2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-38674 | HIGH | 7.5 | 0.5% | Jan 3, 2024 | FPE in paddle.nanmedian in PaddlePaddle before 2.6.0. This flaw can cause a runtime crash and a denial of service. |
| CVE-2023-50922 | HIGH | 7.2 | 0.9% | Jan 3, 2024 | An issue was discovered on GL.iNet devices through 4.5.0. Attackers who are able to steal the AdminToken cookie can exec... |
| CVE-2023-47473 | HIGH | 7.5 | 1.0% | Jan 3, 2024 | Directory Traversal vulnerability in fuwushe.org iFair versions 23.8_ad0 and before allows an attacker to obtain sensiti... |
| CVE-2023-42358 | HIGH | 7.7 | 0.6% | Jan 3, 2024 | An issue was discovered in O-RAN Software Community ric-plt-e2mgr in the G-Release environment, allows remote attackers ... |
| CVE-2023-50341 | HIGH | 7.5 | 0.4% | Jan 3, 2024 | HCL DRYiCE MyXalytics is impacted by Improper Access Control (Obsolete web pages) vulnerability. Discovery of outdated a... |
| CVE-2023-50350 | HIGH | 7.5 | 0.2% | Jan 3, 2024 | HCL DRYiCE MyXalytics is impacted by the use of a broken cryptographic algorithm for encryption, potentially giving an a... |
| CVE-2023-41783 | HIGH | 7.8 | 0.6% | Jan 3, 2024 | There is a command injection vulnerability of ZTE's ZXCLOUD iRAI. Due to the program failed to adequately validate the... |
| CVE-2023-41780 | HIGH | 7.8 | 0.2% | Jan 3, 2024 | There is an unsafe DLL loading vulnerability in ZTE ZXCLOUD iRAI. Due to the program failed to adequately validate the... |
| CVE-2023-41776 | HIGH | 7.8 | 0.2% | Jan 3, 2024 | There is a local privilege escalation vulnerability of ZTE's ZXCLOUD iRAI.Attackers with regular user privileges can cre... |
| CVE-2023-49553 | HIGH | 7.5 | 0.9% | Jan 2, 2024 | An issue in Cesanta mjs 2.20.0 allows a remote attacker to cause a denial of service via the mjs_destroy function in the... |
| CVE-2023-49552 | HIGH | 7.5 | 0.8% | Jan 2, 2024 | An Out of Bounds Write in Cesanta mjs 2.20.0 allows a remote attacker to cause a denial of service via the mjs_op_json_s... |
| CVE-2023-49551 | HIGH | 7.5 | 0.8% | Jan 2, 2024 | An issue in Cesanta mjs 2.20.0 allows a remote attacker to cause a denial of service via the mjs_op_json_parse function ... |
| CVE-2023-49550 | HIGH | 7.5 | 0.8% | Jan 2, 2024 | An issue in Cesanta mjs 2.20.0 allows a remote attacker to cause a denial of service via the mjs+0x4ec508 component. |
| CVE-2023-49549 | HIGH | 7.5 | 0.8% | Jan 2, 2024 | An issue in Cesanta mjs 2.20.0 allows a remote attacker to cause a denial of service via the mjs_getretvalpos function i... |
| CVE-2023-48418 | HIGH | 7.8 | 0.2% | Jan 2, 2024 | In checkDebuggingDisallowed of DeviceVersionFragment.java, there is a possible way to access adb before SUW completi... |
| CVE-2023-50020 | HIGH | 7.5 | 0.7% | Jan 2, 2024 | An issue was discovered in open5gs v2.6.6. SIGPIPE can be used to crash AMF. |
| CVE-2023-45893 | HIGH | 7.5 | 0.6% | Jan 2, 2024 | An indirect Object Reference (IDOR) in the Order and Invoice pages in Floorsight Customer Portal Q3 2023 allows an unaut... |
| CVE-2023-45892 | HIGH | 7.5 | 0.6% | Jan 2, 2024 | An issue discovered in the Order and Invoice pages in Floorsight Insights Q3 2023 allows an unauthenticated remote attac... |
| CVE-2023-49794 | HIGH | 7.8 | 0.3% | Jan 2, 2024 | KernelSU is a Kernel-based root solution for Android devices. In versions 0.7.1 and prior, the logic of get apk path in ... |
| CVE-2023-47039 | HIGH | 7.8 | 0.4% | Jan 2, 2024 | A vulnerability was found in Perl. This security issue occurs while Perl for Windows relies on the system path environme... |
| CVE-2023-43514 | HIGH | 7.8 | 0.1% | Jan 2, 2024 | Memory corruption while invoking IOCTLs calls from user space for internal mem MAP and internal mem UNMAP. |
| CVE-2023-43512 | HIGH | 7.5 | 0.3% | Jan 2, 2024 | Transient DOS while parsing GATT service data when the total amount of memory that is required by the multiple services ... |
| CVE-2023-43511 | HIGH | 7.5 | 0.3% | Jan 2, 2024 | Transient DOS while parsing IPv6 extension header when WLAN firmware receives an IPv6 packet that contains `IPPROTO_NONE... |
| CVE-2023-33120 | HIGH | 7.8 | 0.1% | Jan 2, 2024 | Memory corruption in Audio when memory map command is executed consecutively in ADSP. |
| CVE-2023-33118 | HIGH | 7.8 | 0.1% | Jan 2, 2024 | Memory corruption while processing Listen Sound Model client payload buffer when there is a request for Listen Sound ses... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now