2023 CVE Vulnerabilities

31,411 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-2642CRITICAL9.8A vulnerability classified as critical has been found in SourceCodester Online Exam System 1.0. This affects an unknown ...
CVE-2023-2641CRITICAL9.8A vulnerability was found in SourceCodester Online Internship Management System 1.0. It has been rated as critical. Affe...
CVE-2023-31477HIGH7.5A path traversal issue was discovered on GL.iNet devices before 3.216. Through the file sharing feature, it is possible ...
CVE-2023-31442HIGH7.5In Lightbend Akka before 2.8.1, the async-dns resolver (used by Discovery in DNS mode and transitively by Cluster Bootst...
CVE-2023-30172HIGH7.5A directory traversal vulnerability in the /get-artifact API method of the mlflow platform up to v2.0.1 allows attackers...
CVE-2023-29986MEDIUM5.3spring-boot-actuator-logview 0.2.13 allows Directory Traversal to sibling directories via LogViewEndpoint.view.
CVE-2023-32080HIGH8.8Wings is the server control plane for Pterodactyl Panel. A vulnerability affecting versions prior to 1.7.5 and versions ...
CVE-2023-31166MEDIUM4.3An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in the Schweitzer Engine...
CVE-2023-31165MEDIUM5.4 An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in the Schweitzer...
CVE-2023-31164MEDIUM5.4 An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in the Schweitzer...
CVE-2023-31163MEDIUM5.4 An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in the Schweitzer...
CVE-2023-31162MEDIUM4.3An Improper Input Validation vulnerability in the Schweitzer Engineering Laboratories Real-Time Automation Controller (S...
CVE-2023-31161HIGH8.8An Improper Input Validation vulnerability in the Schweitzer Engineering Laboratories Real-Time Automation Controller (S...
CVE-2023-31160MEDIUM5.4 An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in the Schweitzer...
CVE-2023-31159MEDIUM5.4 An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in the Schweitzer...
CVE-2023-31158MEDIUM5.4 An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in the Schweitzer...
CVE-2023-31157MEDIUM5.4 An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in the Schweitzer...
CVE-2023-31156MEDIUM5.4 An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in the Schweitzer...
CVE-2023-31155MEDIUM5.4 An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in the Schweitzer...
CVE-2023-31154MEDIUM5.4 An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in the Schweitzer...
CVE-2023-31153MEDIUM5.4An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in the Schweitzer ...
CVE-2023-31152HIGH8.8An Authentication Bypass Using an Alternate Path or Channel vulnerability in the Schweitzer Engineering Laboratories Rea...
CVE-2023-31151MEDIUM4.2An Improper Certificate Validation vulnerability in the Schweitzer Engineering Laboratories Real-Time Automation Contr...
CVE-2023-31150MEDIUM6.5 A Storing Passwords in a Recoverable Format vulnerability in the Schweitzer Engineering Laboratories Real-Time Automati...
CVE-2023-31149HIGH8.8 An Improper Input Validation vulnerability in the Schweitzer Engineering Laboratories Real-Time Automation Controller...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now