2023 CVE Vulnerabilities
31,442 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-0847 | HIGH | 8.1 | 0.8% | Mar 1, 2023 | The Sub-IoT implementation of the DASH 7 Alliance protocol has a vulnerability that can lead to an out-of-bounds write ... |
| CVE-2023-25575 | MEDIUM | 6.5 | 0.6% | Feb 28, 2023 | API Platform Core is the server component of API Platform: hypermedia and GraphQL APIs. Resource properties secured with... |
| CVE-2023-1095 | MEDIUM | 5.5 | 0.2% | Feb 28, 2023 | In nf_tables_updtable, if nf_tables_table_enable returns an error, nft_trans_destroy is called to free the transaction o... |
| CVE-2023-22999 | MEDIUM | 5.5 | 0.3% | Feb 28, 2023 | In the Linux kernel before 5.16.3, drivers/usb/dwc3/dwc3-qcom.c misinterprets the dwc3_qcom_create_urs_usb_platdev retur... |
| CVE-2023-22998 | MEDIUM | 5.5 | 0.3% | Feb 28, 2023 | In the Linux kernel before 6.0.3, drivers/gpu/drm/virtio/virtgpu_object.c misinterprets the drm_gem_shmem_get_sg_table r... |
| CVE-2023-22997 | MEDIUM | 5.5 | 0.3% | Feb 28, 2023 | In the Linux kernel before 6.1.2, kernel/module/decompress.c misinterprets the module_get_next_page return value (expect... |
| CVE-2023-22996 | MEDIUM | 5.5 | 0.3% | Feb 28, 2023 | In the Linux kernel before 5.17.2, drivers/soc/qcom/qcom_aoss.c does not release an of_find_device_by_node reference aft... |
| CVE-2023-1100 | CRITICAL | 9.8 | 0.8% | Feb 28, 2023 | A vulnerability classified as critical has been found in SourceCodester Online Catering Reservation System 1.0. This aff... |
| CVE-2023-1099 | CRITICAL | 9.8 | 0.7% | Feb 28, 2023 | A vulnerability was found in SourceCodester Online Student Management System 1.0. It has been rated as critical. Affecte... |
| CVE-2023-27372 | CRITICAL | 9.8 | 99.7% | Feb 28, 2023 | SPIP before 4.2.1 allows Remote Code Execution via form values in the public area because serialization is mishandled. T... |
| CVE-2023-27371 | MEDIUM | 5.9 | 1.2% | Feb 28, 2023 | GNU libmicrohttpd before 0.9.76 allows remote DoS (Denial of Service) due to improper parsing of a multipart/form-data b... |
| CVE-2023-1065 | MEDIUM | 5.3 | 0.6% | Feb 28, 2023 | This vulnerability in the Snyk Kubernetes Monitor can result in irrelevant data being posted to a Snyk Organization, whi... |
| CVE-2023-1017 | HIGH | 7.8 | 1.3% | Feb 28, 2023 | An out-of-bounds write vulnerability exists in TPM2.0's Module Library allowing writing of a 2-byte data past the end of... |
| CVE-2023-27320 | HIGH | 7.2 | 1.7% | Feb 28, 2023 | Sudo before 1.9.13p2 has a double free in the per-command chroot feature. |
| CVE-2023-25432 | HIGH | 7.2 | 0.7% | Feb 28, 2023 | An issue was discovered in Online Reviewer Management System v1.0. There is a SQL injection that can directly issue inst... |
| CVE-2023-25431 | MEDIUM | 4.8 | 0.5% | Feb 28, 2023 | An issue was discovered in Online Reviewer Management System v1.0. There is a XSS vulnerability via reviewer_0/admins/as... |
| CVE-2023-1018 | MEDIUM | 5.5 | 5.6% | Feb 28, 2023 | An out-of-bounds read vulnerability exists in TPM2.0's Module Library allowing a 2-byte read past the end of a TPM2.0 co... |
| CVE-2023-27295 | MEDIUM | 5.4 | 0.4% | Feb 28, 2023 | Cross-site request forgery is facilitated by OpenCATS failure to require CSRF tokens in POST requests. An attacker can e... |
| CVE-2023-27294 | MEDIUM | 5.4 | 0.5% | Feb 28, 2023 | Improper neutralization of input during web page generation allows an authenticated attacker with access to a restricted... |
| CVE-2023-27293 | MEDIUM | 6.1 | 0.6% | Feb 28, 2023 | Improper neutralization of input during web page generation allows an unauthenticated attacker to submit malicious Javas... |
| CVE-2023-27292 | MEDIUM | 5.4 | 1.0% | Feb 28, 2023 | An open redirect vulnerability exposes OpenCATS to template injection due to improper validation of user-supplied GET pa... |
| CVE-2023-25540 | HIGH | 7.1 | 0.2% | Feb 28, 2023 | Dell PowerScale OneFS 9.4.0.x contains an incorrect default permissions vulnerability. A local malicious user could pot... |
| CVE-2023-23689 | HIGH | 7.5 | 0.6% | Feb 28, 2023 | Dell PowerScale nodes A200, A2000, H400, H500, H600, H5600, F800, F810 integrated hardware management software contains... |
| CVE-2023-20948 | HIGH | 7.5 | 0.4% | Feb 28, 2023 | In dropFramesUntilIframe of AAVCAssembler.cpp, there is a possible out of bounds read due to a heap buffer overflow. Thi... |
| CVE-2023-20946 | CRITICAL | 9.8 | 0.5% | Feb 28, 2023 | In onStart of BluetoothSwitchPreferenceController.java, there is a possible permission bypass due to a confused deputy. ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now