2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-34382HIGH8.8Deserialization of Untrusted Data vulnerability in weDevs Dokan – Best WooCommerce Multivendor Marketplace Solution – Bu...
CVE-2023-46804HIGH7.5An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could r...
CVE-2023-46803HIGH7.5An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could r...
CVE-2023-46262HIGH7.5An unauthenticated attacked could send a specifically crafted web request causing a Server-Side Request Forgery (SSRF) i...
CVE-2023-44991HIGH7.5Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Jordy Meow Media File Renamer: Rename Files ...
CVE-2023-44983HIGH7.5Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Aruba.It Aruba HiSpeed Cache.This issue affe...
CVE-2023-6913HIGH8.1A session hijacking vulnerability has been detected in the Imou Life application affecting version 6.7.0. This vulnerabi...
CVE-2023-6711HIGH7.5Vulnerability exists in SCI IEC 60870-5-104 and HCI IEC 60870-5-104 that affects the RTU500 series product versions list...
CVE-2023-6280HIGH7.5An XXE (XML External Entity) vulnerability has been detected in 52North WPS affecting versions prior to 4.0.0-beta.11. T...
CVE-2023-1514HIGH7.5A vulnerability exists in the component RTU500 Scripting interface. When a client connects to a server using TLS, the se...
CVE-2023-6932HIGH7A use-after-free vulnerability in the Linux kernel's ipv4: igmp component can be exploited to achieve local privilege es...
CVE-2023-6931HIGH7A heap out-of-bounds write vulnerability in the Linux kernel's Performance Events system component can be exploited to a...
CVE-2023-6873HIGH8.8Memory safety bugs present in Firefox 120. Some of these bugs showed evidence of memory corruption and we presume that w...
CVE-2023-6866HIGH8.8TypedArrays can be fallible and lacked proper exception handling. This could lead to abuse in other APIs which expect Ty...
CVE-2023-6864HIGH8.8Memory safety bugs present in Firefox 120, Firefox ESR 115.5, and Thunderbird 115.5. Some of these bugs showed evidence ...
CVE-2023-6863HIGH8.8The `ShutdownObserver()` was susceptible to potentially undefined behavior due to its reliance on a dynamic type that la...
CVE-2023-6862HIGH8.8A use-after-free was identified in the `nsDNSService::Init`. This issue appears to manifest rarely during start-up. Thi...
CVE-2023-6861HIGH8.8The `nsWindow::PickerOpen(void)` method was susceptible to a heap buffer overflow when running in headless mode. This vu...
CVE-2023-6859HIGH8.8A use-after-free condition affected TLS socket creation when under memory pressure. This vulnerability affects Firefox E...
CVE-2023-6858HIGH8.8Firefox was susceptible to a heap buffer overflow in `nsTextFragment` due to insufficient OOM handling. This vulnerabili...
CVE-2023-6856HIGH8.8The WebGL `DrawElementsInstanced` method was susceptible to a heap buffer overflow when used on systems with the Mesa VM...
CVE-2023-6730HIGH8.8Deserialization of Untrusted Data in GitHub repository huggingface/transformers prior to 4.36.
CVE-2023-49736HIGH8.8A where_in JINJA macro allows users to specify a quote, which combined with a carefully crafted statement would allow fo...
CVE-2023-6940HIGH8.8with only one user interaction(download a malicious config), attackers can gain full command execution on the victim sys...
CVE-2023-6315HIGH7.8Out-of-bouds read vulnerability in FPWin Pro version 7.7.0.0 and all previous versions may allow attackers to execute ar...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now