2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-45620 | HIGH | 7.5 | 0.9% | Nov 14, 2023 | Unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the CLI service accessed via the PAPI protocol. Success... |
| CVE-2023-45619 | HIGH | 8.2 | 0.7% | Nov 14, 2023 | There is an arbitrary file deletion vulnerability in the RSSI service accessed by PAPI (Aruba's access point management ... |
| CVE-2023-45618 | HIGH | 8.2 | 0.7% | Nov 14, 2023 | There are arbitrary file deletion vulnerabilities in the AirWave client service accessed by PAPI (Aruba's access point m... |
| CVE-2023-45617 | HIGH | 8.2 | 0.7% | Nov 14, 2023 | There are arbitrary file deletion vulnerabilities in the CLI service accessed by PAPI (Aruba's access point management p... |
| CVE-2023-39206 | HIGH | 7.5 | 1.1% | Nov 14, 2023 | Buffer overflow in some Zoom clients may allow an unauthenticated user to conduct a denial of service via network access... |
| CVE-2023-39204 | HIGH | 7.5 | 1.1% | Nov 14, 2023 | Buffer overflow in some Zoom clients may allow an unauthenticated user to conduct a denial of service via network access... |
| CVE-2023-39203 | HIGH | 7.5 | 0.9% | Nov 14, 2023 | Uncontrolled resource consumption in Zoom Team Chat for Zoom Desktop Client for Windows and Zoom VDI Client may allow an... |
| CVE-2023-48217 | HIGH | 8.8 | 1.1% | Nov 14, 2023 | Statamic is a flat-first, Laravel + Git powered CMS designed for building websites. In affected versions certain additio... |
| CVE-2023-46582 | HIGH | 7.8 | 0.3% | Nov 14, 2023 | SQL injection vulnerability in Inventory Management v.1.0 allows a local attacker to execute arbitrary SQL commands via ... |
| CVE-2023-46024 | HIGH | 7.5 | 1.1% | Nov 14, 2023 | SQL Injection vulnerability in index.php in phpgurukul Teacher Subject Allocation Management System 1.0 allows attackers... |
| CVE-2023-46022 | HIGH | 7.8 | 0.8% | Nov 14, 2023 | SQL Injection vulnerability in delete.php in Code-Projects Blood Bank 1.0 allows attackers to run arbitrary SQL commands... |
| CVE-2023-39537 | HIGH | 7.8 | 0.2% | Nov 14, 2023 | AMI AptioV contains a vulnerability in BIOS where an Attacker may use an improper input validation via the local network... |
| CVE-2023-39536 | HIGH | 7.8 | 0.2% | Nov 14, 2023 | AMI AptioV contains a vulnerability in BIOS where an Attacker may use an improper input validation via the local network... |
| CVE-2023-39535 | HIGH | 7.8 | 0.2% | Nov 14, 2023 | AMI AptioV contains a vulnerability in BIOS where an Attacker may use an improper input validation via the local network... |
| CVE-2023-36038 | HIGH | 7.5 | 2.8% | Nov 14, 2023 | ASP.NET Core Denial of Service Vulnerability |
| CVE-2023-5528 | HIGH | 8.8 | 3.6% | Nov 14, 2023 | A security issue was discovered in Kubernetes where a user that can create pods and persistent volumes on Windows nodes ... |
| CVE-2023-47640 | HIGH | 8.8 | 0.4% | Nov 14, 2023 | DataHub is an open-source metadata platform. The HMAC signature for DataHub Frontend sessions was being signed using a S... |
| CVE-2023-47631 | HIGH | 8.8 | 0.4% | Nov 14, 2023 | vantage6 is a framework to manage and deploy privacy enhancing technologies like Federated Learning (FL) and Multi-Party... |
| CVE-2023-47630 | HIGH | 7.1 | 0.3% | Nov 14, 2023 | Kyverno is a policy engine designed for Kubernetes. An issue was found in Kyverno that allowed an attacker to control th... |
| CVE-2023-47627 | HIGH | 7.5 | 0.9% | Nov 14, 2023 | aiohttp is an asynchronous HTTP client/server framework for asyncio and Python. The HTTP parser in AIOHTTP has numerous ... |
| CVE-2023-36437 | HIGH | 8.8 | 2.0% | Nov 14, 2023 | Azure DevOps Server Remote Code Execution Vulnerability |
| CVE-2023-39412 | HIGH | 8.8 | 0.3% | Nov 14, 2023 | Cross-site request forgery in some Intel Unison software may allow an authenticated user to potentially enable escalatio... |
| CVE-2023-39230 | HIGH | 7.8 | 0.2% | Nov 14, 2023 | Insecure inherited permissions in some Intel Rapid Storage Technology software before version 16.8.5.1014.9 may allow an... |
| CVE-2023-39228 | HIGH | 7.5 | 0.7% | Nov 14, 2023 | Improper access control for some Intel Unison software may allow an unauthenticated user to potentially enable denial of... |
| CVE-2023-39221 | HIGH | 8.8 | 0.4% | Nov 14, 2023 | Improper access control for some Intel Unison software may allow an authenticated user to potentially enable escalation ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now