2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-52382 | — | — | — | Apr 7, 2024 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2023-6877 | MEDIUM | 5.4 | 0.4% | Apr 7, 2024 | The RSS Aggregator by Feedzy – Feed to Post, Autoblogging, News & YouTube Video Feeds Aggregator plugin for WordPress is... |
| CVE-2023-5912 | MEDIUM | 6.7 | 0.2% | Apr 5, 2024 | A potential memory leakage vulnerability was reported in some Lenovo Notebook products that may allow a local attacker ... |
| CVE-2023-4605 | MEDIUM | 6.5 | 0.5% | Apr 5, 2024 | A valid authenticated Lenovo XClarity Administrator (LXCA) user can potentially leverage an unauthenticated API endpoin... |
| CVE-2023-25494 | MEDIUM | 6.7 | 0.2% | Apr 5, 2024 | A potential vulnerability were reported in the BIOS of some Desktop, Smart Edge, and ThinkStation products that could a... |
| CVE-2023-25493 | MEDIUM | 6.7 | 0.2% | Apr 5, 2024 | A potential vulnerability was reported in the BIOS update tool driver for some Desktop, Smart Edge, Smart Office, and Th... |
| CVE-2023-31028 | LOW | 2.8 | 0.2% | Apr 5, 2024 | NVIDIA nvJPEG2000 Library for Windows and Linux contains a vulnerability where improper input validation might enable a... |
| CVE-2023-48426 | CRITICAL | 10 | 0.2% | Apr 5, 2024 | u-boot bug that allows for u-boot shell and interrupt over UART |
| CVE-2023-49965 | MEDIUM | 6.8 | 0.3% | Apr 5, 2024 | SpaceX Starlink Wi-Fi router Gen 2 before 2023.48.0 allows XSS via the ssid and password parameters on the Setup Page. |
| CVE-2023-5692 | MEDIUM | 5.3 | 0.7% | Apr 5, 2024 | WordPress Core is vulnerable to Sensitive Information Exposure in versions up to, and including, 6.4.3 via the redirect... |
| CVE-2023-6523 | HIGH | 8.8 | 0.6% | Apr 5, 2024 | Authorization Bypass Through User-Controlled Key vulnerability in ExtremePacs Extreme XDS allows Authentication Abuse. ... |
| CVE-2023-6522 | HIGH | 7.2 | 0.3% | Apr 5, 2024 | Incorrect Use of Privileged APIs vulnerability in ExtremePacs Extreme XDS allows Collect Data as Provided by Users. Thi... |
| CVE-2023-52235 | HIGH | 8.8 | 0.5% | Apr 5, 2024 | SpaceX Starlink Wi-Fi router GEN 2 before 2023.53.0 and Starlink Dish before 07dd2798-ff15-4722-a9ee-de28928aed34 allow ... |
| CVE-2023-5973 | MEDIUM | 4.3 | 0.2% | Apr 5, 2024 | Brocade Web Interface in Brocade Fabric OS v9.x and before v9.2.0 does not properly represent the portName to the user... |
| CVE-2023-45288 | HIGH | 7.5 | 92.0% | Apr 4, 2024 | An attacker may cause an HTTP/2 endpoint to read arbitrary amounts of header data by sending an excessive number of CONT... |
| CVE-2023-38709 | HIGH | 7.3 | 3.9% | Apr 4, 2024 | Faulty input validation in the core of Apache allows malicious or exploitable backend/content generators to split HTTP r... |
| CVE-2023-3454 | CRITICAL | 9.8 | 1.2% | Apr 4, 2024 | Remote code execution (RCE) vulnerability in Brocade Fabric OS after v9.0 and before v9.2.0 could allow an attacker to e... |
| CVE-2023-36645 | CRITICAL | 9.8 | 0.9% | Apr 4, 2024 | SQL injection vulnerability in ITB-GmbH TradePro v9.5, allows remote attackers to run SQL queries via oordershow compone... |
| CVE-2023-36644 | MEDIUM | 5.3 | 1.0% | Apr 4, 2024 | Incorrect Access Control in ITB-GmbH TradePro v9.5, allows remote attackers to receive all order confirmations from the ... |
| CVE-2023-36643 | MEDIUM | 5.3 | 0.7% | Apr 4, 2024 | Incorrect Access Control in ITB-GmbH TradePro v9.5, allows remote attackers to receive all orders from the online shop v... |
| CVE-2023-25200 | MEDIUM | 4.7 | 0.4% | Apr 4, 2024 | An HTML injection vulnerability exists in the MT Safeline X-Ray X3310 webserver version NXG 19.05 that enables a remote ... |
| CVE-2023-25199 | MEDIUM | 5.4 | 0.3% | Apr 4, 2024 | A reflected cross-site scripting (XSS) vulnerability exists in the MT Safeline X-Ray X3310 webserver version NXG 19.05 t... |
| CVE-2023-52043 | HIGH | 8.1 | 0.3% | Apr 3, 2024 | An issue in D-Link COVR 1100, 1102, 1103 AC1200 Dual-Band Whole-Home Mesh Wi-Fi System (Hardware Rev B1) truncates Wirel... |
| CVE-2023-52641 | MEDIUM | 5.5 | 0.2% | Apr 3, 2024 | In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Add NULL ptr dereference checking at the ... |
| CVE-2023-52640 | HIGH | 7.1 | 0.2% | Apr 3, 2024 | In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Fix oob in ntfs_listxattr The length of ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now