2023 CVE Vulnerabilities
31,440 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-0202 | HIGH | 7.8 | 0.2% | Apr 22, 2023 | NVIDIA DGX A100 SBIOS contains a vulnerability where an attacker may modify arbitrary memory of SMRAM by exploiting the ... |
| CVE-2023-0201 | MEDIUM | 6.7 | 0.2% | Apr 22, 2023 | NVIDIA DGX-2 SBIOS contains a vulnerability in Bds, where a user with high privileges can cause a write beyond the bound... |
| CVE-2023-0200 | MEDIUM | 6.7 | 0.2% | Apr 22, 2023 | NVIDIA DGX-2 contains a vulnerability in OFBD where a user with high privileges and a pre-conditioned heap can cause an ... |
| CVE-2023-0199 | MEDIUM | 6.1 | 0.2% | Apr 22, 2023 | NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer handler, where an out-... |
| CVE-2023-0190 | MEDIUM | 5.5 | 0.2% | Apr 22, 2023 | NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer, where a NULL pointer dereference ... |
| CVE-2023-0184 | HIGH | 7.8 | 0.3% | Apr 22, 2023 | NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer handler which may lead... |
| CVE-2023-2240 | HIGH | 8.8 | 0.7% | Apr 22, 2023 | Improper Privilege Management in GitHub repository microweber/microweber prior to 1.3.4. |
| CVE-2023-29020 | MEDIUM | 6.5 | 0.4% | Apr 21, 2023 | @fastify/passport is a port of passport authentication library for the Fastify ecosystem. The CSRF (Cross-Site Request F... |
| CVE-2023-29019 | HIGH | 8.1 | 0.8% | Apr 21, 2023 | @fastify/passport is a port of passport authentication library for the Fastify ecosystem. Applications using `@fastify/p... |
| CVE-2023-2118 | MEDIUM | 5.4 | 0.4% | Apr 21, 2023 | Insufficient access control in support ticket feature in Devolutions Server 2023.1.5.0 and below allows an authenticated... |
| CVE-2023-30621 | CRITICAL | 9.8 | 1.9% | Apr 21, 2023 | Gipsy is a multi-purpose discord bot which aim to be as modular and user-friendly as possible. In versions prior to 1.3 ... |
| CVE-2023-30620 | HIGH | 7.5 | 1.0% | Apr 21, 2023 | mindsdb is a Machine Learning platform to help developers build AI solutions. In affected versions an unsafe extraction ... |
| CVE-2023-30618 | LOW | 3.3 | 0.2% | Apr 21, 2023 | Kitchen-Terraform provides a set of Test Kitchen plugins which enable the use of Test Kitchen to converge a Terraform co... |
| CVE-2023-29924 | CRITICAL | 9.8 | 1.1% | Apr 21, 2023 | PowerJob V4.3.1 is vulnerable to Incorrect Access Control that allows for remote code execution. |
| CVE-2023-26557 | HIGH | 7.5 | 0.9% | Apr 21, 2023 | io.finnet tss-lib before 2.0.0 can leak the lambda value of a private key via a timing side-channel attack because it re... |
| CVE-2023-26556 | CRITICAL | 9.1 | 0.9% | Apr 21, 2023 | io.finnet tss-lib before 2.0.0 can leak a secret key via a timing side-channel attack because it relies on the scalar-mu... |
| CVE-2023-30798 | HIGH | 7.5 | 1.3% | Apr 21, 2023 | There MultipartParser usage in Encode's Starlette python framework before versions 0.25.0 allows an unauthenticated and ... |
| CVE-2023-2141 | HIGH | 8.8 | 1.0% | Apr 21, 2023 | An unsafe .NET object deserialization in DELMIA Apriso Release 2017 through Release 2022 could lead to post-authenticati... |
| CVE-2023-2140 | HIGH | 7.5 | 0.6% | Apr 21, 2023 | A Server-Side Request Forgery vulnerability in DELMIA Apriso Release 2017 through Release 2022 could allow an unauthe... |
| CVE-2023-2139 | MEDIUM | 6.1 | 0.4% | Apr 21, 2023 | A reflected Cross-site Scripting (XSS) Vulnerability in DELMIA Apriso Release 2017 through Release 2022 allows an attac... |
| CVE-2023-2231 | CRITICAL | 9.8 | 2.0% | Apr 21, 2023 | A vulnerability, which was classified as critical, was found in MAXTECH MAX-G866ac 0.4.1_TBRO_20160314. This affects an ... |
| CVE-2023-29917 | MEDIUM | 4.9 | 0.8% | Apr 21, 2023 | H3C Magic R200 version R200V100R004 was discovered to contain a stack overflow via go parameter at /goform/aspForm. |
| CVE-2023-29916 | MEDIUM | 4.9 | 0.8% | Apr 21, 2023 | H3C Magic R200 version R200V100R004 was discovered to contain a stack overflow via the UpdateWanParams interface at /gof... |
| CVE-2023-29915 | MEDIUM | 4.9 | 0.8% | Apr 21, 2023 | H3C Magic R200 version R200V100R004 was discovered to contain a stack overflow via CMD parameter at /goform/aspForm. |
| CVE-2023-29914 | MEDIUM | 4.9 | 0.8% | Apr 21, 2023 | H3C Magic R200 version R200V100R004 was discovered to contain a stack overflow via the DeltriggerList interface at /gofo... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now