2023 CVE Vulnerabilities

31,411 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-29242HIGH7.8Improper access control for Intel(R) oneAPI Toolkits before version 2021.1 Beta 10 may allow an authenticated user to po...
CVE-2023-23867MEDIUM5.4Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Gautam Thapar Button Builder – Buttons X plugin ...
CVE-2023-32081MEDIUM6.5Vert.x STOMP is a vert.x implementation of the STOMP specification that provides a STOMP server and client. From version...
CVE-2023-32073HIGH8.8WWBN AVideo is an open source video platform. In versions 12.4 and prior, a command injection vulnerability exists at `p...
CVE-2023-31922HIGH7.5QuickJS commit 2788d71 was discovered to contain a stack-overflow via the component js_proxy_isArray at quickjs.c.
CVE-2023-31921MEDIUM5.5Jerryscript 3.0 (commit 05dbbd1) was discovered to contain an Assertion Failure via the ecma_big_uint_div_mod at jerry-c...
CVE-2023-31920MEDIUM5.5Jerryscript 3.0 (commit 05dbbd1) was discovered to contain an Assertion Failure via the vm_loop at jerry-core/vm/vm.c.
CVE-2023-31919MEDIUM5.5Jerryscript 3.0 (commit 05dbbd1) was discovered to contain an Assertion Failure via the jcontext_raise_exception at jerr...
CVE-2023-31918MEDIUM5.5Jerryscript 3.0 (commit 1a2c047) was discovered to contain an Assertion Failure via the parser_parse_function_arguments ...
CVE-2023-31916MEDIUM5.5Jerryscript 3.0 (commit 1a2c047) was discovered to contain an Assertion Failure via the jmem_heap_finalize at jerry-core...
CVE-2023-31914MEDIUM5.5Jerryscript 3.0 (commit 05dbbd1) was discovered to contain out-of-memory issue in malloc.
CVE-2023-31913MEDIUM5.5Jerryscript 3.0 *commit 1a2c047) was discovered to contain an Assertion Failure via the component parser_parse_class at ...
CVE-2023-27823CRITICAL9.8An authentication bypass in Optoma 1080PSTX C02 allows an attacker to access the administration console without valid cr...
CVE-2023-1934HIGH7.5The PnPSCADA system, a product of SDG Technologies CC, is afflicted by a critical unauthenticated error-based PostgreSQL...
CVE-2023-2682MEDIUM6.3A vulnerability was found in Caton Live up to 2023-04-26 and classified as critical. This issue affects some unknown pro...
CVE-2023-23444HIGH8.2Missing Authentication for Critical Function in SICK Flexi Classic and Flexi Soft Gateways with Partnumbers 1042193, 104...
CVE-2023-31985CRITICAL9.8A Command Injection vulnerability in Edimax Wireless Router N300 Firmware BR-6428NS_v4 allows attacker to execute arbitr...
CVE-2023-30246CRITICAL9.8SQL injection vulnerability found in Judging Management System v.1.0 allows a remote attacker to execute arbitrary code ...
CVE-2023-30130HIGH8.8An issue found in CraftCMS v.3.8.1 allows a remote attacker to execute arbitrary code via a crafted script to the Sectio...
CVE-2023-2512HIGH8.1Prior to version v1.20230419.0, the FormData API implementation was subject to an integer overflow. If a FormData instan...
CVE-2023-29983MEDIUM5.4Cross Site Scripting vulnerability found in Maximilian Vogt cmaps v.8.0 allows a remote attacker to execute arbitrary co...
CVE-2023-29820MEDIUM5.5An issue found in Webroot SecureAnywhere Endpoint Protection CE 23.1 v.9.0.33.39 and before allows a local attacker to a...
CVE-2023-29819MEDIUM5.5An issue found in Webroot SecureAnywhere Endpoint Protection CE 23.1 v.9.0.33.39 and before allows a local attacker to b...
CVE-2023-29818MEDIUM5.5An issue found in Webroot SecureAnywhere Endpoint Protection CE 23.1 v.9.0.33.39 and before allows a local attacker to b...
CVE-2023-29657HIGH8.8eXtplorer 2.1.15 is vulnerable to Insecure Permissions. File upload in file manager allows uploading zip file containing...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now