2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-34979 | HIGH | 7.2 | 1.1% | Sep 6, 2024 | An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, ... |
| CVE-2023-34974 | HIGH | 8.8 | 0.9% | Sep 6, 2024 | An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, ... |
| CVE-2023-52916 | HIGH | 7.8 | 0.2% | Sep 6, 2024 | In the Linux kernel, the following vulnerability has been resolved: media: aspeed: Fix memory overwrite if timing is 16... |
| CVE-2023-52915 | MEDIUM | 5.5 | 0.2% | Sep 6, 2024 | In the Linux kernel, the following vulnerability has been resolved: media: dvb-usb-v2: af9035: Fix null-ptr-deref in af... |
| CVE-2023-51712 | MEDIUM | 4.7 | 0.3% | Sep 5, 2024 | An issue was discovered in Trusted Firmware-M through 2.0.0. The lack of argument verification in the logging subsystem ... |
| CVE-2023-49233 | HIGH | 8.8 | 0.4% | Sep 3, 2024 | Insufficient access checks in Visual Planning Admin Center 8 before v.1 Build 240207 allow attackers in possession of a ... |
| CVE-2023-7279 | MEDIUM | 5.9 | 0.5% | Sep 2, 2024 | A vulnerability has been found in Secure Systems Engineering Connaisseur up to 3.3.0 and classified as problematic. This... |
| CVE-2023-7256 | MEDIUM | 4.4 | 0.2% | Aug 31, 2024 | In affected libpcap versions during the setup of a remote packet capture the internal function sock_initaddress() calls ... |
| CVE-2023-26324 | CRITICAL | 9.8 | 0.6% | Aug 28, 2024 | A code execution vulnerability exists in the XiaomiGetApps application product. This vulnerability is caused by the veri... |
| CVE-2023-26323 | CRITICAL | 9.8 | 0.6% | Aug 28, 2024 | A code execution vulnerability exists in the Xiaomi App market product. The vulnerability is caused by unsafe configurat... |
| CVE-2023-26322 | CRITICAL | 9.8 | 0.7% | Aug 28, 2024 | A code execution vulnerability exists in the XiaomiGetApps application product. This vulnerability is caused by the veri... |
| CVE-2023-26321 | CRITICAL | 9.8 | 0.5% | Aug 28, 2024 | A path traversal vulnerability exists in the Xiaomi File Manager application product(international version). The vulnera... |
| CVE-2023-43078 | HIGH | 7.3 | 0.2% | Aug 28, 2024 | Dell Dock Firmware and Dell Client Platform contain an Improper Link Resolution vulnerability during installation result... |
| CVE-2023-45896 | HIGH | 7.1 | 0.2% | Aug 28, 2024 | ntfs3 in the Linux kernel through 6.8.0 allows a physically proximate attacker to read kernel memory by mounting a files... |
| CVE-2023-49582 | MEDIUM | 5.5 | 0.3% | Aug 26, 2024 | Lax permissions set by the Apache Portable Runtime library on Unix platforms would allow local users read access to name... |
| CVE-2023-26315 | HIGH | 8.8 | 18.6% | Aug 26, 2024 | The Xiaomi router AX9000 has a post-authentication command injection vulnerability. This vulnerability is caused by the ... |
| CVE-2023-48957 | MEDIUM | 5.3 | 0.4% | Aug 25, 2024 | PureVPN Linux client 2.0.2-Productions fails to properly handle DNS queries, allowing them to bypass the VPN tunnel and ... |
| CVE-2023-6987 | MEDIUM | 6.1 | 0.3% | Aug 24, 2024 | The String locator plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'sql-column' parameter i... |
| CVE-2023-0926 | MEDIUM | 5.4 | 0.3% | Aug 24, 2024 | The Custom Permalinks plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including... |
| CVE-2023-7260 | HIGH | 7.5 | 0.5% | Aug 22, 2024 | Path Traversal vulnerability discovered in OpenText™ CX-E Voice, affecting all version through 22.4. The vulnerability... |
| CVE-2023-6452 | CRITICAL | 9.6 | 0.4% | Aug 22, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Forcepoint Web Sec... |
| CVE-2023-29929 | HIGH | 7.5 | 0.8% | Aug 21, 2024 | Buffer Overflow vulnerability found in Kemptechnologies Loadmaster before v.7.2.60.0 allows a remote attacker to casue a... |
| CVE-2023-49198 | HIGH | 7.5 | 0.9% | Aug 21, 2024 | Mysql security vulnerability in Apache SeaTunnel. Attackers can read files on the MySQL server by modifying the informa... |
| CVE-2023-22576 | HIGH | 7.8 | 0.1% | Aug 21, 2024 | Dell Repository Manager version 3.4.2 and earlier, contain a Local Privilege Escalation Vulnerability in Installation mo... |
| CVE-2023-52914 | MEDIUM | 5.5 | 0.2% | Aug 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: io_uring/poll: add hash if ready poll request can't... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now