2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-51638 | CRITICAL | 9.8 | 1.3% | Nov 22, 2024 | Allegra Hard-coded Credentials Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass... |
| CVE-2023-51635 | HIGH | 8.8 | 1.3% | Nov 22, 2024 | NETGEAR RAX30 fing_dil Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows networ... |
| CVE-2023-51634 | HIGH | 7.5 | 0.6% | Nov 22, 2024 | NETGEAR RAX30 Improper Certificate Validation Remote Code Execution Vulnerability. This vulnerability allows network-adj... |
| CVE-2023-39470 | HIGH | 7.2 | 1.7% | Nov 22, 2024 | PaperCut NG print.script.sandboxed Exposed Dangerous Function Remote Code Execution Vulnerability. This vulnerability al... |
| CVE-2023-24467 | CRITICAL | 9.8 | 1.1% | Nov 22, 2024 | Possible Command Injection in iManager GET parameter has been discovered in OpenText™ iManager 3.2.6.0000. |
| CVE-2023-24466 | CRITICAL | 9.8 | 0.5% | Nov 22, 2024 | Possible XML External Entity Injection in iManager GET parameter has been discovered in OpenText™ iManager 3.2.6.0200... |
| CVE-2023-27609 | MEDIUM | 4.8 | 0.3% | Nov 19, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in NetTantra W... |
| CVE-2023-21270 | HIGH | 7.8 | 0.1% | Nov 19, 2024 | In restorePermissionState of PermissionManagerServiceImpl.java, there is a possible way for an app to keep permissions t... |
| CVE-2023-52921 | HIGH | 7.8 | 0.2% | Nov 19, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix possible UAF in amdgpu_cs_pass1() ... |
| CVE-2023-49952 | HIGH | 7.5 | 0.5% | Nov 18, 2024 | Mastodon 4.1.x before 4.1.17 and 4.2.x before 4.2.9 allows a bypass of rate limiting via a crafted HTTP request header. |
| CVE-2023-39180 | HIGH | 7.5 | 1.4% | Nov 18, 2024 | A flaw was found within the handling of SMB2_READ commands in the kernel ksmbd module. The issue results from not releas... |
| CVE-2023-39179 | HIGH | 7.5 | 1.1% | Nov 18, 2024 | A flaw was found within the handling of SMB2 read requests in the kernel ksmbd module. The issue results from the lack o... |
| CVE-2023-39176 | HIGH | 7.5 | 0.7% | Nov 18, 2024 | A flaw was found within the parsing of SMB2 requests that have a transform header in the kernel ksmbd module. The issue ... |
| CVE-2023-43091 | CRITICAL | 9.8 | 0.8% | Nov 17, 2024 | A flaw was found in GNOME Maps, which is vulnerable to a code injection attack via its service.json configuration file. ... |
| CVE-2023-6110 | MEDIUM | 5.5 | 0.5% | Nov 17, 2024 | A flaw was found in OpenStack. When a user tries to delete a non-existing access rule in it's scope, it deletes other ex... |
| CVE-2023-4639 | HIGH | 7.4 | 1.1% | Nov 17, 2024 | A flaw was found in Undertow, which incorrectly parses cookies with certain value-delimiting characters in incoming requ... |
| CVE-2023-1419 | MEDIUM | 5.9 | 0.4% | Nov 17, 2024 | A script injection vulnerability was found in the Debezium database connector, where it does not properly sanitize some ... |
| CVE-2023-0657 | LOW | 3.4 | 0.3% | Nov 17, 2024 | A flaw was found in Keycloak. This issue occurs due to improperly enforcing token types when validating signatures local... |
| CVE-2023-20094 | MEDIUM | 4.3 | 0.3% | Nov 15, 2024 | A vulnerability in Cisco TelePresence CE and RoomOS could allow an unauthenticated, adjacent attacker to view sensitive ... |
| CVE-2023-20093 | MEDIUM | 4.4 | 0.2% | Nov 15, 2024 | Three vulnerabilities in the CLI of Cisco TelePresence CE and RoomOS could allow an authenticated, local attacker to ove... |
| CVE-2023-20092 | MEDIUM | 4.4 | 0.2% | Nov 15, 2024 | Three vulnerabilities in the CLI of Cisco TelePresence CE and RoomOS could allow an authenticated, local attacker to ove... |
| CVE-2023-20091 | MEDIUM | 5.1 | 0.2% | Nov 15, 2024 | A vulnerability in the CLI of Cisco TelePresence CE and RoomOS could allow an authenticated, local attacker to overwrite... |
| CVE-2023-20090 | MEDIUM | 6.7 | 0.2% | Nov 15, 2024 | A vulnerability in Cisco TelePresence CE and RoomOS could allow an authenticated, local attacker to elevate privileges t... |
| CVE-2023-20060 | MEDIUM | 6.1 | 0.5% | Nov 15, 2024 | A vulnerability in the web-based management interface of Cisco Prime Collaboration Deployment could allow an unauthentic... |
| CVE-2023-20039 | MEDIUM | 5.5 | 0.2% | Nov 15, 2024 | A vulnerability in Cisco IND could allow an authenticated, local attacker to read application data. This vulnerabilit... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now