7.3
    High

    CVE-2023-24059

    Last Modified: 2 Apr 2025

    Grand Theft Auto V for PC allows attackers to achieve partial remote code execution or modify files on a PC, as exploited in the wild in January 2023.

    Published:22 Jan 2023
    8.1
    High

    CVE-2023-24057

    Last Modified: 1 Apr 2025

    HL7 (Health Level 7) FHIR Core Libraries before 5.6.92 allow attackers to extract files into arbitrary directories via directory traversal from a crafted ZIP or TGZ archive (for a prepackaged terminology cache, NPM package, or comparison archive).

    Published:24 Jan 2023
    5.5
    Medium

    CVE-2023-24055

    Last Modified: 21 Nov 2024

    KeePass through 2.53 (in a default installation) allows an attacker, who has write access to the XML configuration file, to obtain the cleartext passwords by adding an export trigger. NOTE: the vendor's position is that the password database is not intended to be secure against an attacker who has that level of access to the local PC.

    Published:22 Jan 2023
    6.1
    Medium

    CVE-2023-24044

    Last Modified: 2 Apr 2025

    A Host Header Injection issue on the Login page of Plesk Obsidian through 18.0.49 allows attackers to redirect users to malicious websites via a Host request header. NOTE: the vendor's position is "the ability to use arbitrary domain names to access the panel is an intended feature."

    Published:22 Jan 2023
    8.2
    High

    CVE-2023-24012

    Last Modified: 15 Apr 2026

    An attacker can arbitrarily craft malicious DDS Participants (or ROS 2 Nodes) with valid certificates to compromise and get full control of the attacked secure DDS databus system by exploiting vulnerable attributes in the configuration of PKCS#7 certificate’s validation. This is caused by a non-compliant implementation of permission document verification used by some DDS vendors. Specifically, an improper use of the OpenSSL PKCS7_verify function used to validate S/MIME signatures.

    Published:9 Jan 2025
    7.5
    High

    CVE-2023-23969

    Last Modified: 27 Mar 2025

    In Django 3.2 before 3.2.17, 4.0 before 4.0.9, and 4.1 before 4.1.6, the parsed values of Accept-Language headers are cached in order to avoid repetitive parsing. This leads to a potential denial-of-service vector via excessive memory usage if the raw value of Accept-Language headers is very large.

    Published:1 Feb 2023
    6.1
    Medium

    CVE-2023-23956

    Last Modified: 19 Jun 2023

    A user can supply malicious HTML and JavaScript code that will be executed in the client browser

    Source:Harshit Joshi
    Published:30 May 2023
    6.2
    Medium

    CVE-2023-23946

    Last Modified: 13 Feb 2025

    Git, a revision control system, is vulnerable to path traversal prior to versions 2.39.2, 2.38.4, 2.37.6, 2.36.5, 2.35.7, 2.34.7, 2.33.7, 2.32.6, 2.31.7, and 2.30.8. By feeding a crafted input to `git apply`, a path outside the working tree can be overwritten as the user who is running `git apply`. A fix has been prepared and will appear in v2.39.2, v2.38.4, v2.37.6, v2.36.5, v2.35.7, v2.34.7, v2.33.7, v2.32.6, v2.31.7, and v2.30.8. As a workaround, use `git apply --stat` to inspect a patch before applying; avoid applying one that creates a symbolic link and then creates a file beyond the symbolic link.

    Published:14 Feb 2023
    10
    Critical

    CVE-2023-23924

    Last Modified: 10 Mar 2025

    Dompdf is an HTML to PDF converter. The URI validation on dompdf 2.0.1 can be bypassed on SVG parsing by passing `<image>` tags with uppercase letters. This may lead to arbitrary object unserialize on PHP < 8, through the `phar` URL wrapper. An attacker can exploit the vulnerability to call arbitrary URL with arbitrary protocols, if they can provide a SVG file to dompdf. In PHP versions before 8.0.0, it leads to arbitrary unserialize, that will lead to the very least to an arbitrary file deletion and even remote code execution, depending on classes that are available.

    Published:31 Jan 2023
    5.3
    Medium

    CVE-2023-23752

    Last Modified: 13 Apr 2023

    An issue was discovered in Joomla! 4.0.0 through 4.2.7. An improper access check allows unauthorized access to webservice endpoints.

    Source:Alexandre ZANNI
    Published:16 Feb 2023
    5
    Medium

    CVE-2023-23638

    Last Modified: 21 Nov 2024

    A deserialization vulnerability existed when dubbo generic invoke, which could lead to malicious code execution. This issue affects Apache Dubbo 2.7.x version 2.7.21 and prior versions; Apache Dubbo 3.0.x version 3.0.13 and prior versions; Apache Dubbo 3.1.x version 3.1.5 and prior versions.

    Published:8 Mar 2023
    8.8
    High

    CVE-2023-23583

    Last Modified: 16 Dec 2025

    Sequence of processor instructions leads to unexpected behavior for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege and/or information disclosure and/or denial of service via local access.

    Published:14 Nov 2023
    8.6
    High

    CVE-2023-23531

    Last Modified: 11 Mar 2025

    The issue was addressed with improved memory handling. This issue is fixed in macOS Ventura 13.2, iOS 16.3 and iPadOS 16.3. An app may be able to execute arbitrary code out of its sandbox or with certain elevated privileges.

    Published:27 Feb 2023
    9.8
    Critical

    CVE-2023-23488

    Last Modified: 24 Apr 2023

    The Paid Memberships Pro WordPress Plugin, version < 2.9.8, is affected by an unauthenticated SQL injection vulnerability in the 'code' parameter of the '/pmpro/v1/order' REST route.

    Source:r3nt0n
    Published:20 Jan 2023
    4.5
    Medium

    CVE-2023-23408

    Last Modified: 26 Jun 2023

    Azure Apache Ambari Spoofing Vulnerability

    Source:Amirhossein Bahramizadeh
    Published:14 Mar 2023
    7.8
    High

    CVE-2023-23399

    Last Modified: 8 Apr 2023

    Microsoft Excel Remote Code Execution Vulnerability

    Source:nu11secur1ty
    Published:14 Mar 2023
    9.8
    Critical

    CVE-2023-23397

    Last Modified: 27 Oct 2025

    Microsoft Outlook Elevation of Privilege Vulnerability

    Published:14 Mar 2023
    6.5
    Medium

    CVE-2023-23396

    Last Modified: 28 Feb 2025

    Microsoft Excel Denial of Service Vulnerability

    Published:14 Mar 2023
    8.8
    High

    CVE-2023-23388

    Last Modified: 1 Jan 2025

    Windows Bluetooth Driver Elevation of Privilege Vulnerability

    Published:14 Mar 2023
    9.8
    Critical

    CVE-2023-23333

    Last Modified: 14 Mar 2024

    There is a command injection vulnerability in SolarView Compact through 6.00, attackers can execute commands by bypassing internal restrictions through downloader.php.

    Source:ByteHunter
    Published:6 Feb 2023
    6.1
    Medium

    CVE-2023-23286

    Last Modified: 5 Apr 2023

    Cross Site Scripting (XSS) vulnerability in Provide server 14.4 allows attackers to execute arbitrary code through the server-log via username field from the login form.

    Source:Andreas Finstad
    Published:10 Feb 2023
    9.8
    Critical

    CVE-2023-23279

    Last Modified: 18 Mar 2025

    Canteen Management System 1.0 is vulnerable to SQL Injection via /php_action/getOrderReport.php.

    Published:17 Feb 2023
    7.2
    High

    CVE-2023-23192

    Last Modified: 25 Feb 2025

    IS Decisions UserLock MFA 11.01 is vulnerable to authentication bypass using scheduled task.

    Published:23 Mar 2023
    6.5
    Medium

    CVE-2023-23169

    Last Modified: 27 Jan 2025

    Synapsoft pdfocus 1.17 is vulnerable to local file inclusion and server-side request forgery Directory Traversal.

    Published:12 May 2023
    9.8
    Critical

    CVE-2023-23163

    Last Modified: 28 Apr 2023

    Art Gallery Management System Project v1.0 was discovered to contain a SQL injection vulnerability via the editid parameter.

    Source:Rahul Patwari
    Published:10 Feb 2023
    9.8
    Critical

    CVE-2023-23162

    Last Modified: 28 Apr 2023

    Art Gallery Management System Project v1.0 was discovered to contain a SQL injection vulnerability via the cid parameter at product.php.

    Source:Rahul Patwari
    Published:10 Feb 2023
    6.1
    Medium

    CVE-2023-23161

    Last Modified: 28 Apr 2023

    A reflected cross-site scripting (XSS) vulnerability in Art Gallery Management System Project v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the artname parameter under ART TYPE option in the navigation bar.

    Source:Rahul Patwari
    Published:10 Feb 2023
    9.8
    Critical

    CVE-2023-23156

    Last Modified: 28 Apr 2023

    Art Gallery Management System Project in PHP 1.0 was discovered to contain a SQL injection vulnerability via the pid parameter in the single-product page.

    Source:Yogesh Verma
    Published:27 Feb 2023
    Unknown

    CVE-2023-23138

    https://github.com/OmarAtallahh/CVE-2023-23138

    7.5
    High

    CVE-2023-22974

    Last Modified: 12 Mar 2025

    A Path Traversal in setup.php in OpenEMR < 7.0.0 allows remote unauthenticated users to read arbitrary files by controlling a connection to an attacker-controlled MySQL server.

    Published:22 Feb 2023
    7.5
    High

    CVE-2023-22960

    Last Modified: 2 Apr 2025

    Lexmark products through 2023-01-10 have Improper Control of Interaction Frequency.

    Published:23 Jan 2023
    6.5
    Medium

    CVE-2023-22941

    Last Modified: 28 Feb 2025

    In Splunk Enterprise versions below 8.1.13, 8.2.10, and 9.0.4, an improperly-formatted ‘INGEST_EVAL’ parameter in a Field Transformation crashes the Splunk daemon (splunkd).

    Published:14 Feb 2023
    8.8
    High

    CVE-2023-22906

    Last Modified: 25 Nov 2024

    Hero Qubo HCD01_02_V1.38_20220125 devices allow TELNET access with root privileges by default, without a password.

    Published:3 Jul 2023
    9.8
    Critical

    CVE-2023-22894

    Last Modified: 7 Nov 2025

    Strapi through 4.5.5 allows attackers (with access to the admin panel) to discover sensitive user details by exploiting the query filter. The attacker can filter users by columns that contain sensitive information and infer a value from API responses. If the attacker has super admin access, then this can be exploited to discover the password hash and password reset token of all users. If the attacker has admin panel access to an account with permission to access the username and email of API users with a lower privileged role (e.g., Editor or Author), then this can be exploited to discover sensitive information for all API users but not other admin accounts.

    Published:19 Apr 2023
    9.8
    Critical

    CVE-2023-22884

    Last Modified: 31 Mar 2025

    Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in Apache Software Foundation Apache Airflow, Apache Software Foundation Apache Airflow MySQL Provider.This issue affects Apache Airflow: before 2.5.1; Apache Airflow MySQL Provider: before 4.0.0.

    Published:21 Jan 2023
    9.8
    Critical

    CVE-2023-22855

    Last Modified: 5 Apr 2023

    Kardex Mlog MCC 5.7.12+0-a203c2a213-master allows remote code execution. It spawns a web interface listening on port 8088. A user-controllable path is handed to a path-concatenation method (Path.Combine from .NET) without proper sanitisation. This yields the possibility of including local files, as well as remote files on SMB shares. If one provides a file with the extension .t4, it is rendered with the .NET templating engine mono/t4, which can execute code.

    Source:Patrick Hener
    Published:15 Feb 2023
    7.8
    High

    CVE-2023-22809

    Last Modified: 3 Apr 2023

    In Sudo before 1.9.12p2, the sudoedit (aka -e) feature mishandles extra arguments passed in the user-provided environment variables (SUDO_EDITOR, VISUAL, and EDITOR), allowing a local attacker to append arbitrary entries to the list of files to process. This can lead to privilege escalation. Affected versions are 1.8.0 through 1.9.12.p1. The problem exists because a user-specified editor may contain a "--" argument that defeats a protection mechanism, e.g., an EDITOR='vim -- /path/to/extra/file' value.

    Source:n3m1.sys
    Published:18 Jan 2023
    8
    High

    CVE-2023-22726

    Last Modified: 10 Mar 2025

    act is a project which allows for local running of github actions. The artifact server that stores artifacts from Github Action runs does not sanitize path inputs. This allows an attacker to download and overwrite arbitrary files on the host from a Github Action. This issue may lead to privilege escalation. The /upload endpoint is vulnerable to path traversal as filepath is user controlled, and ultimately flows into os.Mkdir and os.Open. The /artifact endpoint is vulnerable to path traversal as the path is variable is user controlled, and the specified file is ultimately returned by the server. This has been addressed in version 0.2.40. Users are advised to upgrade. Users unable to upgrade may, during implementation of Open and OpenAtEnd for FS, ensure to use ValidPath() to check against path traversal or clean the user-provided paths manually.

    Published:20 Jan 2023
    8.8
    High

    CVE-2023-22629

    Last Modified: 6 Apr 2023

    An issue was discovered in TitanFTP through 1.94.1205. The move-file function has a path traversal vulnerability in the newPath parameter. An authenticated attacker can upload any file and then move it anywhere on the server's filesystem.

    Source:Andreas Finstad
    Published:14 Feb 2023
    5.3
    Medium

    CVE-2023-22622

    Last Modified: 7 Apr 2025

    WordPress through 6.1.1 depends on unpredictable client visits to cause wp-cron.php execution and the resulting security updates, and the source code describes "the scenario where a site may not receive enough visits to execute scheduled tasks in a timely manner," but neither the installation guide nor the security guide mentions this default behavior, or alerts the user about security risks on installations with very few visits.

    Published:5 Jan 2023
    10
    Critical

    CVE-2023-22621

    Last Modified: 7 Nov 2025

    Strapi through 4.5.5 allows authenticated Server-Side Template Injection (SSTI) that can be exploited to execute arbitrary code on the server. A remote attacker with access to the Strapi admin panel can inject a crafted payload that executes code on the server into an email template that bypasses the validation checks that should prevent code execution.

    Published:19 Apr 2023
    7.5
    High

    CVE-2023-22551

    Last Modified: 7 Apr 2025

    The FTP (aka "Implementation of a simple FTP client and server") project through 96c1a35 allows remote attackers to cause a denial of service (memory consumption) by engaging in client activity, such as establishing and then terminating a connection. This occurs because malloc is used but free is not.

    Published:1 Jan 2023
    9.8
    Critical

    CVE-2023-22527

    Last Modified: 24 Oct 2025

    A template injection vulnerability on older versions of Confluence Data Center and Server allows an unauthenticated attacker to achieve RCE on an affected instance. Customers using an affected version must take immediate action. Most recent supported versions of Confluence Data Center and Server are not affected by this vulnerability as it was ultimately mitigated during regular version updates. However, Atlassian recommends that customers take care to install the latest version to protect their instances from non-critical vulnerabilities outlined in Atlassian’s January Security Bulletin.

    Published:16 Jan 2024
    9.8
    Critical

    CVE-2023-22524

    Last Modified: 25 Feb 2026

    Certain versions of the Atlassian Companion App for MacOS were affected by a remote code execution vulnerability. An attacker could utilize WebSockets to bypass Atlassian Companion’s blocklist and MacOS Gatekeeper to allow execution of code.

    Published:6 Dec 2023
    9.8
    Critical

    CVE-2023-22518

    Last Modified: 24 Oct 2025

    All versions of Confluence Data Center and Server are affected by this unexploited vulnerability. This Improper Authorization vulnerability allows an unauthenticated attacker to reset Confluence and create a Confluence instance administrator account. Using this account, an attacker can then perform all administrative actions that are available to Confluence instance administrator leading to - but not limited to - full loss of confidentiality, integrity and availability.  Atlassian Cloud sites are not affected by this vulnerability. If your Confluence site is accessed via an atlassian.net domain, it is hosted by Atlassian and is not vulnerable to this issue.

    Published:31 Oct 2023
    9.8
    Critical

    CVE-2023-22515

    Last Modified: 25 Mar 2026

    Atlassian has been made aware of an issue reported by a handful of customers where external attackers may have exploited a previously unknown vulnerability in publicly accessible Confluence Data Center and Server instances to create unauthorized Confluence administrator accounts and access Confluence instances. Atlassian Cloud sites are not affected by this vulnerability. If your Confluence site is accessed via an atlassian.net domain, it is hosted by Atlassian and is not vulnerable to this issue.

    Published:4 Oct 2023
    8.1
    High

    CVE-2023-22496

    Last Modified: 10 Mar 2025

    Netdata is an open source option for real-time infrastructure monitoring and troubleshooting. An attacker with the ability to establish a streaming connection can execute arbitrary commands on the targeted Netdata agent. When an alert is triggered, the function `health_alarm_execute` is called. This function performs different checks and then enqueues a command by calling `spawn_enq_cmd`. This command is populated with several arguments that are not sanitized. One of them is the `registry_hostname` of the node for which the alert is raised. By providing a specially crafted `registry_hostname` as part of the health data that is streamed to a Netdata (parent) agent, an attacker can execute arbitrary commands at the remote host as a side-effect of the raised alert. Note that the commands are executed as the user running the Netdata Agent. This user is usually named `netdata`. The ability to run arbitrary commands may allow an attacker to escalate privileges by escalating other vulnerabilities in the system, as that user. The problem has been fixed in: Netdata agent v1.37 (stable) and Netdata agent v1.36.0-409 (nightly). As a workaround, streaming is not enabled by default. If you have previously enabled this, it can be disabled. Limiting access to the port on the recipient Agent to trusted child connections may mitigate the impact of this vulnerability.

    Published:14 Jan 2023
    8.8
    High

    CVE-2023-22493

    Last Modified: 10 Mar 2025

    RSSHub is an open source RSS feed generator. RSSHub is vulnerable to Server-Side Request Forgery (SSRF) attacks. This vulnerability allows an attacker to send arbitrary HTTP requests from the server to other servers or resources on the network. An attacker can exploit this vulnerability by sending a request to the affected routes with a malicious URL. An attacker could also use this vulnerability to send requests to internal or any other servers or resources on the network, potentially gain access to sensitive information that would not normally be accessible and amplifying the impact of the attack. The patch for this issue can be found in commit a66cbcf.

    Published:13 Jan 2023
    5.5
    Medium

    CVE-2023-22490

    Last Modified: 13 Feb 2025

    Git is a revision control system. Using a specially-crafted repository, Git prior to versions 2.39.2, 2.38.4, 2.37.6, 2.36.5, 2.35.7, 2.34.7, 2.33.7, 2.32.6, 2.31.7, and 2.30.8 can be tricked into using its local clone optimization even when using a non-local transport. Though Git will abort local clones whose source `$GIT_DIR/objects` directory contains symbolic links, the `objects` directory itself may still be a symbolic link. These two may be combined to include arbitrary files based on known paths on the victim's filesystem within the malicious repository's working copy, allowing for data exfiltration in a similar manner as CVE-2022-39253. A fix has been prepared and will appear in v2.39.2 v2.38.4 v2.37.6 v2.36.5 v2.35.7 v2.34.7 v2.33.7 v2.32.6, v2.31.7 and v2.30.8. If upgrading is impractical, two short-term workarounds are available. Avoid cloning repositories from untrusted sources with `--recurse-submodules`. Instead, consider cloning repositories without recursively cloning their submodules, and instead run `git submodule update` at each layer. Before doing so, inspect each new `.gitmodules` file to ensure that it does not contain suspicious module URLs.

    Published:14 Feb 2023
    6.1
    Medium

    CVE-2023-22432

    Last Modified: 7 Mar 2025

    Open redirect vulnerability exists in web2py versions prior to 2.23.1. When using the tool, a web2py user may be redirected to an arbitrary website by accessing a specially crafted URL. As a result, the user may become a victim of a phishing attack.

    Published:5 Mar 2023