2023 CVE Vulnerabilities

31,440 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-30637HIGH7.5Baidu braft 1.1.2 has a memory leak related to use of the new operator in example/atomic/atomic_server. NOTE: installati...
CVE-2023-30636HIGH7.5TiKV 6.1.2 allows remote attackers to cause a denial of service (fatal error, with RpcStatus UNAVAILABLE for "not leader...
CVE-2023-30635HIGH7.5TiKV 6.1.2 allows remote attackers to cause a denial of service (fatal error) upon an attempt to get a timestamp from th...
CVE-2023-1326HIGH7.8A privilege escalation attack was found in apport-cli 2.26.0 and earlier which is similar to CVE-2023-26604. If a system...
CVE-2023-29573MEDIUM5.5Bento4 v1.6.0-639 was discovered to contain an out-of-memory bug in the mp4info component.
CVE-2023-27748CRITICAL9.8BlackVue DR750-2CH LTE v.1.012_2022.10.26 does not employ authenticity check for uploaded firmware. This can allow attac...
CVE-2023-27747HIGH7.5BlackVue DR750-2CH LTE v.1.012_2022.10.26 does not employ authentication in its web server. This vulnerability allows at...
CVE-2023-27746CRITICAL9.8BlackVue DR750-2CH LTE v.1.012_2022.10.26 was discovered to contain a weak default passphrase which can be easily cracke...
CVE-2023-27667CRITICAL9.8Auto Dealer Management System v1.0 was discovered to contain a SQL injection vulnerability.
CVE-2023-26416HIGH7.8Adobe Substance 3D Designer version 12.4.0 (and earlier) is affected by a Heap-based Buffer Overflow vulnerability that ...
CVE-2023-26415HIGH7.8Adobe Substance 3D Designer version 12.4.0 (and earlier) is affected by an out-of-bounds write vulnerability that could ...
CVE-2023-26414HIGH7.8Adobe Substance 3D Designer version 12.4.0 (and earlier) is affected by a Use After Free vulnerability that could result...
CVE-2023-26413HIGH7.8Adobe Substance 3D Designer version 12.4.0 (and earlier) is affected by a Heap-based Buffer Overflow vulnerability that ...
CVE-2023-26412HIGH7.8Adobe Substance 3D Designer version 12.4.0 (and earlier) is affected by a Stack-based Buffer Overflow vulnerability that...
CVE-2023-26411HIGH7.8Adobe Substance 3D Designer version 12.4.0 (and earlier) is affected by an out-of-bounds read vulnerability when parsing...
CVE-2023-26410HIGH7.8Adobe Substance 3D Designer version 12.4.0 (and earlier) is affected by a Use After Free vulnerability that could result...
CVE-2023-26409HIGH7.8Adobe Substance 3D Designer version 12.4.0 (and earlier) is affected by an out-of-bounds read vulnerability when parsing...
CVE-2023-26398HIGH7.8Adobe Substance 3D Designer version 12.4.0 (and earlier) is affected by an out-of-bounds read vulnerability when parsing...
CVE-2023-24509HIGH7.8On affected modular platforms running Arista EOS equipped with both redundant supervisor modules and having the redundan...
CVE-2023-22951HIGH8.8An issue was discovered in TigerGraph Enterprise Free Edition 3.x. It creates an authentication token for internal syste...
CVE-2023-20866MEDIUM6.5In Spring Session version 3.0.0, the session id can be logged to the standard output stream. This vulnerability exposes ...
CVE-2023-20863MEDIUM6.5In spring framework versions prior to 5.2.24 release+ ,5.3.27+ and 6.0.8+ , it is possible for a user to provide a speci...
CVE-2023-1271Rejected reason: Duplicate. Please use CVE-2023-24421.
CVE-2023-29084HIGH7.2Zoho ManageEngine ADManager Plus before 7181 allows for authenticated users to exploit command injection via Proxy setti...
CVE-2023-26264MEDIUM5.5All versions of Talend Data Catalog before 8.0-20220907 are potentially vulnerable to XML External Entity (XXE) attacks ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now