2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-52150 | HIGH | 8.8 | 0.3% | Jan 5, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Ovation S.R.L. Dynamic Content for Elementor.This issue affects Dynam... |
| CVE-2023-6270 | HIGH | 7 | 0.4% | Jan 4, 2024 | A flaw was found in the ATA over Ethernet (AoE) driver in the Linux kernel. The aoecmd_cfg_pkts() function improperly up... |
| CVE-2023-50760 | HIGH | 8.8 | 1.2% | Jan 4, 2024 | Online Notice Board System v1.0 is vulnerable to an Insecure File Upload vulnerability on the 'f' parameter of user/upda... |
| CVE-2023-50082 | HIGH | 7.5 | 0.6% | Jan 4, 2024 | Aoyun Technology pbootcms V3.1.2 is vulnerable to Incorrect Access Control, allows remote attackers to gain sensitive in... |
| CVE-2023-50256 | HIGH | 7.5 | 0.7% | Jan 3, 2024 | Froxlor is open source server administration software. Prior to version 2.1.2, it was possible to submit the registratio... |
| CVE-2023-6540 | HIGH | 7.5 | 0.5% | Jan 3, 2024 | A vulnerability was reported in the Lenovo Browser Mobile and Lenovo Browser HD Apps for Android that could allow an att... |
| CVE-2023-6338 | HIGH | 7.8 | 0.2% | Jan 3, 2024 | Uncontrolled search path vulnerabilities were reported in the Lenovo Universal Device Client (UDC) that could allow an a... |
| CVE-2023-5881 | HIGH | 8.2 | 0.6% | Jan 3, 2024 | Unauthenticated access permitted to web interface page The Genie Company Aladdin Connect (Retrofit-Kit Model ALDCM) "Gar... |
| CVE-2023-5880 | HIGH | 8.8 | 0.6% | Jan 3, 2024 | When the Genie Company Aladdin Connect garage door opener (Retrofit-Kit Model ALDCM) is placed into configuration mode t... |
| CVE-2023-46929 | HIGH | 7.5 | 0.8% | Jan 3, 2024 | An issue discovered in GPAC 2.3-DEV-rev605-gfc9e29089-master in MP4Box in gf_avc_change_vui /afltest/gpac/src/media_tool... |
| CVE-2023-45559 | HIGH | 8.2 | 0.5% | Jan 3, 2024 | An issue in Tamaki_hamanoki Line v.13.6.1 allows attackers to send crafted notifications via leakage of the channel acce... |
| CVE-2023-37607 | HIGH | 7.5 | 1.5% | Jan 3, 2024 | Directory Traversal in Automatic Systems SOC FL9600 FirstLane V06 lego_T04E00 allows a remote attacker to obtain sensiti... |
| CVE-2023-37608 | HIGH | 7.5 | 0.9% | Jan 3, 2024 | An issue in Automatic Systems SOC FL9600 FirstLane V06 lego_T04E00 allows a remote attacker to obtain sensitive informat... |
| CVE-2023-51785 | HIGH | 7.5 | 1.0% | Jan 3, 2024 | Deserialization of Untrusted Data vulnerability in Apache InLong.This issue affects Apache InLong: from 1.7.0 through 1.... |
| CVE-2023-52313 | HIGH | 7.5 | 0.5% | Jan 3, 2024 | FPE in paddle.argmin and paddle.argmax in PaddlePaddle before 2.6.0. This flaw can cause a runtime crash and a denial of... |
| CVE-2023-52312 | HIGH | 7.5 | 0.5% | Jan 3, 2024 | Nullptr dereference in paddle.crop in PaddlePaddle before 2.6.0. This flaw can cause a runtime crash and a denial of ser... |
| CVE-2023-52308 | HIGH | 7.5 | 0.5% | Jan 3, 2024 | FPE in paddle.amin in PaddlePaddle before 2.6.0. This flaw can cause a runtime crash and a denial of service. |
| CVE-2023-52306 | HIGH | 7.5 | 0.5% | Jan 3, 2024 | FPE in paddle.lerp in PaddlePaddle before 2.6.0. This flaw can cause a runtime crash and a denial of service. |
| CVE-2023-52305 | HIGH | 7.5 | 0.5% | Jan 3, 2024 | FPE in paddle.topk in PaddlePaddle before 2.6.0. This flaw can cause a runtime crash and a denial of service. |
| CVE-2023-52303 | HIGH | 7.5 | 0.5% | Jan 3, 2024 | Nullptr in paddle.put_along_axis in PaddlePaddle before 2.6.0. This flaw can cause a runtime crash and a denial of servi... |
| CVE-2023-52302 | HIGH | 7.5 | 0.5% | Jan 3, 2024 | Nullptr in paddle.nextafter in PaddlePaddle before 2.6.0. This flaw can cause a runtime crash and a denial of service. ... |
| CVE-2023-38678 | HIGH | 7.5 | 0.5% | Jan 3, 2024 | OOB access in paddle.mode in PaddlePaddle before 2.6.0. This flaw can cause a runtime crash and a denial of service. |
| CVE-2023-38677 | HIGH | 7.5 | 0.5% | Jan 3, 2024 | FPE in paddle.linalg.eig in PaddlePaddle before 2.6.0. This flaw can cause a runtime crash and a denial of service. |
| CVE-2023-38676 | HIGH | 7.5 | 0.5% | Jan 3, 2024 | Nullptr in paddle.dot in PaddlePaddle before 2.6.0. This flaw can cause a runtime crash and a denial of service. |
| CVE-2023-38675 | HIGH | 7.5 | 0.5% | Jan 3, 2024 | FPE in paddle.linalg.matrix_rank in PaddlePaddle before 2.6.0. This flaw can cause a runtime crash and a denial of servi... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now