2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-46770 | HIGH | 7.5 | 0.5% | Nov 8, 2023 | Out-of-bounds vulnerability in the sensor module. Successful exploitation of this vulnerability may cause mistouch preve... |
| CVE-2023-46769 | HIGH | 7.5 | 0.5% | Nov 8, 2023 | Use-After-Free (UAF) vulnerability in the dubai module. Successful exploitation of this vulnerability will affect avail... |
| CVE-2023-46768 | HIGH | 7.5 | 0.5% | Nov 8, 2023 | Multi-thread vulnerability in the idmap module. Successful exploitation of this vulnerability may cause features to perf... |
| CVE-2023-6001 | HIGH | 7.5 | 0.6% | Nov 8, 2023 | Prometheus metrics are available without authentication. These expose detailed and sensitive information about the Yugab... |
| CVE-2023-45380 | HIGH | 8.8 | 0.6% | Nov 7, 2023 | In the module "Order Duplicator " Clone and Delete Existing Order" (orderduplicate) in version <= 1.1.7 from Silbersaite... |
| CVE-2023-43984 | HIGH | 7.5 | 0.6% | Nov 7, 2023 | Insecure permissions in Smart Soft advancedexport before v4.4.7 allow unauthenticated attackers to arbitrarily download ... |
| CVE-2023-42361 | HIGH | 7.8 | 0.9% | Nov 7, 2023 | Local File Inclusion vulnerability in Midori-global Better PDF Exporter for Jira Server and Jira Data Center v.10.3.0 an... |
| CVE-2023-46243 | HIGH | 8.8 | 1.0% | Nov 7, 2023 | XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. In affected ver... |
| CVE-2023-5998 | HIGH | 7.5 | 0.6% | Nov 7, 2023 | Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3.0-DEV. |
| CVE-2023-46253 | HIGH | 7.2 | 1.5% | Nov 7, 2023 | Squidex is an open source headless CMS and content management hub. Affected versions are subject to an arbitrary file wr... |
| CVE-2023-46244 | HIGH | 8.8 | 0.8% | Nov 7, 2023 | XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. In affected ver... |
| CVE-2023-46242 | HIGH | 8.8 | 0.4% | Nov 7, 2023 | XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. In affected ver... |
| CVE-2023-46730 | HIGH | 8.8 | 0.6% | Nov 7, 2023 | Group-Office is an enterprise CRM and groupware tool. In affected versions there is full Server-Side Request Forgery (SS... |
| CVE-2023-41798 | HIGH | 8.8 | 0.5% | Nov 7, 2023 | Improper Neutralization of Formula Elements in a CSV File vulnerability in wpWax Directorist – WordPress Business Direct... |
| CVE-2023-0898 | HIGH | 7.3 | 0.3% | Nov 7, 2023 | General Electric MiCOM S1 Agile is vulnerable to an attacker achieving code execution by placing malicious DLL files in... |
| CVE-2023-5179 | HIGH | 7.8 | 0.3% | Nov 7, 2023 | An issue was discovered in Open Design Alliance Drawings SDK before 2024.10. A corrupted value for the start of MiniFat ... |
| CVE-2023-4295 | HIGH | 7.8 | 0.3% | Nov 7, 2023 | A local non-privileged user can make improper GPU memory processing operations to gain access to already freed memory. |
| CVE-2023-47360 | HIGH | 7.5 | 0.9% | Nov 7, 2023 | Videolan VLC prior to version 3.0.20 contains an Integer underflow that leads to an incorrect packet length. |
| CVE-2023-42659 | HIGH | 8.8 | 0.9% | Nov 7, 2023 | In WS_FTP Server versions prior to 8.7.6 and 8.8.4, an unrestricted file upload flaw has been identified. An authentic... |
| CVE-2023-3889 | HIGH | 7.8 | 0.2% | Nov 7, 2023 | A local non-privileged user can make improper GPU memory processing operations. If the operations are carefully prepared... |
| CVE-2023-36527 | HIGH | 8.8 | 0.5% | Nov 7, 2023 | Improper Neutralization of Formula Elements in a CSV File vulnerability in BestWebSoft Post to CSV by BestWebSoft.This i... |
| CVE-2023-25983 | HIGH | 8.8 | 1.1% | Nov 7, 2023 | Improper Neutralization of Formula Elements in a CSV File vulnerability in WPOmnia KB Support.This issue affects KB Supp... |
| CVE-2023-23678 | HIGH | 7.2 | 0.6% | Nov 7, 2023 | Improper Neutralization of Formula Elements in a CSV File vulnerability in WPEkaClub WP Cookie Consent ( for GDPR, CCPA ... |
| CVE-2023-33480 | HIGH | 8.8 | 1.9% | Nov 7, 2023 | RemoteClinic 2.0 contains a critical vulnerability chain that can be exploited by a remote attacker with low-privileged ... |
| CVE-2023-0436 | HIGH | 7.5 | 0.6% | Nov 7, 2023 | The affected versions of MongoDB Atlas Kubernetes Operator may print sensitive information like GCP service account keys... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now