2023 CVE Vulnerabilities
31,442 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-21425 | MEDIUM | 5.5 | 0.2% | Feb 9, 2023 | Improper access control vulnerability in telecom application prior to SMR JAN-2023 Release 1 allows local attackers to g... |
| CVE-2023-21424 | LOW | 3.3 | 0.2% | Feb 9, 2023 | Improper Handling of Insufficient Permissions or Privileges vulnerability in SemChameleonHelper prior to SMR Jan-2023 Re... |
| CVE-2023-21423 | MEDIUM | 5.5 | 0.1% | Feb 9, 2023 | Improper authorization vulnerability in ChnFileShareKit prior to SMR Jan-2023 Release 1 allows attacker to control BLE a... |
| CVE-2023-21422 | MEDIUM | 5.5 | 0.1% | Feb 9, 2023 | Improper authorization vulnerability in semAddPublicDnsAddr in WifiSevice prior to SMR Jan-2023 Release 1 allows attacke... |
| CVE-2023-21421 | HIGH | 7.8 | 0.2% | Feb 9, 2023 | Improper Handling of Insufficient Permissions or Privileges vulnerability in KnoxCustomManagerService prior to SMR Jan-2... |
| CVE-2023-21420 | HIGH | 7.8 | 0.2% | Feb 9, 2023 | Use of Externally-Controlled Format String vulnerabilities in STST TA prior to SMR Jan-2023 Release 1 allows arbitrary c... |
| CVE-2023-21419 | HIGH | 7.5 | 0.2% | Feb 9, 2023 | An improper implementation logic in Secure Folder prior to SMR Jan-2023 Release 1 allows the Secure Folder container rem... |
| CVE-2023-24815 | MEDIUM | 5.3 | 0.9% | Feb 9, 2023 | Vert.x-Web is a set of building blocks for building web applications in the java programming language. When running vert... |
| CVE-2023-22609 | — | — | — | Feb 9, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2023-22607 | — | — | — | Feb 9, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2023-22606 | — | — | — | Feb 9, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2023-22605 | — | — | — | Feb 9, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2023-22604 | — | — | — | Feb 9, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2023-22603 | — | — | — | Feb 9, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2023-0745 | CRITICAL | 9.8 | 0.5% | Feb 9, 2023 | The High Availability functionality of Yugabyte Anywhere can be abused to write arbitrary ... |
| CVE-2023-0575 | CRITICAL | 9.8 | 0.8% | Feb 9, 2023 | External Control of Critical State Data, Improper Control of Generation of Code ('Code Injection') vulnerability in Yuga... |
| CVE-2023-0624 | MEDIUM | 6.1 | 0.5% | Feb 9, 2023 | OrangeScrum version 2.0.11 allows an external attacker to obtain arbitrary user accounts from the application. This is p... |
| CVE-2023-22953 | HIGH | 8.8 | 1.4% | Feb 9, 2023 | In ExpressionEngine before 7.2.6, remote code execution can be achieved by an authenticated Control Panel user. |
| CVE-2023-0574 | CRITICAL | 9.8 | 0.6% | Feb 9, 2023 | Server-Side Request Forgery (SSRF), Improperly Controlled Modification of Dynamically-Determined Object Attributes, Impr... |
| CVE-2023-0760 | HIGH | 7.8 | 0.4% | Feb 9, 2023 | Heap-based Buffer Overflow in GitHub repository gpac/gpac prior to V2.1.0-DEV. |
| CVE-2023-0759 | HIGH | 8.8 | 0.3% | Feb 9, 2023 | Privilege Chaining in GitHub repository cockpit-hq/cockpit prior to 2.3.8. |
| CVE-2023-0758 | CRITICAL | 9.8 | 0.6% | Feb 9, 2023 | A vulnerability was found in glorylion JFinalOA 1.0.2 and classified as critical. This issue affects some unknown proces... |
| CVE-2023-25168 | HIGH | 8.2 | 1.0% | Feb 9, 2023 | Wings is Pterodactyl's server control plane. This vulnerability can be used to delete files and directories recursively ... |
| CVE-2023-0251 | HIGH | 7.8 | 0.3% | Feb 8, 2023 | Delta Electronics DIAScreen versions 1.2.1.23 and prior are vulnerable to a buffer overflow through improper restriction... |
| CVE-2023-0250 | HIGH | 7.8 | 2.2% | Feb 8, 2023 | Delta Electronics DIAScreen versions 1.2.1.23 and prior are vulnerable to a stack-based buffer overflow, which could all... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now