2023 CVE Vulnerabilities

31,442 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-21425MEDIUM5.5Improper access control vulnerability in telecom application prior to SMR JAN-2023 Release 1 allows local attackers to g...
CVE-2023-21424LOW3.3Improper Handling of Insufficient Permissions or Privileges vulnerability in SemChameleonHelper prior to SMR Jan-2023 Re...
CVE-2023-21423MEDIUM5.5Improper authorization vulnerability in ChnFileShareKit prior to SMR Jan-2023 Release 1 allows attacker to control BLE a...
CVE-2023-21422MEDIUM5.5Improper authorization vulnerability in semAddPublicDnsAddr in WifiSevice prior to SMR Jan-2023 Release 1 allows attacke...
CVE-2023-21421HIGH7.8Improper Handling of Insufficient Permissions or Privileges vulnerability in KnoxCustomManagerService prior to SMR Jan-2...
CVE-2023-21420HIGH7.8Use of Externally-Controlled Format String vulnerabilities in STST TA prior to SMR Jan-2023 Release 1 allows arbitrary c...
CVE-2023-21419HIGH7.5An improper implementation logic in Secure Folder prior to SMR Jan-2023 Release 1 allows the Secure Folder container rem...
CVE-2023-24815MEDIUM5.3Vert.x-Web is a set of building blocks for building web applications in the java programming language. When running vert...
CVE-2023-22609Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2023-22607Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2023-22606Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2023-22605Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2023-22604Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2023-22603Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2023-0745CRITICAL9.8 The High Availability functionality of Yugabyte Anywhere can be abused to write arbitrary ...
CVE-2023-0575CRITICAL9.8External Control of Critical State Data, Improper Control of Generation of Code ('Code Injection') vulnerability in Yuga...
CVE-2023-0624MEDIUM6.1OrangeScrum version 2.0.11 allows an external attacker to obtain arbitrary user accounts from the application. This is p...
CVE-2023-22953HIGH8.8In ExpressionEngine before 7.2.6, remote code execution can be achieved by an authenticated Control Panel user.
CVE-2023-0574CRITICAL9.8Server-Side Request Forgery (SSRF), Improperly Controlled Modification of Dynamically-Determined Object Attributes, Impr...
CVE-2023-0760HIGH7.8Heap-based Buffer Overflow in GitHub repository gpac/gpac prior to V2.1.0-DEV.
CVE-2023-0759HIGH8.8Privilege Chaining in GitHub repository cockpit-hq/cockpit prior to 2.3.8.
CVE-2023-0758CRITICAL9.8A vulnerability was found in glorylion JFinalOA 1.0.2 and classified as critical. This issue affects some unknown proces...
CVE-2023-25168HIGH8.2Wings is Pterodactyl's server control plane. This vulnerability can be used to delete files and directories recursively ...
CVE-2023-0251HIGH7.8Delta Electronics DIAScreen versions 1.2.1.23 and prior are vulnerable to a buffer overflow through improper restriction...
CVE-2023-0250HIGH7.8Delta Electronics DIAScreen versions 1.2.1.23 and prior are vulnerable to a stack-based buffer overflow, which could all...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now