2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-31490 | HIGH | 7.5 | 2.2% | May 9, 2023 | An issue found in Frrouting bgpd v.8.4.2 allows a remote attacker to cause a denial of service via the bgp_attr_psid_sub... |
| CVE-2023-31489 | MEDIUM | 5.5 | 1.0% | May 9, 2023 | An issue found in Frrouting bgpd v.8.4.2 allows a remote attacker to cause a denial of service via the bgp_capability_ll... |
| CVE-2023-31476 | HIGH | 7.5 | 0.8% | May 9, 2023 | An issue was discovered on GL.iNet devices running firmware before 3.216. There is an arbitrary file write in which an e... |
| CVE-2023-31144 | MEDIUM | 6.1 | 0.4% | May 9, 2023 | Craft CMS is a content management system. Starting in version 3.0.0 and prior to versions 3.8.4 and 4.4.4, a malformed t... |
| CVE-2023-30088 | MEDIUM | 5.5 | 0.3% | May 9, 2023 | An issue found in Cesanta MJS v.1.26 allows a local attacker to cause a denial of service via the mjs_execute function i... |
| CVE-2023-30087 | MEDIUM | 5.5 | 0.3% | May 9, 2023 | Buffer Overflow vulnerability found in Cesanta MJS v.1.26 allows a local attacker to cause a denial of service via the m... |
| CVE-2023-30086 | MEDIUM | 5.5 | 0.4% | May 9, 2023 | Buffer Overflow vulnerability found in Libtiff V.4.0.7 allows a local attacker to cause a denial of service via the tiff... |
| CVE-2023-30085 | MEDIUM | 5.5 | 0.2% | May 9, 2023 | Buffer Overflow vulnerability found in Libming swftophp v.0.4.8 allows a local attacker to cause a denial of service via... |
| CVE-2023-30084 | MEDIUM | 5.5 | 0.2% | May 9, 2023 | An issue found in libming swftophp v.0.4.8 allows a local attacker to cause a denial of service via the stackVal functio... |
| CVE-2023-30083 | MEDIUM | 5.5 | 0.2% | May 9, 2023 | Buffer Overflow vulnerability found in Libming swftophp v.0.4.8 allows a local attacker to cause a denial of service via... |
| CVE-2023-25834 | MEDIUM | 5.4 | 0.3% | May 9, 2023 | Changes to user permissions in Portal for ArcGIS 10.9.1 and below are incompletely applied in specific use cases. This i... |
| CVE-2023-32060 | MEDIUM | 6.5 | 0.5% | May 9, 2023 | DHIS2 Core contains the service layer and Web API for DHIS2, an information system for data capture. Starting in the 2.3... |
| CVE-2023-31143 | CRITICAL | 9.8 | 0.7% | May 9, 2023 | mage-ai is an open-source data pipeline tool for transforming and integrating data. Those who use Mage starting in versi... |
| CVE-2023-31139 | HIGH | 7.5 | 0.6% | May 9, 2023 | DHIS2 Core contains the service layer and Web API for DHIS2, an information system for data capture. Starting in the 2.3... |
| CVE-2023-31138 | MEDIUM | 6.5 | 0.6% | May 9, 2023 | DHIS2 Core contains the service layer and Web API for DHIS2, an information system for data capture. Starting in the 2.3... |
| CVE-2023-31982 | HIGH | 7.8 | 0.3% | May 9, 2023 | Sngrep v1.6.0 was discovered to contain a heap buffer overflow via the function capture_packet_reasm_ip at /src/capture.... |
| CVE-2023-31981 | HIGH | 7.8 | 0.3% | May 9, 2023 | Sngrep v1.6.0 was discovered to contain a stack buffer overflow via the function packet_set_payload at /src/packet.c. |
| CVE-2023-31979 | HIGH | 7.8 | 0.3% | May 9, 2023 | Catdoc v0.95 was discovered to contain a global buffer overflow via the function process_file at /src/reader.c. |
| CVE-2023-31976 | HIGH | 8.8 | 0.7% | May 9, 2023 | libming v0.4.8 was discovered to contain a stack buffer overflow via the function makeswf_preprocess at /util/makeswf_ut... |
| CVE-2023-31973 | MEDIUM | 5.5 | 0.3% | May 9, 2023 | yasm v1.3.0 was discovered to contain a use after free via the function expand_mmac_params at /nasm/nasm-pp.c. Note: Mul... |
| CVE-2023-31137 | HIGH | 7.5 | 1.1% | May 9, 2023 | MaraDNS is open-source software that implements the Domain Name System (DNS). In version 3.5.0024 and prior, a remotely ... |
| CVE-2023-31136 | MEDIUM | 5.9 | 0.5% | May 9, 2023 | PostgresNIO is a Swift client for PostgreSQL. Any user of PostgresNIO prior to version 1.14.2 connecting to servers with... |
| CVE-2023-31134 | MEDIUM | 5.4 | 0.5% | May 9, 2023 | Tauri is software for building applications for multi-platform deployment. The Tauri IPC is usually strictly isolated fr... |
| CVE-2023-29462 | HIGH | 8.8 | 0.9% | May 9, 2023 | An arbitrary code execution vulnerability contained in Rockwell Automation's Arena Simulation software was reported that... |
| CVE-2023-29461 | CRITICAL | 9.8 | 0.9% | May 9, 2023 | An arbitrary code execution vulnerability contained in Rockwell Automation's Arena Simulation software was reported that... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now