2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-26288 | MEDIUM | 5.5 | 0.2% | Jul 30, 2024 | IBM Aspera Orchestrator 4.0.1 does not invalidate session after a password change which could allow an authenticated use... |
| CVE-2023-48396 | CRITICAL | 9.1 | 0.7% | Jul 30, 2024 | Web Authentication vulnerability in Apache SeaTunnel. Since the jwt key is hardcoded in the application, an attacker can... |
| CVE-2023-52888 | MEDIUM | 5.5 | 0.2% | Jul 30, 2024 | In the Linux kernel, the following vulnerability has been resolved: media: mediatek: vcodec: Only free buffer VA that i... |
| CVE-2023-42959 | HIGH | 7 | 0.1% | Jul 29, 2024 | A race condition was addressed with improved state handling. This issue is fixed in macOS Sonoma 14. An app may be able ... |
| CVE-2023-42958 | HIGH | 7.8 | 0.2% | Jul 29, 2024 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Ventura 13.4. An app may be... |
| CVE-2023-42957 | LOW | 3.3 | 0.2% | Jul 29, 2024 | A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 17 and iPadOS 17, macOS Sonom... |
| CVE-2023-42949 | LOW | 3.3 | 0.2% | Jul 29, 2024 | This issue was addressed with improved data protection. This issue is fixed in iOS 17 and iPadOS 17, macOS Sonoma 14, wa... |
| CVE-2023-42948 | LOW | 3.3 | 0.2% | Jul 29, 2024 | This issue was addressed through improved state management. This issue is fixed in macOS Sonoma 14. A Wi-Fi password may... |
| CVE-2023-42943 | MEDIUM | 5.5 | 0.2% | Jul 29, 2024 | A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Sonoma ... |
| CVE-2023-42925 | LOW | 3.3 | 0.2% | Jul 29, 2024 | The issue was addressed with improved restriction of data container access. This issue is fixed in iOS 17 and iPadOS 17,... |
| CVE-2023-42918 | MEDIUM | 6.3 | 0.2% | Jul 29, 2024 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sonoma 14. A sandboxed proc... |
| CVE-2023-40398 | HIGH | 8.8 | 0.2% | Jul 29, 2024 | This issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.6.4, macOS Big Sur 11.7.5, macOS... |
| CVE-2023-40396 | HIGH | 7.8 | 0.2% | Jul 29, 2024 | The issue was addressed with improved memory handling. This issue is fixed in iOS 17 and iPadOS 17, macOS Sonoma 14, wat... |
| CVE-2023-52887 | MEDIUM | 5.5 | 0.2% | Jul 29, 2024 | In the Linux kernel, the following vulnerability has been resolved: net: can: j1939: enhanced error handling for tightl... |
| CVE-2023-50700 | HIGH | 7.8 | 0.2% | Jul 26, 2024 | Insecure Permissions vulnerability in Deepin dde-file-manager 6.0.54 and earlier allows privileged operations to be call... |
| CVE-2023-38522 | HIGH | 7.5 | 1.0% | Jul 26, 2024 | Apache Traffic Server accepts characters that are not allowed for HTTP field names and forwards malformed requests to or... |
| CVE-2023-49921 | MEDIUM | 6.5 | 0.5% | Jul 26, 2024 | An issue was discovered by Elastic whereby Watcher search input logged the search query results on DEBUG log level. This... |
| CVE-2023-7271 | MEDIUM | 5.5 | 0.1% | Jul 25, 2024 | Privilege escalation vulnerability in the NMS module Impact: Successful exploitation of this vulnerability will affect a... |
| CVE-2023-45249 | CRITICAL | 9.8 | 53.5% | Jul 24, 2024 | Remote command execution due to use of default passwords. The following products are affected: Acronis Cyber Infrastruct... |
| CVE-2023-48362 | HIGH | 8.8 | 0.8% | Jul 24, 2024 | XXE in the XML Format Plugin in Apache Drill version 1.19.0 and greater allows a user to read any file on a remote file ... |
| CVE-2023-32471 | MEDIUM | 6 | 0.2% | Jul 24, 2024 | Dell Edge Gateway BIOS, versions 3200 and 5200, contains an out-of-bounds read vulnerability. A local authenticated mali... |
| CVE-2023-32466 | MEDIUM | 5.7 | 0.2% | Jul 24, 2024 | Dell Edge Gateway BIOS, versions 3200 and 5200, contains an out-of-bounds write vulnerability. A local authenticated mal... |
| CVE-2023-7269 | HIGH | 7.5 | 0.2% | Jul 19, 2024 | The ArtPlacer Widget WordPress plugin before 2.21.2 does not have CSRF check in some places, and is missing sanitisation... |
| CVE-2023-7268 | MEDIUM | 6.5 | 0.4% | Jul 19, 2024 | The ArtPlacer Widget WordPress plugin before 2.21.2 does not have authorisation check in place when deleting widgets, a... |
| CVE-2023-40704 | CRITICAL | 9.8 | 0.3% | Jul 18, 2024 | The product does not require unique and complex passwords to be created during installation. Using Philips's default pa... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now