2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-49375HIGH8.8JFinalCMS v5.0.0 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/friend_link/upda...
CVE-2023-49374HIGH8.8JFinalCMS v5.0.0 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/slide/update.
CVE-2023-49373HIGH8.8JFinalCMS v5.0.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via /admin/slide/delete.
CVE-2023-49372HIGH8.8JFinalCMS v5.0.0 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/slide/save.
CVE-2023-45842HIGH8.1Multiple data integrity vulnerabilities exist in the package hash checking functionality of Buildroot 2023.08.1 and Buil...
CVE-2023-45841HIGH8.1Multiple data integrity vulnerabilities exist in the package hash checking functionality of Buildroot 2023.08.1 and Buil...
CVE-2023-45840HIGH8.1Multiple data integrity vulnerabilities exist in the package hash checking functionality of Buildroot 2023.08.1 and Buil...
CVE-2023-45839HIGH8.1Multiple data integrity vulnerabilities exist in the package hash checking functionality of Buildroot 2023.08.1 and Buil...
CVE-2023-45838HIGH8.1Multiple data integrity vulnerabilities exist in the package hash checking functionality of Buildroot 2023.08.1 and Buil...
CVE-2023-43628HIGH7.5An integer underflow vulnerability exists in the NTRIP Stream Parsing functionality of GPSd 3.25.1~dev. A specially craf...
CVE-2023-43608HIGH8.1A data integrity vulnerability exists in the BR_NO_CHECK_HASH_FOR functionality of Buildroot 2023.08.1 and dev commit 62...
CVE-2023-41835HIGH7.5When a Multipart request is performed but some of the fields exceed the maxStringLength  limit, the upload files will re...
CVE-2023-5188HIGH7.5The MMS Interpreter of WagoAppRTU in versions below 1.4.6.0 which is used by the WAGO Telecontrol Configurator is vulner...
CVE-2023-43472HIGH7.5An issue in MLFlow versions 2.8.1 and before allows a remote attacker to obtain sensitive information via a crafted requ...
CVE-2023-44295HIGH8.1 Dell PowerScale OneFS versions 8.2.2.x through 9.6.0.x contains an improper control of a resource through its lifetime ...
CVE-2023-44288HIGH7.5 Dell PowerScale OneFS, 8.2.2.x through 9.6.0.x, contains an improper control of a resource through its lifetime vulnera...
CVE-2023-39248HIGH7.5 Dell OS10 Networking Switches running 10.5.2.x and above contain an Uncontrolled Resource Consumption (Denial of Servic...
CVE-2023-37572HIGH7.5Softing OPC Suite version 5.25 and before has Incorrect Access Control, allows attackers to obtain sensitive information...
CVE-2023-47304HIGH7.8An issue was discovered in Vonage Box Telephone Adapter VDV23 version VDV21-3.2.11-0.5.1, allows local attackers to bypa...
CVE-2023-42581HIGH7.5Improper URL validation from InstantPlay deeplink in Galaxy Store prior to version 4.5.64.4 allows attackers to execute ...
CVE-2023-42578HIGH7.5Improper handling of insufficient permissions or privileges vulnerability in Samsung Data Store prior to version 5.2.00....
CVE-2023-42574HIGH7.8Improper access control vulnerablility in GameHomeCN prior to version 4.2.60.2 allows local attackers to launch arbitrar...
CVE-2023-42567HIGH7.8Improper size check vulnerability in softsimd prior to SMR Dec-2023 Release 1 allows stack-based buffer overflow.
CVE-2023-42566HIGH7.8Out-of-bound write vulnerability in libsavsvc prior to SMR Dec-2023 Release 1 allows local attackers to execute arbitrar...
CVE-2023-42563HIGH7.8Integer overflow vulnerability in landmarkCopyImageToNative of libFacePreProcessingjni.camera.samsung.so prior to SMR De...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now