2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-38264 | HIGH | 7.5 | 0.8% | May 14, 2024 | The IBM SDK, Java Technology Edition's Object Request Broker (ORB) 7.1.0.0 through 7.1.5.21 and 8.0.0.0 through 8.0.8.21... |
| CVE-2023-37526 | MEDIUM | 6.5 | 0.4% | May 14, 2024 | HCL DRYiCE Lucy (now AEX) is affected by a Cross Origin Resource Sharing (CORS) vulnerability. The mobile app is vulnera... |
| CVE-2023-29881 | MEDIUM | 6.5 | 0.4% | May 14, 2024 | phpok 6.4.003 is vulnerable to SQL injection in the function index_f() in phpok64/framework/api/call_control.php. |
| CVE-2023-26863 | — | — | — | May 14, 2024 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2023-26566 | HIGH | 8.6 | 0.7% | May 14, 2024 | Sangoma FreePBX 1805 through 2203 on Linux contains hardcoded credentials for the Asterisk REST Interface (ARI), which a... |
| CVE-2023-41651 | MEDIUM | 6.5 | 0.4% | May 8, 2024 | Missing Authorization vulnerability in Multi-column Tag Map.This issue affects Multi-column Tag Map: from n/a through 17... |
| CVE-2023-40490 | HIGH | 7.8 | 0.3% | May 7, 2024 | Maxon Cinema 4D SKP File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote at... |
| CVE-2023-37325 | MEDIUM | 5.4 | 0.3% | May 7, 2024 | D-Link DAP-2622 DDP Set SSID List Missing Authentication Vulnerability. This vulnerability allows network-adjacent attac... |
| CVE-2023-35757 | HIGH | 8.8 | 0.6% | May 7, 2024 | D-Link DAP-2622 DDP Set Date-Time NTP Server Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulne... |
| CVE-2023-35749 | HIGH | 8.8 | 0.6% | May 7, 2024 | D-Link DAP-2622 DDP Firmware Upgrade Filename Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vuln... |
| CVE-2023-35748 | HIGH | 8.8 | 0.6% | May 7, 2024 | D-Link DAP-2622 DDP Firmware Upgrade Server IPv6 Address Stack-based Buffer Overflow Remote Code Execution Vulnerability... |
| CVE-2023-27321 | HIGH | 7.5 | 1.1% | May 7, 2024 | OPC Foundation UA .NET Standard ConditionRefresh Resource Exhaustion Denial-of-Service Vulnerability. This vulnerability... |
| CVE-2023-40694 | MEDIUM | 5.5 | 0.2% | May 7, 2024 | IBM Watson CP4D Data Stores 4.0.0 through 4.8.4 stores potentially sensitive information in log files that could be read... |
| CVE-2023-42757 | MEDIUM | 4.2 | 0.3% | May 7, 2024 | Process Explorer before 17.04 allows attackers to make it functionally unavailable (a denial of service for analysis) by... |
| CVE-2023-46012 | CRITICAL | 9.8 | 1.6% | May 7, 2024 | Buffer Overflow vulnerability LINKSYS EA7500 3.0.1.207964 allows a remote attacker to execute arbitrary code via an HTTP... |
| CVE-2023-7240 | MEDIUM | 5.8 | 0.4% | May 7, 2024 | An improper authorization level has been detected in the login panel. It may lead to unauthenticated Server Side Reques... |
| CVE-2023-31234 | MEDIUM | 6.3 | 0.3% | May 7, 2024 | Missing Authorization vulnerability in Tilda Publishing.This issue affects Tilda Publishing: from n/a through 0.3.23. |
| CVE-2023-6810 | MEDIUM | 4.3 | 0.4% | May 7, 2024 | The ClickCease Click Fraud Protection plugin for WordPress is vulnerable to unauthorized access of data due to an improp... |
| CVE-2023-33548 | MEDIUM | 6.8 | 0.5% | May 6, 2024 | Cross Site Scripting (XSS) vulnerability in ASUS RT-AC51U with firmware versions up to and including 3.0.0.4.380.8591 al... |
| CVE-2023-43531 | HIGH | 7.8 | 0.1% | May 6, 2024 | Memory corruption while verifying the serialized header when the key pairs are generated. |
| CVE-2023-43530 | HIGH | 7.8 | 0.1% | May 6, 2024 | Memory corruption in HLOS while checking for the storage type. |
| CVE-2023-43529 | HIGH | 7.5 | 0.3% | May 6, 2024 | Transient DOS while processing IKEv2 Informational request messages, when a malformed fragment packet is received. |
| CVE-2023-43528 | MEDIUM | 5.5 | 0.1% | May 6, 2024 | Information disclosure when the ADSP payload size received in HLOS in response to Audio Stream Manager matrix session is... |
| CVE-2023-43527 | MEDIUM | 5.5 | 0.1% | May 6, 2024 | Information disclosure while parsing dts header atom in Video. |
| CVE-2023-43526 | HIGH | 7.8 | 0.1% | May 6, 2024 | Memory corruption while querying module parameters from Listen Sound model client in kernel from user space. |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now