2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-41920 | CRITICAL | 9.8 | 0.4% | Jul 2, 2024 | The vulnerability allows attackers access to the root account without having to authenticate. Specifically, if the devic... |
| CVE-2023-41919 | CRITICAL | 9.8 | 0.4% | Jul 2, 2024 | Hardcoded credentials are discovered within the application's source code, creating a potential security risk for unauth... |
| CVE-2023-41918 | CRITICAL | 10 | 0.6% | Jul 2, 2024 | A vulnerability allows unauthorized access to functionality inadequately constrained by ACLs. Attackers may exploit this... |
| CVE-2023-41917 | CRITICAL | 10 | 0.7% | Jul 2, 2024 | Inadequate input validation exposes the system to potential remote code execution (RCE) risks. Attackers can exploit thi... |
| CVE-2023-43554 | HIGH | 7.8 | 0.1% | Jul 1, 2024 | Memory corruption while processing IOCTL handler in FastRPC. |
| CVE-2023-50964 | MEDIUM | 5.4 | 0.3% | Jun 30, 2024 | IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed a... |
| CVE-2023-50953 | MEDIUM | 4.3 | 0.3% | Jun 30, 2024 | IBM InfoSphere Information Server 11.7 could allow a remote attacker to obtain sensitive information when a detailed tec... |
| CVE-2023-50952 | MEDIUM | 5.4 | 0.2% | Jun 30, 2024 | IBM InfoSphere Information Server 11.7 is vulnerable to server-side request forgery (SSRF). This may allow an authentica... |
| CVE-2023-50954 | MEDIUM | 5.3 | 0.4% | Jun 30, 2024 | IBM InfoSphere Information Server 11.7 returns sensitive information in URL information that could be used in further at... |
| CVE-2023-35022 | LOW | 3.3 | 0.2% | Jun 30, 2024 | IBM InfoSphere Information Server 11.7 could allow a local user to update projects that they do not have the authorizati... |
| CVE-2023-4017 | MEDIUM | 6.1 | 0.4% | Jun 29, 2024 | The Goya theme for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘attra-color’, 'attra-size', and '... |
| CVE-2023-47803 | MEDIUM | 5.3 | 0.7% | Jun 28, 2024 | A vulnerability regarding improper limitation of a pathname to a restricted directory ('Path Traversal') is found in the... |
| CVE-2023-47802 | HIGH | 7.2 | 1.5% | Jun 28, 2024 | A vulnerability regarding improper neutralization of special elements used in an OS command ('OS Command Injection') is ... |
| CVE-2023-52892 | HIGH | 7.5 | 0.4% | Jun 27, 2024 | In phpseclib before 1.0.22, 2.x before 2.0.46, and 3.x before 3.0.33, some characters in Subject Alternative Name fields... |
| CVE-2023-38370 | MEDIUM | 6.5 | 0.7% | Jun 27, 2024 | IBM Security Access Manager Docker 10.0.0.0 through 10.0.7.1, under certain configurations, could allow a user on the ne... |
| CVE-2023-38368 | MEDIUM | 5.5 | 0.2% | Jun 27, 2024 | IBM Security Access Manager Docker 10.0.0.0 through 10.0.7.1 could disclose sensitive information to a local user to do ... |
| CVE-2023-30998 | HIGH | 7.8 | 0.2% | Jun 27, 2024 | IBM Security Access Manager Docker 10.0.0.0 through 10.0.7.1 could allow a local user to obtain root access due to impro... |
| CVE-2023-30997 | HIGH | 7.8 | 0.2% | Jun 27, 2024 | IBM Security Access Manager Docker 10.0.0.0 through 10.0.7.1 could allow a local user to obtain root access due to impro... |
| CVE-2023-42014 | MEDIUM | 5.4 | 0.3% | Jun 27, 2024 | IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.2.0.2 is vulnerable to cross-site scripting. This vulnera... |
| CVE-2023-42011 | MEDIUM | 5.4 | 0.2% | Jun 27, 2024 | IBM Sterling B2B Integrator Standard Edition 6.1 and 6.2 does not restrict or incorrectly restricts frame objects or UI ... |
| CVE-2023-38371 | HIGH | 7.5 | 0.5% | Jun 27, 2024 | IBM Security Access Manager Docker 10.0.0.0 through 10.0.7.1 uses weaker than expected cryptographic algorithms that cou... |
| CVE-2023-30430 | MEDIUM | 5.5 | 0.2% | Jun 27, 2024 | IBM Security Verify Access 10.0.0 through 10.0.7.1 could allow a local user to obtain sensitive information from trace l... |
| CVE-2023-7270 | MEDIUM | 5.3 | 0.3% | Jun 27, 2024 | An issue was discovered in SoftMaker Office 2024 / NX before revision 1214 and SoftMaker FreeOffice 2014 before revision... |
| CVE-2023-26877 | MEDIUM | 6.3 | 0.4% | Jun 26, 2024 | File upload vulnerability found in Softexpert Excellence Suite v.2.1 allows attackers to execute arbitrary code via a .p... |
| CVE-2023-37541 | MEDIUM | 4.3 | 0.3% | Jun 25, 2024 | HCL Connections contains a broken access control vulnerability that may allow unauthorized user to update data in certai... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now