2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-6722HIGH7.5A path traversal vulnerability has been detected in Repox, which allows an attacker to read arbitrary files on the runni...
CVE-2023-6721HIGH7.5An XEE vulnerability has been found in Repox, which allows a remote attacker to interfere with the application's XML dat...
CVE-2023-47075HIGH7.8Adobe Illustrator versions 28.0 (and earlier) and 27.9 (and earlier) are affected by a Use After Free vulnerability that...
CVE-2023-47074HIGH7.8Adobe Illustrator versions 28.0 (and earlier) and 27.9 (and earlier) are affected by an out-of-bounds read vulnerability...
CVE-2023-47063HIGH7.8Adobe Illustrator versions 28.0 (and earlier) and 27.9 (and earlier) are affected by an out-of-bounds write vulnerabilit...
CVE-2023-6718HIGH7.5An authentication bypass vulnerability has been found in Repox, which allows a remote user to send a specially crafted P...
CVE-2023-6534HIGH7.5In versions of FreeBSD 14.0-RELEASE before 14-RELEASE-p2, FreeBSD 13.2-RELEASE before 13.2-RELEASE-p7 and FreeBSD 12.4-R...
CVE-2023-44252HIGH8.8** UNSUPPORTED WHEN ASSIGNED **An improper authentication vulnerability [CWE-287] in Fortinet FortiWAN version 5.2.0 thr...
CVE-2023-44251HIGH8.8** UNSUPPORTED WHEN ASSIGNED **A improper limitation of a pathname to a restricted directory ('path traversal') vulnerab...
CVE-2023-31210HIGH7.8Usage of user controlled LD_LIBRARY_PATH in agent in Checkmk 2.2.0p10 up to 2.2.0p16 allows malicious Checkmk site user ...
CVE-2023-6478HIGH7.5A flaw was found in xorg-server. A specially crafted request to RRChangeProviderProperty or RRChangeOutputProperty can t...
CVE-2023-6377HIGH7.8A flaw was found in xorg-server. Querying or changing XKB button actions such as moving from a touchpad to a mouse can r...
CVE-2023-48791HIGH8.8An improper neutralization of special elements used in a command ('Command Injection') vulnerability [CWE-77] in FortiPo...
CVE-2023-48782HIGH8.8A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiWLM versio...
CVE-2023-41678HIGH8.8A double free in Fortinet FortiOS versions 7.0.0 through 7.0.5, FortiPAM version 1.0.0 through 1.0.3, 1.1.0 through 1.1....
CVE-2023-40716HIGH7.8An improper neutralization of special elements used in an OS command vulnerability [CWE-78]  in the command line interpr...
CVE-2023-36639HIGH8.8A use of externally-controlled format string in Fortinet FortiProxy versions 7.2.0 through 7.2.4, 7.0.0 through 7.0.10, ...
CVE-2023-45801HIGH7.5Improper Authentication vulnerability in Nadatel DVR allows Information Elicitation.This issue affects DVR: from 3.0.0 b...
CVE-2023-47579HIGH7.5Relyum RELY-PCIe 22.2.1 devices suffer from a system group misconfiguration, allowing read access to the central passwor...
CVE-2023-47578HIGH8.8Relyum RELY-PCIe 22.2.1 and RELY-REC 23.1.0 devices are susceptible to Cross Site Request Forgery (CSRF) attacks due to ...
CVE-2023-47576HIGH8.8An issue was discovered in Relyum RELY-PCIe 22.2.1 and RELY-REC 23.1.0 devices, allowing authenticated command injection...
CVE-2023-47573HIGH8.8An issue discovered in Relyum RELY-PCIe 22.2.1 devices. The authorization mechanism is not enforced in the web interface...
CVE-2023-45800HIGH7.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Hanbiro Hanbiro gr...
CVE-2023-6753HIGH8.8Path Traversal in GitHub repository mlflow/mlflow prior to 2.9.2.
CVE-2023-3517HIGH8.8 Hitachi Vantara Pentaho Data Integration & Analytics versions before 9.5.0.1 and 9.3.0.5, including 8.3.x does not res...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now