2023 CVE Vulnerabilities

31,442 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-22755CRITICAL9.8There are buffer overflow vulnerabilities in multiple underlying operating system processes that could lead to unauthent...
CVE-2023-22754CRITICAL9.8There are buffer overflow vulnerabilities in multiple underlying operating system processes that could lead to unauthent...
CVE-2023-22753CRITICAL9.8There are buffer overflow vulnerabilities in multiple underlying operating system processes that could lead to unauthent...
CVE-2023-22752CRITICAL9.8There are stack-based buffer overflow vulnerabilities that could lead to unauthenticated remote code execution by sendin...
CVE-2023-22751CRITICAL9.8There are stack-based buffer overflow vulnerabilities that could lead to unauthenticated remote code execution by sendin...
CVE-2023-22750CRITICAL9.8 There are multiple command injection vulnerabilities that could lead to unauthenticated remote code execution by sendin...
CVE-2023-22749CRITICAL9.8 There are multiple command injection vulnerabilities that could lead to unauthenticated remote code execution by sendin...
CVE-2023-22748CRITICAL9.8 There are multiple command injection vulnerabilities that could lead to unauthenticated remote code execution by sendin...
CVE-2023-22747CRITICAL9.8There are multiple command injection vulnerabilities that could lead to unauthenticated remote code execution by sending...
CVE-2023-20085MEDIUM6.1A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthentic...
CVE-2023-20075MEDIUM6.7Vulnerability in the CLI of Cisco Secure Email Gateway could allow an authenticated, remote attacker to execute arbitrar...
CVE-2023-20053MEDIUM6.1A vulnerability in the web-based management interface of Cisco Nexus Dashboard could allow an unauthenticated, remote at...
CVE-2023-20052MEDIUM5.3On Feb 15, 2023, the following vulnerability in the ClamAV scanning library was disclosed: A vulnerability in the D...
CVE-2023-20032CRITICAL9.8On Feb 15, 2023, the following vulnerability in the ClamAV scanning library was disclosed: A vulnerability in the H...
CVE-2023-20014HIGH7.5A vulnerability in the DNS functionality of Cisco Nexus Dashboard Software could allow an unauthenticated, remote attack...
CVE-2023-20009HIGH7.2A vulnerability in the Web UI and administrative CLI of the Cisco Secure Email Gateway (ESA) and Cisco Secure Email and ...
CVE-2023-0953HIGH8.8Insufficient input sanitization in the documentation feature of Devolutions Server 2022.3.12 and earlier allows an authe...
CVE-2023-0952MEDIUM6.5Improper access controls on entries in Devolutions Server 2022.3.12 and earlier could allow an authenticated user to ac...
CVE-2023-0951HIGH8.8Improper access controls on some API endpoints in Devolutions Server 2022.3.12 and earlier could allow a standard privi...
CVE-2023-0567MEDIUM6.2In PHP 8.0.X before 8.0.28, 8.1.X before 8.1.16 and 8.2.X before 8.2.3, password_verify() function may accept some inval...
CVE-2023-1105HIGH8.1External Control of File Name or Path in GitHub repository flatpressblog/flatpress prior to 1.3.
CVE-2023-1104MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository flatpressblog/flatpress prior to 1.3.
CVE-2023-1103Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2023-26608MEDIUM5.4SOLDR (System of Orchestration, Lifecycle control, Detection and Response) 1.1.0 allows stored XSS via the module editor...
CVE-2023-24045MEDIUM6.5In Dataiku DSS 11.2.1, an attacker can download other Dataiku files that were uploaded to the myfiles section by specify...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now