2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-46770HIGH7.5Out-of-bounds vulnerability in the sensor module. Successful exploitation of this vulnerability may cause mistouch preve...
CVE-2023-46769HIGH7.5Use-After-Free (UAF) vulnerability in the dubai module. Successful exploitation of this vulnerability will affect avail...
CVE-2023-46768HIGH7.5Multi-thread vulnerability in the idmap module. Successful exploitation of this vulnerability may cause features to perf...
CVE-2023-6001HIGH7.5Prometheus metrics are available without authentication. These expose detailed and sensitive information about the Yugab...
CVE-2023-45380HIGH8.8In the module "Order Duplicator " Clone and Delete Existing Order" (orderduplicate) in version <= 1.1.7 from Silbersaite...
CVE-2023-43984HIGH7.5Insecure permissions in Smart Soft advancedexport before v4.4.7 allow unauthenticated attackers to arbitrarily download ...
CVE-2023-42361HIGH7.8Local File Inclusion vulnerability in Midori-global Better PDF Exporter for Jira Server and Jira Data Center v.10.3.0 an...
CVE-2023-46243HIGH8.8XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. In affected ver...
CVE-2023-5998HIGH7.5Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3.0-DEV.
CVE-2023-46253HIGH7.2Squidex is an open source headless CMS and content management hub. Affected versions are subject to an arbitrary file wr...
CVE-2023-46244HIGH8.8XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. In affected ver...
CVE-2023-46242HIGH8.8XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. In affected ver...
CVE-2023-46730HIGH8.8Group-Office is an enterprise CRM and groupware tool. In affected versions there is full Server-Side Request Forgery (SS...
CVE-2023-41798HIGH8.8Improper Neutralization of Formula Elements in a CSV File vulnerability in wpWax Directorist – WordPress Business Direct...
CVE-2023-0898HIGH7.3 General Electric MiCOM S1 Agile is vulnerable to an attacker achieving code execution by placing malicious DLL files in...
CVE-2023-5179HIGH7.8An issue was discovered in Open Design Alliance Drawings SDK before 2024.10. A corrupted value for the start of MiniFat ...
CVE-2023-4295HIGH7.8A local non-privileged user can make improper GPU memory processing operations to gain access to already freed memory.
CVE-2023-47360HIGH7.5Videolan VLC prior to version 3.0.20 contains an Integer underflow that leads to an incorrect packet length.
CVE-2023-42659HIGH8.8 In WS_FTP Server versions prior to 8.7.6 and 8.8.4, an unrestricted file upload flaw has been identified. An authentic...
CVE-2023-3889HIGH7.8A local non-privileged user can make improper GPU memory processing operations. If the operations are carefully prepared...
CVE-2023-36527HIGH8.8Improper Neutralization of Formula Elements in a CSV File vulnerability in BestWebSoft Post to CSV by BestWebSoft.This i...
CVE-2023-25983HIGH8.8Improper Neutralization of Formula Elements in a CSV File vulnerability in WPOmnia KB Support.This issue affects KB Supp...
CVE-2023-23678HIGH7.2Improper Neutralization of Formula Elements in a CSV File vulnerability in WPEkaClub WP Cookie Consent ( for GDPR, CCPA ...
CVE-2023-33480HIGH8.8RemoteClinic 2.0 contains a critical vulnerability chain that can be exploited by a remote attacker with low-privileged ...
CVE-2023-0436HIGH7.5The affected versions of MongoDB Atlas Kubernetes Operator may print sensitive information like GCP service account keys...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now