2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-51798HIGH7.8Buffer Overflow vulnerability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via a fl...
CVE-2023-51797MEDIUM6.7Buffer Overflow vulnerability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via the ...
CVE-2023-51796LOW3.6Buffer Overflow vulnerability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via the ...
CVE-2023-51795HIGH8Buffer Overflow vulnerability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via the ...
CVE-2023-51793HIGH7.8Buffer Overflow vulnerability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via the ...
CVE-2023-51792LOW3.3Buffer Overflow vulnerability in libde265 v1.0.12 allows a local attacker to cause a denial of service via the allocatio...
CVE-2023-51791HIGH7.8Buffer Overflow vulenrability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via the ...
CVE-2023-50010HIGH7.8FFmpeg v.n6.1-3-g466799d4f5 allows a buffer over-read at ff_gradfun_blur_line_movdqa_sse2, as demonstrated by a call to ...
CVE-2023-50009HIGH8FFmpeg v.n6.1-3-g466799d4f5 allows a heap-based buffer overflow via the ff_gaussian_blur_8 function in libavfilter/edge_...
CVE-2023-50008HIGH7.8FFmpeg v.n6.1-3-g466799d4f5 allows memory consumption when using the colorcorrect filter, in the av_malloc function in l...
CVE-2023-50007MEDIUM4FFmpeg v.n6.1-3-g466799d4f5 allows an attacker to trigger use of a parameter of negative size in the av_samples_set_sile...
CVE-2023-49963HIGH8.8DYMO LabelWriter Print Server through 2.366 contains a backdoor hard-coded password that could allow an attacker to take...
CVE-2023-49502HIGH8.8Buffer Overflow vulnerability in Ffmpeg v.n6.1-3-g466799d4f5 allows a local attacker to execute arbitrary code via the f...
CVE-2023-49501HIGH8Buffer Overflow vulnerability in Ffmpeg v.n6.1-3-g466799d4f5 allows a local attacker to execute arbitrary code via the c...
CVE-2023-37397MEDIUM4.4IBM Aspera Faspex 5.0.0 through 5.0.7 could allow a local user to obtain or modify sensitive information due to improper...
CVE-2023-27279MEDIUM6.5IBM Aspera Faspex 5.0.0 through 5.0.7 could allow a user to cause a denial of service due to missing API rate limiting. ...
CVE-2023-37396MEDIUM5.5IBM Aspera Faspex 5.0.0 through 5.0.7 could allow a local user to obtain sensitive information due to improper encryptio...
CVE-2023-22869MEDIUM5.5IBM Aspera Faspex 5.0.0 through 5.0.7 stores potentially sensitive information in log files that could be read by a loca...
CVE-2023-50260HIGH8.8Wazuh is a free and open source platform used for threat prevention, detection, and response. A wrong validation in the ...
CVE-2023-49275MEDIUM6.5Wazuh is a free and open source platform used for threat prevention, detection, and response. A NULL pointer dereference...
CVE-2023-37400HIGH7.8IBM Aspera Faspex 5.0.0 through 5.0.7 could allow a local user to escalate their privileges due to insecure credential s...
CVE-2023-3758HIGH7.1A race condition flaw was found in sssd where the GPO policy is not consistently applied for authenticated users. This m...
CVE-2023-6897MEDIUM4.3The EAN for WooCommerce plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, an...
CVE-2023-6892MEDIUM5.4The EAN for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'alg_wc_ean_p...
CVE-2023-50885MEDIUM6.8Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in AGILELOGIX Store Locator...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now