2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-42847HIGH7.5A logic issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.1, iOS 17.1 and iPadOS 17.1. An...
CVE-2023-42844HIGH7.5This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Sonoma 14.1, macOS Monterey 12...
CVE-2023-42841HIGH7.8The issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14.1, iOS 17.1 and iPadOS 17....
CVE-2023-41976HIGH8.8A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 17.1 and iPadOS 17.1, w...
CVE-2023-40447HIGH8.8The issue was addressed with improved memory handling. This issue is fixed in iOS 17.1 and iPadOS 17.1, watchOS 10.1, iO...
CVE-2023-40445HIGH7.5The issue was addressed with improved UI handling. This issue is fixed in iOS 17.1 and iPadOS 17.1. A device may persist...
CVE-2023-40423HIGH7.8The issue was addressed with improved memory handling. This issue is fixed in iOS 17.1 and iPadOS 17.1, macOS Monterey 1...
CVE-2023-40404HIGH7.8A use-after-free issue was addressed with improved memory management. This issue is fixed in macOS Sonoma 14.1. An app m...
CVE-2023-40401HIGH7.5The issue was addressed with additional permissions checks. This issue is fixed in macOS Ventura 13.6.1. An attacker may...
CVE-2023-32359HIGH7.5This issue was addressed with improved redaction of sensitive information. This issue is fixed in iOS 16.7.2 and iPadOS ...
CVE-2023-5753HIGH8.8Potential buffer overflows in the Bluetooth subsystem due to asserts being disabled in /subsys/bluetooth/host/hci_core.c
CVE-2023-5728HIGH7.5During garbage collection extra operations were performed on a object that should not be. This could have led to a poten...
CVE-2023-5724HIGH7.5Drivers are not always robust to extremely large draw calls and in some cases this scenario could have led to a crash. T...
CVE-2023-5717HIGH7.8A heap out-of-bounds write vulnerability in the Linux kernel's Linux Kernel Performance Events (perf) component can be e...
CVE-2023-5671HIGH7.8HP Print and Scan Doctor for Windows may potentially be vulnerable to escalation of privilege. HP is releasing software ...
CVE-2023-5472HIGH8.8Use after free in Profiles in Google Chrome prior to 118.0.5993.117 allowed a remote attacker to potentially exploit hea...
CVE-2023-5363HIGH7.5Issue summary: A bug has been identified in the processing of key and initialisation vector (IV) lengths. This can lead...
CVE-2023-5311HIGH8.8The WP EXtra plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check o...
CVE-2023-4692HIGH7.8An out-of-bounds write flaw was found in grub2's NTFS filesystem driver. This issue may allow an attacker to present a s...
CVE-2023-4608HIGH7.2An authenticated XCC user with elevated privileges can perform blind SQL injection in limited cases through a crafted AP...
CVE-2023-4607HIGH8.8An authenticated XCC user can change permissions for any user through a crafted API command.
CVE-2023-4606HIGH8.1An authenticated XCC user with Read-Only permission can change a different user’s password through a crafted API command...
CVE-2023-46654HIGH8.1Jenkins CloudBees CD Plugin 1.1.32 and earlier follows symbolic links to locations outside of the expected directory dur...
CVE-2023-46346HIGH7.5In the module "Product Catalog (CSV, Excel, XML) Export PRO" (exportproducts) in versions up to 4.1.1 from MyPrestaModul...
CVE-2023-46204HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Muller Digital Inc. Duplicate Theme plugin <= 0.1.6 versions.

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now