2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-34382 | HIGH | 8.8 | 0.5% | Dec 19, 2023 | Deserialization of Untrusted Data vulnerability in weDevs Dokan – Best WooCommerce Multivendor Marketplace Solution – Bu... |
| CVE-2023-46804 | HIGH | 7.5 | 4.1% | Dec 19, 2023 | An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could r... |
| CVE-2023-46803 | HIGH | 7.5 | 4.1% | Dec 19, 2023 | An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could r... |
| CVE-2023-46262 | HIGH | 7.5 | 82.8% | Dec 19, 2023 | An unauthenticated attacked could send a specifically crafted web request causing a Server-Side Request Forgery (SSRF) i... |
| CVE-2023-44991 | HIGH | 7.5 | 0.6% | Dec 19, 2023 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Jordy Meow Media File Renamer: Rename Files ... |
| CVE-2023-44983 | HIGH | 7.5 | 0.6% | Dec 19, 2023 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Aruba.It Aruba HiSpeed Cache.This issue affe... |
| CVE-2023-6913 | HIGH | 8.1 | 0.7% | Dec 19, 2023 | A session hijacking vulnerability has been detected in the Imou Life application affecting version 6.7.0. This vulnerabi... |
| CVE-2023-6711 | HIGH | 7.5 | 0.7% | Dec 19, 2023 | Vulnerability exists in SCI IEC 60870-5-104 and HCI IEC 60870-5-104 that affects the RTU500 series product versions list... |
| CVE-2023-6280 | HIGH | 7.5 | 0.6% | Dec 19, 2023 | An XXE (XML External Entity) vulnerability has been detected in 52North WPS affecting versions prior to 4.0.0-beta.11. T... |
| CVE-2023-1514 | HIGH | 7.5 | 0.3% | Dec 19, 2023 | A vulnerability exists in the component RTU500 Scripting interface. When a client connects to a server using TLS, the se... |
| CVE-2023-6932 | HIGH | 7 | 0.4% | Dec 19, 2023 | A use-after-free vulnerability in the Linux kernel's ipv4: igmp component can be exploited to achieve local privilege es... |
| CVE-2023-6931 | HIGH | 7 | 0.7% | Dec 19, 2023 | A heap out-of-bounds write vulnerability in the Linux kernel's Performance Events system component can be exploited to a... |
| CVE-2023-6873 | HIGH | 8.8 | 0.8% | Dec 19, 2023 | Memory safety bugs present in Firefox 120. Some of these bugs showed evidence of memory corruption and we presume that w... |
| CVE-2023-6866 | HIGH | 8.8 | 0.7% | Dec 19, 2023 | TypedArrays can be fallible and lacked proper exception handling. This could lead to abuse in other APIs which expect Ty... |
| CVE-2023-6864 | HIGH | 8.8 | 1.2% | Dec 19, 2023 | Memory safety bugs present in Firefox 120, Firefox ESR 115.5, and Thunderbird 115.5. Some of these bugs showed evidence ... |
| CVE-2023-6863 | HIGH | 8.8 | 1.0% | Dec 19, 2023 | The `ShutdownObserver()` was susceptible to potentially undefined behavior due to its reliance on a dynamic type that la... |
| CVE-2023-6862 | HIGH | 8.8 | 1.0% | Dec 19, 2023 | A use-after-free was identified in the `nsDNSService::Init`. This issue appears to manifest rarely during start-up. Thi... |
| CVE-2023-6861 | HIGH | 8.8 | 1.4% | Dec 19, 2023 | The `nsWindow::PickerOpen(void)` method was susceptible to a heap buffer overflow when running in headless mode. This vu... |
| CVE-2023-6859 | HIGH | 8.8 | 1.1% | Dec 19, 2023 | A use-after-free condition affected TLS socket creation when under memory pressure. This vulnerability affects Firefox E... |
| CVE-2023-6858 | HIGH | 8.8 | 1.5% | Dec 19, 2023 | Firefox was susceptible to a heap buffer overflow in `nsTextFragment` due to insufficient OOM handling. This vulnerabili... |
| CVE-2023-6856 | HIGH | 8.8 | 20.5% | Dec 19, 2023 | The WebGL `DrawElementsInstanced` method was susceptible to a heap buffer overflow when used on systems with the Mesa VM... |
| CVE-2023-6730 | HIGH | 8.8 | 0.9% | Dec 19, 2023 | Deserialization of Untrusted Data in GitHub repository huggingface/transformers prior to 4.36. |
| CVE-2023-49736 | HIGH | 8.8 | 1.2% | Dec 19, 2023 | A where_in JINJA macro allows users to specify a quote, which combined with a carefully crafted statement would allow fo... |
| CVE-2023-6940 | HIGH | 8.8 | 1.2% | Dec 19, 2023 | with only one user interaction(download a malicious config), attackers can gain full command execution on the victim sys... |
| CVE-2023-6315 | HIGH | 7.8 | 0.3% | Dec 19, 2023 | Out-of-bouds read vulnerability in FPWin Pro version 7.7.0.0 and all previous versions may allow attackers to execute ar... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now