2023 CVE Vulnerabilities

31,411 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-28394HIGH8.8Beekeeper Studio versions prior to 3.9.9 allows a remote authenticated attacker to execute arbitrary JavaScript code wit...
CVE-2023-28392HIGH7.2Wi-Fi AP UNIT AC-PD-WAPU v1.05_B04 and earlier, AC-PD-WAPUM v1.05_B04 and earlier, AC-PD-WAPU-P v1.05_B04P and earlier, ...
CVE-2023-28390MEDIUM6.8Privilege escalation vulnerability in SR-7100VN firmware Ver.1.38(N) and earlier and SR-7100VN #31 firmware Ver.1.21 and...
CVE-2023-28367MEDIUM5.4Cross-site scripting vulnerability in CTA post function of VK All in One Expansion Unit 9.88.1.0 and earlier allows a re...
CVE-2023-27926MEDIUM5.4Cross-site scripting vulnerability in Profile setting function of VK All in One Expansion Unit 9.88.1.0 and earlier allo...
CVE-2023-27925MEDIUM5.4Cross-site scripting vulnerability in Post function of VK Blocks 1.53.0.1 and earlier and VK Blocks Pro 1.53.0.1 and ear...
CVE-2023-27923MEDIUM5.4Cross-site scripting vulnerability in Tag edit function of VK Blocks 1.53.0.1 and earlier and VK Blocks Pro 1.53.0.1 and...
CVE-2023-27922MEDIUM6.1Cross-site scripting vulnerability in Newsletter versions prior to 7.6.9 allows a remote unauthenticated attacker to inj...
CVE-2023-27921MEDIUM6.5JINS MEME CORE Firmware version 2.2.0 and earlier uses a hard-coded cryptographic key, which may lead to data acquired b...
CVE-2023-27920MEDIUM4.3Improper access control vulnerability in the system date/time setting page of SolarView Compact SV-CPT-MC310 versions pr...
CVE-2023-27521HIGH8.8OS command injection vulnerability in the mail setting page of SolarView Compact SV-CPT-MC310 versions prior to Ver.8.10...
CVE-2023-27518HIGH8.8Buffer overflow vulnerability in the multiple setting pages of SolarView Compact SV-CPT-MC310 versions prior to Ver.8.10...
CVE-2023-27514HIGH8.8OS command injection vulnerability in the download page of SolarView Compact SV-CPT-MC310 versions prior to Ver.8.10 and...
CVE-2023-27512HIGH7.2Use of hard-coded credentials exists in SolarView Compact SV-CPT-MC310 versions prior to Ver.8.10, and SV-CPT-MC310F ver...
CVE-2023-27507CRITICAL9.8MicroEngine Mailform version 1.1.0 to 1.1.8 contains a path traversal vulnerability. If the product's file upload functi...
CVE-2023-27397CRITICAL9.8Unrestricted upload of file with dangerous type exists in MicroEngine Mailform version 1.1.0 to 1.1.8. If the product's ...
CVE-2023-27388CRITICAL9.8Improper authentication vulnerability in T&D Corporation and ESPEC MIC CORP. data logger products allows a remote unauth...
CVE-2023-27387HIGH8.8Cross-site request forgery (CSRF) in T&D Corporation and ESPEC MIC CORP. data logger products allows a remote unauthenti...
CVE-2023-27384MEDIUM4.3Operation restriction bypass vulnerability in MultiReport of Cybozu Garoon 5.15.0 allows a remote authenticated attacker...
CVE-2023-27304MEDIUM4.3Operation restriction bypass vulnerability in Message and Bulletin of Cybozu Garoon 4.6.0 to 5.9.2 allows a remote authe...
CVE-2023-26595MEDIUM6.5Denial-of-service (DoS) vulnerability in Message of Cybozu Garoon 4.10.0 to 5.9.2 allows a remote authenticated attacker...
CVE-2023-25953CRITICAL9.8Code injection vulnerability in Drive Explorer for macOS versions 3.5.4 and earlier allows an attacker who can login to ...
CVE-2023-25946HIGH8.8Authentication bypass vulnerability in Qrio Lock (Q-SL2) firmware version 2.0.9 and earlier allows a network-adjacent at...
CVE-2023-23545MEDIUM5.3Missing authentication for critical function exists in T&D Corporation and ESPEC MIC CORP. data logger products, which m...
CVE-2023-22654MEDIUM5.4Client-side enforcement of server-side security issue exists in T&D Corporation and ESPEC MIC CORP. data logger products...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now