2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-28386 | CRITICAL | 9.8 | 0.4% | May 22, 2023 | Snap One OvrC Pro devices versions 7.2 and prior do not validate firmware updates correctly. The device only calculates ... |
| CVE-2023-31584 | MEDIUM | 6.1 | 0.8% | May 22, 2023 | GitHub repository cu/silicon commit a9ef36 was discovered to contain a reflected cross-site scripting (XSS) vulnerabilit... |
| CVE-2023-28467 | MEDIUM | 6.1 | 0.5% | May 22, 2023 | In MyBB before 1.8.34, there is XSS in the User CP module via the user email field. |
| CVE-2023-27067 | HIGH | 7.5 | 1.6% | May 22, 2023 | Directory Traversal vulnerability in Sitecore Experience Platform through 10.2 allows remote attackers to download arbit... |
| CVE-2023-2840 | CRITICAL | 9.8 | 0.7% | May 22, 2023 | NULL Pointer Dereference in GitHub repository gpac/gpac prior to 2.2.2. |
| CVE-2023-2839 | HIGH | 7.5 | 0.6% | May 22, 2023 | Divide By Zero in GitHub repository gpac/gpac prior to 2.2.2. |
| CVE-2023-2838 | CRITICAL | 9.1 | 0.7% | May 22, 2023 | Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.2.2. |
| CVE-2023-2837 | MEDIUM | 5.5 | 0.4% | May 22, 2023 | Stack-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.2.2. |
| CVE-2023-31742 | HIGH | 7.2 | 10.6% | May 22, 2023 | There is a command injection vulnerability in the Linksys WRT54GL router with firmware version 4.30.18.006. If an attack... |
| CVE-2023-27066 | MEDIUM | 6.5 | 1.5% | May 22, 2023 | Directory Traversal vulnerability in Site Core Experience Platform 10.2 and earlier allows authenticated remote attacker... |
| CVE-2023-33294 | CRITICAL | 9.8 | 0.9% | May 22, 2023 | An issue was discovered in KaiOS 3.0 before 3.1. The /system/bin/tctweb_server binary exposes a local web server that re... |
| CVE-2023-33293 | MEDIUM | 5.3 | 0.6% | May 22, 2023 | An issue was discovered in KaiOS 3.0 and 3.1. The binary /system/kaios/api-daemon exposes a local web server on *.localh... |
| CVE-2023-32350 | HIGH | 8.8 | 1.5% | May 22, 2023 | Versions 00.07.00 through 00.07.03 of Teltonika’s RUT router firmware contain an operating system (OS) command injectio... |
| CVE-2023-32349 | HIGH | 8.8 | 1.0% | May 22, 2023 | Version 00.07.03.4 and prior of Teltonika’s RUT router firmware contain a packet dump utility that contains proper vali... |
| CVE-2023-32348 | MEDIUM | 5.8 | 0.5% | May 22, 2023 | Teltonika’s Remote Management System versions prior to 4.10.0 contain a virtual private network (VPN) hub feature for c... |
| CVE-2023-31103 | HIGH | 7.5 | 1.3% | May 22, 2023 | Exposure of Resource to Wrong Sphere Vulnerability in Apache Software Foundation Apache InLong.This issue affects Apache... |
| CVE-2023-31101 | MEDIUM | 6.5 | 1.1% | May 22, 2023 | Insecure Default Initialization of Resource Vulnerability in Apache Software Foundation Apache InLong.This issue affects... |
| CVE-2023-31098 | CRITICAL | 9.8 | 1.2% | May 22, 2023 | Weak Password Requirements vulnerability in Apache Software Foundation Apache InLong.This issue affects Apache InLong: f... |
| CVE-2023-31066 | CRITICAL | 9.1 | 1.4% | May 22, 2023 | Files or Directories Accessible to External Parties vulnerability in Apache Software Foundation Apache InLong.This issue... |
| CVE-2023-31065 | CRITICAL | 9.1 | 1.2% | May 22, 2023 | Insufficient Session Expiration vulnerability in Apache Software Foundation Apache InLong.This issue affects Apache InLo... |
| CVE-2023-31064 | HIGH | 7.5 | 1.2% | May 22, 2023 | Files or Directories Accessible to External Parties vulnerability in Apache Software Foundation Apache InLong.This issue... |
| CVE-2023-31062 | CRITICAL | 9.8 | 1.3% | May 22, 2023 | Improper Privilege Management Vulnerabilities in Apache Software Foundation Apache InLong.This issue affects Apache InLo... |
| CVE-2023-2588 | HIGH | 8.8 | 1.1% | May 22, 2023 | Teltonika’s Remote Management System versions prior to 4.10.0 have a feature allowing users to access managed devices’ ... |
| CVE-2023-2587 | HIGH | 8.3 | 0.9% | May 22, 2023 | Teltonika’s Remote Management System versions prior to 4.10.0 contain a cross-site scripting (XSS) vulnerability in the... |
| CVE-2023-2586 | CRITICAL | 9.8 | 1.0% | May 22, 2023 | Teltonika’s Remote Management System versions 4.14.0 is vulnerable to an unauthorized attacker registering previously u... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now