2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-47722MEDIUM5.5IBM API Connect V10.0.5.3 and V10.0.6.0 stores user credentials in browser cache which can be read by a local user. IBM...
CVE-2023-28527MEDIUM5.5 IBM Informix Dynamic Server 12.10 and 14.10 cdr is vulnerable to a heap buffer overflow, caused by improper bounds chec...
CVE-2023-28526MEDIUM5.5 IBM Informix Dynamic Server 12.10 and 14.10 archecker is vulnerable to a heap buffer overflow, caused by improper bound...
CVE-2023-6560MEDIUM5.5An out-of-bounds memory access flaw was found in the io_uring SQ/CQ rings functionality in the Linux kernel. This issue ...
CVE-2023-34320MEDIUM5.5Cortex-A77 cores (r0p0 and r1p0) are affected by erratum 1508412 where software, under certain circumstances, could dead...
CVE-2023-49782MEDIUM6.1Collabora Online is a collaborative online office suite based on LibreOffice technology. Users of Nextcloud with `Collab...
CVE-2023-48311MEDIUM4.3dockerspawner is a tool to spawn JupyterHub single user servers in Docker containers. Users of JupyterHub deployments ru...
CVE-2023-46499MEDIUM6.1Cross Site Scripting vulnerability in EverShop NPM versions before v.1.0.0-rc.5 allows a remote attacker to obtain sensi...
CVE-2023-46497MEDIUM5.4Directory Traversal vulnerability in EverShop NPM versions before v.1.0.0-rc.8 allows a remote attacker to obtain sensit...
CVE-2023-46495MEDIUM6.1Cross Site Scripting vulnerability in EverShop NPM versions before v.1.0.0-rc.8 allows a remote attacker to obtain sensi...
CVE-2023-46494MEDIUM6.1Cross Site Scripting vulnerability in EverShop NPM versions before v.1.0.0-rc.5 allows a remote attacker to obtain sensi...
CVE-2023-46493MEDIUM5.3Directory Traversal vulnerability in EverShop NPM versions before v.1.0.0-rc.8 allows a remote attacker to obtain sensit...
CVE-2023-6507MEDIUM4.9An issue was found in CPython 3.12.0 `subprocess` module on POSIX platforms. The issue was fixed in CPython 3.12.1 and d...
CVE-2023-6622MEDIUM5.5A null pointer dereference vulnerability was found in nft_dynset_init() in net/netfilter/nft_dynset.c in nf_tables in th...
CVE-2023-6616MEDIUM6.1A vulnerability was found in SourceCodester Simple Student Attendance System 1.0 and classified as problematic. This iss...
CVE-2023-6615MEDIUM5.3A vulnerability, which was classified as problematic, has been found in Typecho 1.2.1. Affected by this issue is some un...
CVE-2023-6613MEDIUM4.8A vulnerability classified as problematic has been found in Typecho 1.2.1. Affected is an unknown function of the file /...
CVE-2023-48422MEDIUM5.5In Init of protocolnetadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead...
CVE-2023-48420MEDIUM6.4there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System...
CVE-2023-48415MEDIUM5.5In Init of protocolembmsadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This could le...
CVE-2023-48414MEDIUM6.7In the Pixel Camera Driver, there is a possible use after free due to a logic error in the code. This could lead to loca...
CVE-2023-48413MEDIUM4.9In Init of protocolnetadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead...
CVE-2023-48412MEDIUM5.5In private_handle_t of mali_gralloc_buffer.h, there is a possible information leak due to a logic error in the code. Th...
CVE-2023-48411MEDIUM5.5In SignalStrengthAdapter::FillGsmSignalStrength() of protocolmiscadapter.cpp, there is a possible out of bounds read due...
CVE-2023-48408MEDIUM5.5In ProtocolNetSimFileInfoAdapter() of protocolnetadapter.cpp, there is a possible out of bounds read due to a missing bo...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now