2023 CVE Vulnerabilities

31,411 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-2771HIGH8.8A vulnerability, which was classified as critical, has been found in SourceCodester Online Exam System 1.0. This issue a...
CVE-2023-31135MEDIUM5.5Dgraph is an open source distributed GraphQL database. Existing Dgraph audit logs are vulnerable to brute force attacks ...
CVE-2023-2770HIGH8.8A vulnerability classified as critical was found in SourceCodester Online Exam System 1.0. This vulnerability affects un...
CVE-2023-2769HIGH8.8A vulnerability classified as critical has been found in SourceCodester Service Provider Management System 1.0. This aff...
CVE-2023-26044MEDIUM5.3react/http is an event-driven, streaming HTTP client and server implementation for ReactPHP. Previous versions of React...
CVE-2023-24805HIGH8.8cups-filters contains backends, filters, and other software required to get the cups printing service working on operati...
CVE-2023-2768MEDIUM5.4A vulnerability was found in Sucms 1.0. It has been rated as problematic. Affected by this issue is some unknown functio...
CVE-2023-2766HIGH7.5A vulnerability was found in Weaver OA 9.5 and classified as problematic. This issue affects some unknown processing of ...
CVE-2023-2765HIGH7.5A vulnerability has been found in Weaver OA up to 9.5 and classified as problematic. This vulnerability affects unknown ...
CVE-2023-22348MEDIUM4.3Improper Authorization in RestAPI in Checkmk GmbH's Checkmk versions <2.1.0p28 and <2.2.0b8 allows remote authenticated ...
CVE-2023-31725MEDIUM5.5yasm 1.3.0.55.g101bc was discovered to contain a heap-use-after-free via the function expand_mmac_params at yasm/modules...
CVE-2023-31724HIGH7.8yasm 1.3.0.55.g101bc was discovered to contain a segmentation violation via the function do_directive at /nasm/nasm-pp.c...
CVE-2023-31723MEDIUM5.5yasm 1.3.0.55.g101bc was discovered to contain a segmentation violation via the function expand_mmac_params at /nasm/nas...
CVE-2023-31722HIGH7.8There exists a heap buffer overflow in nasm 2.16.02rc1 (GitHub commit: b952891).
CVE-2023-31701HIGH8.8TP-Link TL-WPA4530 KIT V2 (EU)_170406 and V2 (EU)_161115 is vulnerable to Command Injection via _httpRpmPlcDeviceRemove.
CVE-2023-31700HIGH8.8TP-Link TL-WPA4530 KIT V2 (EU)_170406 and V2 (EU)_161115 is vulnerable to Command Injection via _httpRpmPlcDeviceAdd.
CVE-2023-31904HIGH7.5savysoda Wifi HD Wireless Disk Drive 11 is vulnerable to Local File Inclusion.
CVE-2023-31903CRITICAL9.8GuppY CMS 6.00.10 is vulnerable to Unrestricted File Upload which allows remote attackers to execute arbitrary code by u...
CVE-2023-31902CRITICAL9.8RPA Technology Mobile Mouse 3.6.0.4 is vulnerable to Remote Code Execution (RCE).
CVE-2023-31703CRITICAL9Cross Site Scripting (XSS) in the edit user form in Microworld Technologies eScan management console 14.0.1400.2281 allo...
CVE-2023-31702HIGH7.2SQL injection in the View User Profile in MicroWorld eScan Management Console 14.0.1400.2281 allows remote attacker to d...
CVE-2023-31699MEDIUM4.8ChurchCRM v4.5.4 is vulnerable to Reflected Cross-Site Scripting (XSS) via image file.
CVE-2023-31698MEDIUM5.4Bludit v3.14.1 is vulnerable to Stored Cross Site Scripting (XSS) via SVG file on site logo. NOTE: the product's securit...
CVE-2023-30438HIGH8.8An internally discovered vulnerability in PowerVM on IBM Power9 and Power10 systems could allow an attacker with privile...
CVE-2023-2679MEDIUM4.3Data leakage in Adobe connector in Snow Software SPE 9.27.0 on Windows allows privileged user to observe other users dat...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now