2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-40117HIGH7.8In resetSettingsLocked of SettingsProvider.java, there is a possible lockscreen bypass due to a permissions bypass. This...
CVE-2023-40116HIGH7.8In onTaskAppeared of PipTaskOrganizer.java, there is a possible way to bypass background activity launch restrictions du...
CVE-2023-35794HIGH8.8An issue was discovered in Cassia Access Controller 2.1.1.2303271039. The Web SSH terminal endpoint (spawned console) ca...
CVE-2023-5829HIGH8.8A vulnerability was found in code-projects Admission Management System 1.0. It has been rated as critical. Affected by t...
CVE-2023-46852HIGH7.5In Memcached before 1.6.22, a buffer overflow exists when processing multiget requests in proxy mode, if there are many ...
CVE-2023-4967HIGH7.5Denial of Service in NetScaler ADC and NetScaler Gateway when configured as a Gateway (VPN virtual server, ICA Proxy, CV...
CVE-2023-46290HIGH8.1 Due to inadequate code logic, a previously unauthenticated threat actor could potentially obtain a local Windows OS use...
CVE-2023-46289HIGH7.5 Rockwell Automation FactoryTalk View Site Edition insufficiently validates user input, which could potentially allow th...
CVE-2023-27858HIGH7.8 Rockwell Automation Arena Simulation contains an arbitrary code execution vulnerability that could potentially allow a ...
CVE-2023-27854HIGH7.8 An arbitrary code execution vulnerability was reported to Rockwell Automation in Arena Simulation that could potentiall...
CVE-2023-5826HIGH8.8A vulnerability was found in Netentsec NS-ASG Application Security Gateway 6.3 and classified as critical. Affected by t...
CVE-2023-5443HIGH7.5Improper Protection for Outbound Error Messages and Alert Signals vulnerability in EDM Informatics E-invoice allows Acco...
CVE-2023-46393HIGH7.5gougucms v4.08.18 was discovered to contain a password reset poisoning vulnerability which allows attackers to arbitrari...
CVE-2023-5820HIGH8.8The Thumbnail Slider With Lightbox plugin for WordPress is vulnerable to Cross-Site Request Forgery in version 1.0. This...
CVE-2023-5570HIGH7.5Improper Protection for Outbound Error Messages and Alert Signals vulnerability in Inohom Home Manager Gateway allows Ac...
CVE-2023-44220HIGH7.3SonicWall NetExtender Windows (32-bit and 64-bit) client 10.2.336 and earlier versions have a DLL Search Order Hijacking...
CVE-2023-44219HIGH7.8A local privilege escalation vulnerability in SonicWall Directory Services Connector Windows MSI client 4.1.21 and earli...
CVE-2023-34059HIGH7open-vm-tools contains a file descriptor hijack vulnerability in the vmware-user-suid-wrapper. A malicious actor with no...
CVE-2023-34058HIGH7.5VMware Tools contains a SAML token signature bypass vulnerability. A malicious actor that has been granted Guest Operat...
CVE-2023-34057HIGH7.8VMware Tools contains a local privilege escalation vulnerability. A malicious actor with local user access to a guest vi...
CVE-2023-46818HIGH7.2An issue was discovered in ISPConfig before 3.2.11p1. PHP code injection can be achieved in the language file editor by ...
CVE-2023-46816HIGH8.8An issue was discovered in SugarCRM 12 before 12.0.4 and 13 before 13.0.2. A Server Site Template Injection (SSTI) vulne...
CVE-2023-46815HIGH8.8An issue was discovered in SugarCRM 12 before 12.0.4 and 13 before 13.0.2. An Unrestricted File Upload vulnerability has...
CVE-2023-46813HIGH7An issue was discovered in the Linux kernel before 6.5.9, exploitable by local users with userspace access to MMIO regis...
CVE-2023-5814HIGH8.8A vulnerability was found in SourceCodester Task Reminder System 1.0. It has been classified as critical. This affects a...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now