2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-28570HIGH7.8Memory corruption while processing audio effects.
CVE-2023-28556HIGH7.8Cryptographic issue in HLOS during key management.
CVE-2023-28545HIGH7.8Memory corruption in TZ Secure OS while loading an app ELF.
CVE-2023-24852HIGH7.8Memory Corruption in Core due to secure memory access by user while loading modem image.
CVE-2023-21671HIGH7.8Memory Corruption in Core during syscall for Sectools Fuse comparison feature.
CVE-2023-41036HIGH7.8Macvim is a text editor for MacOS. Prior to version 178, Macvim makes use of an insecure interprocess communication (IPC...
CVE-2023-47004HIGH8.8Buffer Overflow vulnerability in Redis RedisGraph v.2.x through v.2.12.8 and fixed in v.2.12.9 allows an attacker to exe...
CVE-2023-5454HIGH7.5The Templately WordPress plugin before 2.2.6 does not properly authorize the `saved-templates/delete` REST API call, all...
CVE-2023-5355HIGH8.1The Awesome Support WordPress plugin before 6.1.5 does not sanitize file paths when deleting temporary attachment files,...
CVE-2023-5082HIGH7.2The History Log by click5 WordPress plugin before 1.0.13 does not properly sanitise and escape a parameter before using ...
CVE-2023-39345HIGH7.5strapi is an open-source headless CMS. Versions prior to 4.13.1 did not properly restrict write access to fielded marked...
CVE-2023-46728HIGH7.5Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to a NULL pointer dereference bug Squid ...
CVE-2023-44398HIGH8.8Exiv2 is a C++ library and a command-line utility to read, write, delete and modify Exif, IPTC, XMP and ICC image metada...
CVE-2023-41378HIGH7.5In certain conditions for Calico Typha (v3.26.2, v3.25.1 and below), and Calico Enterprise Typha (v3.17.1, v3.16.3, v3.1...
CVE-2023-5964HIGH7.2The 1E-Exchange-DisplayMessageinstruction that is part of the End-User Interaction product pack available on the 1E Exch...
CVE-2023-45163HIGH7.2The 1E-Exchange-CommandLinePing instruction that is part of the Network product pack available on the 1E Exchange does n...
CVE-2023-45161HIGH7.2The 1E-Exchange-URLResponseTime instruction that is part of the Network product pack available on the 1E Exchange does n...
CVE-2023-3399HIGH7.7An issue has been discovered in GitLab EE affecting all versions starting from 11.6 before 16.3.6, all versions starting...
CVE-2023-5823HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in ThemeKraft TK Google Fonts GDPR Compliant plugin <= 2.2.11 versions.
CVE-2023-47186HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Kadence WP Kadence WooCommerce Email Designer plugin <= 1.5.11 versio...
CVE-2023-46781HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Roland Murg Current Menu Item for Custom Post Types plugin <= 1.5 ver...
CVE-2023-46780HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Alter plugin <= 1.0 versions.
CVE-2023-46779HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in EasyRecipe plugin <= 3.5.3251 versions.
CVE-2023-46778HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in TheFreeWindows Auto Limit Posts Reloaded plugin <= 2.5 versions.
CVE-2023-46777HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Custom Login Page | Temporary Users | Rebrand Login | Login Captcha p...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now