2023 CVE Vulnerabilities
31,442 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-22755 | CRITICAL | 9.8 | 1.1% | Mar 1, 2023 | There are buffer overflow vulnerabilities in multiple underlying operating system processes that could lead to unauthent... |
| CVE-2023-22754 | CRITICAL | 9.8 | 1.1% | Mar 1, 2023 | There are buffer overflow vulnerabilities in multiple underlying operating system processes that could lead to unauthent... |
| CVE-2023-22753 | CRITICAL | 9.8 | 1.1% | Mar 1, 2023 | There are buffer overflow vulnerabilities in multiple underlying operating system processes that could lead to unauthent... |
| CVE-2023-22752 | CRITICAL | 9.8 | 1.3% | Mar 1, 2023 | There are stack-based buffer overflow vulnerabilities that could lead to unauthenticated remote code execution by sendin... |
| CVE-2023-22751 | CRITICAL | 9.8 | 1.3% | Mar 1, 2023 | There are stack-based buffer overflow vulnerabilities that could lead to unauthenticated remote code execution by sendin... |
| CVE-2023-22750 | CRITICAL | 9.8 | 1.7% | Mar 1, 2023 | There are multiple command injection vulnerabilities that could lead to unauthenticated remote code execution by sendin... |
| CVE-2023-22749 | CRITICAL | 9.8 | 1.7% | Mar 1, 2023 | There are multiple command injection vulnerabilities that could lead to unauthenticated remote code execution by sendin... |
| CVE-2023-22748 | CRITICAL | 9.8 | 1.7% | Mar 1, 2023 | There are multiple command injection vulnerabilities that could lead to unauthenticated remote code execution by sendin... |
| CVE-2023-22747 | CRITICAL | 9.8 | 1.7% | Mar 1, 2023 | There are multiple command injection vulnerabilities that could lead to unauthenticated remote code execution by sending... |
| CVE-2023-20085 | MEDIUM | 6.1 | 0.7% | Mar 1, 2023 | A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthentic... |
| CVE-2023-20075 | MEDIUM | 6.7 | 0.4% | Mar 1, 2023 | Vulnerability in the CLI of Cisco Secure Email Gateway could allow an authenticated, remote attacker to execute arbitrar... |
| CVE-2023-20053 | MEDIUM | 6.1 | 0.5% | Mar 1, 2023 | A vulnerability in the web-based management interface of Cisco Nexus Dashboard could allow an unauthenticated, remote at... |
| CVE-2023-20052 | MEDIUM | 5.3 | 6.7% | Mar 1, 2023 | On Feb 15, 2023, the following vulnerability in the ClamAV scanning library was disclosed: A vulnerability in the D... |
| CVE-2023-20032 | CRITICAL | 9.8 | 29.3% | Mar 1, 2023 | On Feb 15, 2023, the following vulnerability in the ClamAV scanning library was disclosed: A vulnerability in the H... |
| CVE-2023-20014 | HIGH | 7.5 | 1.0% | Mar 1, 2023 | A vulnerability in the DNS functionality of Cisco Nexus Dashboard Software could allow an unauthenticated, remote attack... |
| CVE-2023-20009 | HIGH | 7.2 | 1.3% | Mar 1, 2023 | A vulnerability in the Web UI and administrative CLI of the Cisco Secure Email Gateway (ESA) and Cisco Secure Email and ... |
| CVE-2023-0953 | HIGH | 8.8 | 1.0% | Mar 1, 2023 | Insufficient input sanitization in the documentation feature of Devolutions Server 2022.3.12 and earlier allows an authe... |
| CVE-2023-0952 | MEDIUM | 6.5 | 0.7% | Mar 1, 2023 | Improper access controls on entries in Devolutions Server 2022.3.12 and earlier could allow an authenticated user to ac... |
| CVE-2023-0951 | HIGH | 8.8 | 1.0% | Mar 1, 2023 | Improper access controls on some API endpoints in Devolutions Server 2022.3.12 and earlier could allow a standard privi... |
| CVE-2023-0567 | MEDIUM | 6.2 | 0.9% | Mar 1, 2023 | In PHP 8.0.X before 8.0.28, 8.1.X before 8.1.16 and 8.2.X before 8.2.3, password_verify() function may accept some inval... |
| CVE-2023-1105 | HIGH | 8.1 | 0.7% | Mar 1, 2023 | External Control of File Name or Path in GitHub repository flatpressblog/flatpress prior to 1.3. |
| CVE-2023-1104 | MEDIUM | 5.4 | 0.6% | Mar 1, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository flatpressblog/flatpress prior to 1.3. |
| CVE-2023-1103 | — | — | — | Mar 1, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2023-26608 | MEDIUM | 5.4 | 0.4% | Mar 1, 2023 | SOLDR (System of Orchestration, Lifecycle control, Detection and Response) 1.1.0 allows stored XSS via the module editor... |
| CVE-2023-24045 | MEDIUM | 6.5 | 0.8% | Mar 1, 2023 | In Dataiku DSS 11.2.1, an attacker can download other Dataiku files that were uploaded to the myfiles section by specify... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now