2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-47722 | MEDIUM | 5.5 | 0.2% | Dec 9, 2023 | IBM API Connect V10.0.5.3 and V10.0.6.0 stores user credentials in browser cache which can be read by a local user. IBM... |
| CVE-2023-28527 | MEDIUM | 5.5 | 0.2% | Dec 9, 2023 | IBM Informix Dynamic Server 12.10 and 14.10 cdr is vulnerable to a heap buffer overflow, caused by improper bounds chec... |
| CVE-2023-28526 | MEDIUM | 5.5 | 0.2% | Dec 9, 2023 | IBM Informix Dynamic Server 12.10 and 14.10 archecker is vulnerable to a heap buffer overflow, caused by improper bound... |
| CVE-2023-6560 | MEDIUM | 5.5 | 0.3% | Dec 9, 2023 | An out-of-bounds memory access flaw was found in the io_uring SQ/CQ rings functionality in the Linux kernel. This issue ... |
| CVE-2023-34320 | MEDIUM | 5.5 | 0.2% | Dec 8, 2023 | Cortex-A77 cores (r0p0 and r1p0) are affected by erratum 1508412 where software, under certain circumstances, could dead... |
| CVE-2023-49782 | MEDIUM | 6.1 | 0.4% | Dec 8, 2023 | Collabora Online is a collaborative online office suite based on LibreOffice technology. Users of Nextcloud with `Collab... |
| CVE-2023-48311 | MEDIUM | 4.3 | 0.6% | Dec 8, 2023 | dockerspawner is a tool to spawn JupyterHub single user servers in Docker containers. Users of JupyterHub deployments ru... |
| CVE-2023-46499 | MEDIUM | 6.1 | 0.5% | Dec 8, 2023 | Cross Site Scripting vulnerability in EverShop NPM versions before v.1.0.0-rc.5 allows a remote attacker to obtain sensi... |
| CVE-2023-46497 | MEDIUM | 5.4 | 0.8% | Dec 8, 2023 | Directory Traversal vulnerability in EverShop NPM versions before v.1.0.0-rc.8 allows a remote attacker to obtain sensit... |
| CVE-2023-46495 | MEDIUM | 6.1 | 0.5% | Dec 8, 2023 | Cross Site Scripting vulnerability in EverShop NPM versions before v.1.0.0-rc.8 allows a remote attacker to obtain sensi... |
| CVE-2023-46494 | MEDIUM | 6.1 | 0.5% | Dec 8, 2023 | Cross Site Scripting vulnerability in EverShop NPM versions before v.1.0.0-rc.5 allows a remote attacker to obtain sensi... |
| CVE-2023-46493 | MEDIUM | 5.3 | 1.0% | Dec 8, 2023 | Directory Traversal vulnerability in EverShop NPM versions before v.1.0.0-rc.8 allows a remote attacker to obtain sensit... |
| CVE-2023-6507 | MEDIUM | 4.9 | 1.3% | Dec 8, 2023 | An issue was found in CPython 3.12.0 `subprocess` module on POSIX platforms. The issue was fixed in CPython 3.12.1 and d... |
| CVE-2023-6622 | MEDIUM | 5.5 | 0.3% | Dec 8, 2023 | A null pointer dereference vulnerability was found in nft_dynset_init() in net/netfilter/nft_dynset.c in nf_tables in th... |
| CVE-2023-6616 | MEDIUM | 6.1 | 0.6% | Dec 8, 2023 | A vulnerability was found in SourceCodester Simple Student Attendance System 1.0 and classified as problematic. This iss... |
| CVE-2023-6615 | MEDIUM | 5.3 | 0.7% | Dec 8, 2023 | A vulnerability, which was classified as problematic, has been found in Typecho 1.2.1. Affected by this issue is some un... |
| CVE-2023-6613 | MEDIUM | 4.8 | 0.6% | Dec 8, 2023 | A vulnerability classified as problematic has been found in Typecho 1.2.1. Affected is an unknown function of the file /... |
| CVE-2023-48422 | MEDIUM | 5.5 | 0.1% | Dec 8, 2023 | In Init of protocolnetadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead... |
| CVE-2023-48420 | MEDIUM | 6.4 | 0.1% | Dec 8, 2023 | there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System... |
| CVE-2023-48415 | MEDIUM | 5.5 | 0.1% | Dec 8, 2023 | In Init of protocolembmsadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This could le... |
| CVE-2023-48414 | MEDIUM | 6.7 | 0.1% | Dec 8, 2023 | In the Pixel Camera Driver, there is a possible use after free due to a logic error in the code. This could lead to loca... |
| CVE-2023-48413 | MEDIUM | 4.9 | 0.4% | Dec 8, 2023 | In Init of protocolnetadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead... |
| CVE-2023-48412 | MEDIUM | 5.5 | 0.1% | Dec 8, 2023 | In private_handle_t of mali_gralloc_buffer.h, there is a possible information leak due to a logic error in the code. Th... |
| CVE-2023-48411 | MEDIUM | 5.5 | 0.1% | Dec 8, 2023 | In SignalStrengthAdapter::FillGsmSignalStrength() of protocolmiscadapter.cpp, there is a possible out of bounds read due... |
| CVE-2023-48408 | MEDIUM | 5.5 | 0.1% | Dec 8, 2023 | In ProtocolNetSimFileInfoAdapter() of protocolnetadapter.cpp, there is a possible out of bounds read due to a missing bo... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now