2023 CVE Vulnerabilities

31,411 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-28386CRITICAL9.8Snap One OvrC Pro devices versions 7.2 and prior do not validate firmware updates correctly. The device only calculates ...
CVE-2023-31584MEDIUM6.1GitHub repository cu/silicon commit a9ef36 was discovered to contain a reflected cross-site scripting (XSS) vulnerabilit...
CVE-2023-28467MEDIUM6.1In MyBB before 1.8.34, there is XSS in the User CP module via the user email field.
CVE-2023-27067HIGH7.5Directory Traversal vulnerability in Sitecore Experience Platform through 10.2 allows remote attackers to download arbit...
CVE-2023-2840CRITICAL9.8NULL Pointer Dereference in GitHub repository gpac/gpac prior to 2.2.2.
CVE-2023-2839HIGH7.5Divide By Zero in GitHub repository gpac/gpac prior to 2.2.2.
CVE-2023-2838CRITICAL9.1Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.2.2.
CVE-2023-2837MEDIUM5.5Stack-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.2.2.
CVE-2023-31742HIGH7.2There is a command injection vulnerability in the Linksys WRT54GL router with firmware version 4.30.18.006. If an attack...
CVE-2023-27066MEDIUM6.5Directory Traversal vulnerability in Site Core Experience Platform 10.2 and earlier allows authenticated remote attacker...
CVE-2023-33294CRITICAL9.8An issue was discovered in KaiOS 3.0 before 3.1. The /system/bin/tctweb_server binary exposes a local web server that re...
CVE-2023-33293MEDIUM5.3An issue was discovered in KaiOS 3.0 and 3.1. The binary /system/kaios/api-daemon exposes a local web server on *.localh...
CVE-2023-32350HIGH8.8 Versions 00.07.00 through 00.07.03 of Teltonika’s RUT router firmware contain an operating system (OS) command injectio...
CVE-2023-32349HIGH8.8 Version 00.07.03.4 and prior of Teltonika’s RUT router firmware contain a packet dump utility that contains proper vali...
CVE-2023-32348MEDIUM5.8 Teltonika’s Remote Management System versions prior to 4.10.0 contain a virtual private network (VPN) hub feature for c...
CVE-2023-31103HIGH7.5Exposure of Resource to Wrong Sphere Vulnerability in Apache Software Foundation Apache InLong.This issue affects Apache...
CVE-2023-31101MEDIUM6.5Insecure Default Initialization of Resource Vulnerability in Apache Software Foundation Apache InLong.This issue affects...
CVE-2023-31098CRITICAL9.8Weak Password Requirements vulnerability in Apache Software Foundation Apache InLong.This issue affects Apache InLong: f...
CVE-2023-31066CRITICAL9.1Files or Directories Accessible to External Parties vulnerability in Apache Software Foundation Apache InLong.This issue...
CVE-2023-31065CRITICAL9.1Insufficient Session Expiration vulnerability in Apache Software Foundation Apache InLong.This issue affects Apache InLo...
CVE-2023-31064HIGH7.5Files or Directories Accessible to External Parties vulnerability in Apache Software Foundation Apache InLong.This issue...
CVE-2023-31062CRITICAL9.8Improper Privilege Management Vulnerabilities in Apache Software Foundation Apache InLong.This issue affects Apache InLo...
CVE-2023-2588HIGH8.8 Teltonika’s Remote Management System versions prior to 4.10.0 have a feature allowing users to access managed devices’ ...
CVE-2023-2587HIGH8.3 Teltonika’s Remote Management System versions prior to 4.10.0 contain a cross-site scripting (XSS) vulnerability in the...
CVE-2023-2586CRITICAL9.8 Teltonika’s Remote Management System versions 4.14.0 is vulnerable to an unauthorized attacker registering previously u...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now