2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-31614 | HIGH | 7.5 | 0.9% | May 15, 2023 | An issue in the mp_box_deserialize_string function in openlink virtuoso-opensource v7.2.9 allows attackers to cause a De... |
| CVE-2023-31613 | HIGH | 7.5 | 0.9% | May 15, 2023 | An issue in the __nss_database_lookup component of openlink virtuoso-opensource v7.2.9 allows attackers to cause a Denia... |
| CVE-2023-31612 | HIGH | 7.5 | 0.9% | May 15, 2023 | An issue in the dfe_qexp_list component of openlink virtuoso-opensource v7.2.9 allows attackers to cause a Denial of Ser... |
| CVE-2023-31611 | HIGH | 7.5 | 0.9% | May 15, 2023 | An issue in the __libc_longjmp component of openlink virtuoso-opensource v7.2.9 allows attackers to cause a Denial of Se... |
| CVE-2023-31610 | HIGH | 7.5 | 0.9% | May 15, 2023 | An issue in the _IO_default_xsputn component of openlink virtuoso-opensource v7.2.9 allows attackers to cause a Denial o... |
| CVE-2023-31609 | HIGH | 7.5 | 0.9% | May 15, 2023 | An issue in the dfe_unit_col_loci component of openlink virtuoso-opensource v7.2.9 allows attackers to cause a Denial of... |
| CVE-2023-31608 | HIGH | 7.5 | 0.9% | May 15, 2023 | An issue in the artm_div_int component of openlink virtuoso-opensource v7.2.9 allows attackers to cause a Denial of Serv... |
| CVE-2023-31607 | HIGH | 7.5 | 0.9% | May 15, 2023 | An issue in the __libc_malloc component of openlink virtuoso-opensource v7.2.9 allows attackers to cause a Denial of Ser... |
| CVE-2023-29861 | CRITICAL | 9.8 | 1.8% | May 15, 2023 | An issue found in FLIR-DVTEL version not specified allows a remote attacker to execute arbitrary code via a crafted requ... |
| CVE-2023-31845 | HIGH | 7.2 | 0.8% | May 15, 2023 | Sourcecodester Faculty Evaluation System v1.0 is vulnerable to SQL Injection via /eval/admin/manage_class.php?id=. |
| CVE-2023-31844 | HIGH | 7.2 | 0.8% | May 15, 2023 | Sourcecodester Faculty Evaluation System v1.0 is vulnerable to SQL Injection via /eval/admin/manage_subject.php?id=. |
| CVE-2023-31843 | HIGH | 7.2 | 0.8% | May 15, 2023 | Sourcecodester Faculty Evaluation System v1.0 is vulnerable to SQL Injection via /eval/admin/view_faculty.php?id=. |
| CVE-2023-31842 | HIGH | 7.2 | 0.8% | May 15, 2023 | Sourcecodester Faculty Evaluation System v1.0 is vulnerable to SQL Injection via /eval/index.php?page=edit_faculty&id=. |
| CVE-2023-2180 | HIGH | 7.5 | 0.9% | May 15, 2023 | The KIWIZ Invoices Certification & PDF System WordPress plugin through 2.1.3 does not validate the path of files to be d... |
| CVE-2023-2179 | MEDIUM | 6.5 | 0.3% | May 15, 2023 | The WooCommerce Order Status Change Notifier WordPress plugin through 1.1.0 does not have authorisation and CSRF when up... |
| CVE-2023-2009 | MEDIUM | 4.8 | 0.8% | May 15, 2023 | Plugin does not sanitize and escape the URL field in the Pretty Url WordPress plugin through 1.5.4 settings, which could... |
| CVE-2023-29862 | CRITICAL | 9.8 | 1.9% | May 15, 2023 | An issue found in Agasio-Camera device version not specified allows a remote attacker to execute arbitrary code via the ... |
| CVE-2023-23682 | MEDIUM | 4.8 | 0.5% | May 15, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Snap Creek Software EZP Maintenance Mode plugin <= 1.0... |
| CVE-2023-1915 | MEDIUM | 6.1 | 0.5% | May 15, 2023 | The Thumbnail carousel slider WordPress plugin before 1.1.10 does not sanitise and escape some parameters before outputt... |
| CVE-2023-1890 | MEDIUM | 6.1 | 1.1% | May 15, 2023 | The Tablesome WordPress plugin before 1.0.9 does not escape various generated URLs, before outputting them in attributes... |
| CVE-2023-1839 | MEDIUM | 4.8 | 0.5% | May 15, 2023 | The Product Addons & Fields for WooCommerce WordPress plugin before 32.0.6 does not sanitize and escape some of its sett... |
| CVE-2023-1835 | MEDIUM | 6.1 | 0.9% | May 15, 2023 | The Ninja Forms Contact Form WordPress plugin before 3.6.22 does not properly escape user input before outputting it bac... |
| CVE-2023-1596 | MEDIUM | 6.1 | 0.5% | May 15, 2023 | The tagDiv Composer WordPress plugin before 4.0 does not sanitise and escape a parameter before outputting it back in th... |
| CVE-2023-1549 | HIGH | 7.2 | 16.9% | May 15, 2023 | The Ad Inserter WordPress plugin before 2.7.27 unserializes user input provided via the settings, which could allow high... |
| CVE-2023-1207 | HIGH | 7.2 | 0.9% | May 15, 2023 | This HTTP Headers WordPress plugin before 1.18.8 has an import functionality which executes arbitrary SQL on the server,... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now