2023 CVE Vulnerabilities

31,411 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-20087MEDIUM6.5Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an au...
CVE-2023-20077MEDIUM6.5Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an au...
CVE-2023-20024HIGH7.5Multiple vulnerabilities in the web-based user interface of certain Cisco Small Business Series Switches could allow an ...
CVE-2023-20003HIGH8.8A vulnerability in the social login configuration option for the guest users of Cisco Business Wireless Access Points (A...
CVE-2023-31729CRITICAL9.8TOTOLINK A3300R v17.0.0cu.557 is vulnerable to Command Injection via /cgi-bin/cstecgi.cgi.
CVE-2023-29857MEDIUM5.3An issue in Teslamate v1.27.1 allows attackers to obtain sensitive information via directly accessing the teslamate link...
CVE-2023-30124MEDIUM5.4LavaLite v9.0.0 is vulnerable to Cross Site Scripting (XSS).
CVE-2023-29985CRITICAL9.8Sourcecodester Student Study Center Desk Management System v1.0 admin\reports\index.php#date_from has a SQL Injection vu...
CVE-2023-2319CRITICAL9.8It was discovered that an update for PCS package in RHBA-2023:2151 erratum released as part of Red Hat Enterprise Linux ...
CVE-2023-2295HIGH7.5A vulnerability was found in the libreswan library. This security issue occurs when an IKEv1 Aggressive Mode packet is r...
CVE-2023-1859MEDIUM4.7A use-after-free flaw was found in xen_9pfs_front_removet in net/9p/trans_xen.c in Xen transport for 9pfs in the Linux K...
CVE-2023-2731MEDIUM5.5A NULL pointer dereference flaw was found in Libtiff's LZWDecode() function in the libtiff/tif_lzw.c file. This flaw all...
CVE-2023-2491HIGH7.8A flaw was found in the Emacs text editor. Processing a specially crafted org-mode code with the "org-babel-execute:late...
CVE-2023-2203HIGH8.8A flaw was found in the WebKitGTK package. An improper input validation issue may lead to a use-after-free vulnerability...
CVE-2023-1972MEDIUM6.5A potential heap based buffer overflow was found in _bfd_elf_slurp_version_tables() in bfd/elf.c. This may lead to loss ...
CVE-2023-2780CRITICAL9.8Path Traversal: '\..\filename' in GitHub repository mlflow/mlflow prior to 2.3.1.
CVE-2023-32767HIGH7.5The web interface of Symcon IP-Symcon before 6.3 (i.e., before 2023-05-12) allows a remote attacker to read sensitive fi...
CVE-2023-30191CRITICAL9.8PrestaShop cdesigner < 3.1.9 is vulnerable to SQL Injection via CdesignerTraitementModuleFrontController::initContent().
CVE-2023-2776CRITICAL9.8A vulnerability was found in code-projects Simple Photo Gallery 1.0. It has been declared as critical. This vulnerabilit...
CVE-2023-2775HIGH8.8A vulnerability was found in code-projects Bus Dispatch and Information System 1.0. It has been classified as critical. ...
CVE-2023-2774CRITICAL9.8A vulnerability was found in code-projects Bus Dispatch and Information System 1.0 and classified as critical. Affected ...
CVE-2023-29837MEDIUM6.1Cross Site Scripting vulnerability found in Exelysis Unified Communication Solution (EUCS) v.1.0 allows a remote attacke...
CVE-2023-27233HIGH8.8Piwigo before 13.6.0 was discovered to contain a SQL injection vulnerability via the order[0][dir] parameter at user_lis...
CVE-2023-2773HIGH8.8A vulnerability has been found in code-projects Bus Dispatch and Information System 1.0 and classified as critical. Affe...
CVE-2023-2772HIGH8.8A vulnerability, which was classified as critical, was found in SourceCodester Budget and Expense Tracker System 1.0. Af...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now