2023 CVE Vulnerabilities

31,442 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-25590HIGH7.8A vulnerability in the ClearPass OnGuard Linux agent could allow malicious users on a Linux instance to elevate their us...
CVE-2023-25589CRITICAL9.8A vulnerability in the web-based management interface of ClearPass Policy Manager could allow an unauthenticated remote ...
CVE-2023-25069HIGH8.8TXOne StellarOne has an improper access control privilege escalation vulnerability in every version before V2.0.1160 tha...
CVE-2023-1436HIGH7.5An infinite recursion is triggered in Jettison when constructing a JSONArray from a Collection that contains a self-refe...
CVE-2023-1370HIGH7.5[Json-smart](https://netplex.github.io/json-smart/) is a performance focused, JSON processor lib. When reaching a ‘[‘ o...
CVE-2023-1168HIGH8.8An authenticated remote code execution vulnerability exists in the AOS-CX Network Analytics Engine. Successful e...
CVE-2023-27857HIGH7.5 In affected versions, a heap-based buffer over-read condition occurs when the message field indicates more data than i...
CVE-2023-28725CRITICAL9.1General Bytes Crypto Application Server (CAS) 20230120, as distributed with General Bytes BATM devices, allows remote at...
CVE-2023-27856HIGH7.5 In affected versions, path traversal exists when processing a message of type 8 in Rockwell Automation's ThinManage...
CVE-2023-27855CRITICAL9.8 In affected versions, a path traversal exists when processing a message in Rockwell Automation's ThinManager ThinServer...
CVE-2023-24709HIGH7.5An issue found in Paradox Security Systems IPR512 allows attackers to cause a denial of service via the login.html and l...
CVE-2023-26497CRITICAL9.8An issue was discovered in Samsung Baseband Modem Chipset for Exynos Modem 5123, Exynos Modem 5300, Exynos 980, Exynos 1...
CVE-2023-1534HIGH8.8Out of bounds read in ANGLE in Google Chrome prior to 111.0.5563.110 allowed a remote attacker who had compromised the r...
CVE-2023-1533HIGH8.8Use after free in WebProtect in Google Chrome prior to 111.0.5563.110 allowed a remote attacker to potentially exploit h...
CVE-2023-1532HIGH8.8Out of bounds read in GPU Video in Google Chrome prior to 111.0.5563.110 allowed a remote attacker to potentially exploi...
CVE-2023-1531HIGH8.8Use after free in ANGLE in Google Chrome prior to 111.0.5563.110 allowed a remote attacker to potentially exploit heap c...
CVE-2023-1530HIGH8.8Use after free in PDF in Google Chrome prior to 111.0.5563.110 allowed a remote attacker to potentially exploit heap cor...
CVE-2023-1529CRITICAL9.8Out of bounds memory access in WebHID in Google Chrome prior to 111.0.5563.110 allowed a remote attacker to potentially ...
CVE-2023-1528HIGH8.8Use after free in Passwords in Google Chrome prior to 111.0.5563.110 allowed a remote attacker who had compromised the r...
CVE-2023-1262MEDIUM5.3 Missing MAC layer security in Silicon Labs Wi-SUN Linux Border Router v1.5.2 and earlier allows malicious node to route...
CVE-2023-1261MEDIUM5.3 Missing MAC layer security in Silicon Labs Wi-SUN SDK v1.5.0 and earlier allows malicious node to route malicious messa...
CVE-2023-0391HIGH8.1MGT-COMMERCE CloudPanel ships with a static SSL certificate to encrypt communications to the administrative interface, s...
CVE-2023-27087HIGH7.5Permissions vulnerabiltiy found in Xuxueli xxl-job v2.2.0, v 2.3.0 and v.2.3.1 allows attacker to obtain sensitive infor...
CVE-2023-25134MEDIUM6.7McAfee Total Protection prior to 16.0.50 may allow an adversary (with full administrative access) to modify a McAfee spe...
CVE-2023-25684CRITICAL9.8IBM Security Guardium Key Lifecycle Manager 3.0, 3.0.1, 4.0, 4.1, and 4.1.1 is vulnerable to SQL injection. A remote att...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now