31 firmware Ver.1.21 and... |
| CVE-2023-28367 | MEDIUM | 5.4 | 0.6% | May 23, 2023 | Cross-site scripting vulnerability in CTA post function of VK All in One Expansion Unit 9.88.1.0 and earlier allows a re... |
| CVE-2023-27926 | MEDIUM | 5.4 | 0.6% | May 23, 2023 | Cross-site scripting vulnerability in Profile setting function of VK All in One Expansion Unit 9.88.1.0 and earlier allo... |
| CVE-2023-27925 | MEDIUM | 5.4 | 0.6% | May 23, 2023 | Cross-site scripting vulnerability in Post function of VK Blocks 1.53.0.1 and earlier and VK Blocks Pro 1.53.0.1 and ear... |
| CVE-2023-27923 | MEDIUM | 5.4 | 0.6% | May 23, 2023 | Cross-site scripting vulnerability in Tag edit function of VK Blocks 1.53.0.1 and earlier and VK Blocks Pro 1.53.0.1 and... |
| CVE-2023-27922 | MEDIUM | 6.1 | 1.2% | May 23, 2023 | Cross-site scripting vulnerability in Newsletter versions prior to 7.6.9 allows a remote unauthenticated attacker to inj... |
| CVE-2023-27921 | MEDIUM | 6.5 | 0.3% | May 23, 2023 | JINS MEME CORE Firmware version 2.2.0 and earlier uses a hard-coded cryptographic key, which may lead to data acquired b... |
| CVE-2023-27920 | MEDIUM | 4.3 | 1.8% | May 23, 2023 | Improper access control vulnerability in the system date/time setting page of SolarView Compact SV-CPT-MC310 versions pr... |
| CVE-2023-27521 | HIGH | 8.8 | 1.9% | May 23, 2023 | OS command injection vulnerability in the mail setting page of SolarView Compact SV-CPT-MC310 versions prior to Ver.8.10... |
| CVE-2023-27518 | HIGH | 8.8 | 1.5% | May 23, 2023 | Buffer overflow vulnerability in the multiple setting pages of SolarView Compact SV-CPT-MC310 versions prior to Ver.8.10... |
| CVE-2023-27514 | HIGH | 8.8 | 1.9% | May 23, 2023 | OS command injection vulnerability in the download page of SolarView Compact SV-CPT-MC310 versions prior to Ver.8.10 and... |
| CVE-2023-27512 | HIGH | 7.2 | 1.0% | May 23, 2023 | Use of hard-coded credentials exists in SolarView Compact SV-CPT-MC310 versions prior to Ver.8.10, and SV-CPT-MC310F ver... |
| CVE-2023-27507 | CRITICAL | 9.8 | 1.3% | May 23, 2023 | MicroEngine Mailform version 1.1.0 to 1.1.8 contains a path traversal vulnerability. If the product's file upload functi... |
| CVE-2023-27397 | CRITICAL | 9.8 | 0.9% | May 23, 2023 | Unrestricted upload of file with dangerous type exists in MicroEngine Mailform version 1.1.0 to 1.1.8. If the product's ... |
| CVE-2023-27388 | CRITICAL | 9.8 | 1.3% | May 23, 2023 | Improper authentication vulnerability in T&D Corporation and ESPEC MIC CORP. data logger products allows a remote unauth... |
| CVE-2023-27387 | HIGH | 8.8 | 0.5% | May 23, 2023 | Cross-site request forgery (CSRF) in T&D Corporation and ESPEC MIC CORP. data logger products allows a remote unauthenti... |
| CVE-2023-27384 | MEDIUM | 4.3 | 0.5% | May 23, 2023 | Operation restriction bypass vulnerability in MultiReport of Cybozu Garoon 5.15.0 allows a remote authenticated attacker... |
| CVE-2023-27304 | MEDIUM | 4.3 | 0.5% | May 23, 2023 | Operation restriction bypass vulnerability in Message and Bulletin of Cybozu Garoon 4.6.0 to 5.9.2 allows a remote authe... |
| CVE-2023-26595 | MEDIUM | 6.5 | 0.5% | May 23, 2023 | Denial-of-service (DoS) vulnerability in Message of Cybozu Garoon 4.10.0 to 5.9.2 allows a remote authenticated attacker... |
| CVE-2023-25953 | CRITICAL | 9.8 | 0.6% | May 23, 2023 | Code injection vulnerability in Drive Explorer for macOS versions 3.5.4 and earlier allows an attacker who can login to ... |
| CVE-2023-25946 | HIGH | 8.8 | 0.4% | May 23, 2023 | Authentication bypass vulnerability in Qrio Lock (Q-SL2) firmware version 2.0.9 and earlier allows a network-adjacent at... |
| CVE-2023-23545 | MEDIUM | 5.3 | 0.8% | May 23, 2023 | Missing authentication for critical function exists in T&D Corporation and ESPEC MIC CORP. data logger products, which m... |
| CVE-2023-22654 | MEDIUM | 5.4 | 0.5% | May 23, 2023 | Client-side enforcement of server-side security issue exists in T&D Corporation and ESPEC MIC CORP. data logger products... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now