2023 CVE Vulnerabilities
31,442 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-25669 | HIGH | 7.5 | 0.4% | Mar 25, 2023 | TensorFlow is an open source platform for machine learning. Prior to versions 2.12.0 and 2.11.1, if the stride and windo... |
| CVE-2023-25668 | CRITICAL | 9.8 | 0.8% | Mar 25, 2023 | TensorFlow is an open source platform for machine learning. Attackers using Tensorflow prior to 2.12.0 or 2.11.1 can acc... |
| CVE-2023-25667 | HIGH | 7.5 | 0.3% | Mar 25, 2023 | TensorFlow is an open source platform for machine learning. Prior to versions 2.12.0 and 2.11.1, integer overflow occurs... |
| CVE-2023-25666 | HIGH | 7.5 | 0.4% | Mar 25, 2023 | TensorFlow is an open source platform for machine learning. Prior to versions 2.12.0 and 2.11.1, there is a floating poi... |
| CVE-2023-25665 | HIGH | 7.5 | 0.4% | Mar 25, 2023 | TensorFlow is an open source platform for machine learning. Prior to versions 2.12.0 and 2.11.1, when `SparseSparseMaxim... |
| CVE-2023-25664 | CRITICAL | 9.8 | 0.4% | Mar 25, 2023 | TensorFlow is an open source platform for machine learning. Prior to versions 2.12.0 and 2.11.1, there is a heap buffer ... |
| CVE-2023-25663 | HIGH | 7.5 | 0.4% | Mar 25, 2023 | TensorFlow is an open source platform for machine learning. Prior to versions 2.12.0 and 2.11.1, when `ctx->step_contain... |
| CVE-2023-25662 | HIGH | 7.5 | 0.4% | Mar 25, 2023 | TensorFlow is an open source platform for machine learning. Versions prior to 2.12.0 and 2.11.1 are vulnerable to intege... |
| CVE-2023-25660 | HIGH | 7.5 | 0.4% | Mar 25, 2023 | TensorFlow is an open source platform for machine learning. Prior to versions 2.12.0 and 2.11.1, when the parameter `sum... |
| CVE-2023-25659 | HIGH | 7.5 | 0.4% | Mar 25, 2023 | TensorFlow is an open source platform for machine learning. Prior to versions 2.12.0 and 2.11.1, if the parameter `indic... |
| CVE-2023-25658 | HIGH | 7.5 | 0.4% | Mar 25, 2023 | TensorFlow is an open source platform for machine learning. Prior to versions 2.12.0 and 2.11.1, an out of bounds read i... |
| CVE-2023-27042 | HIGH | 8.8 | 0.9% | Mar 24, 2023 | Tenda AX3 V16.03.12.11 is vulnerable to Buffer Overflow via /goform/SetFirewallCfg. |
| CVE-2023-23149 | CRITICAL | 9.8 | 0.9% | Mar 24, 2023 | DEK-1705 <=Firmware:34.23.1 device was discovered to have a command execution vulnerability. |
| CVE-2023-28150 | CRITICAL | 9.8 | 0.7% | Mar 24, 2023 | An issue was discovered in Independentsoft JODF before 1.1.110. The API is prone to XML external entity (XXE) injection ... |
| CVE-2023-27055 | HIGH | 7.5 | 0.7% | Mar 24, 2023 | Aver Information Inc PTZApp2 v20.01044.48 allows attackers to access sensitive files via a crafted GET request. |
| CVE-2023-26864 | CRITICAL | 9.8 | 1.2% | Mar 24, 2023 | SQL injection vulnerability found in PrestaShop smplredirectionsmanager v.1.1.19 and before allow a remote attacker to g... |
| CVE-2023-1583 | MEDIUM | 5.5 | 0.2% | Mar 24, 2023 | A NULL pointer dereference was found in io_file_bitmap_get in io_uring/filetable.c in the io_uring sub-component in the ... |
| CVE-2023-28435 | MEDIUM | 6.1 | 0.5% | Mar 24, 2023 | Dataease is an open source data visualization and analysis tool. The permissions for the file upload interface is not ch... |
| CVE-2023-28448 | HIGH | 7.5 | 0.6% | Mar 24, 2023 | Versionize is a framework for version tolerant serializion/deserialization of Rust data structures, designed for usecase... |
| CVE-2023-28446 | HIGH | 8.8 | 1.1% | Mar 24, 2023 | Deno is a simple, modern and secure runtime for JavaScript and TypeScript that uses V8 and is built in Rust. Arbitrary p... |
| CVE-2023-28444 | HIGH | 7.5 | 0.8% | Mar 24, 2023 | angular-server-side-configuration helps configure an angular application at runtime on the server or in a docker contain... |
| CVE-2023-28151 | CRITICAL | 9.8 | 0.8% | Mar 24, 2023 | An issue was discovered in Independentsoft JSpreadsheet before 1.1.110. The API is prone to XML external entity (XXE) in... |
| CVE-2023-25350 | HIGH | 8.8 | 0.8% | Mar 24, 2023 | Faveo Helpdesk 1.0-1.11.1 is vulnerable to SQL Injection. When the user logs in through the login box, he has no judgmen... |
| CVE-2023-22812 | HIGH | 7.4 | 0.3% | Mar 24, 2023 | SanDisk PrivateAccess versions prior to 6.4.9 support insecure TLS 1.0 and TLS 1.1 protocols which are susceptible to ma... |
| CVE-2023-21079 | MEDIUM | 6.7 | 0.1% | Mar 24, 2023 | In rtt_unpack_xtlv_cbfn of dhd_rtt.c, there is a possible out of bounds write due to a heap buffer overflow. This could ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now