2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-35126 | HIGH | 7.8 | 0.5% | Oct 19, 2023 | An out-of-bounds write vulnerability exists within the parsers for both the "DocumentViewStyles" and "DocumentEditStyles... |
| CVE-2023-43251 | HIGH | 7.8 | 0.5% | Oct 19, 2023 | XNSoft Nconvert 7.136 has an Exception Handler Chain Corrupted via a crafted image file. Attackers could exploit this is... |
| CVE-2023-35186 | HIGH | 8.8 | 2.2% | Oct 19, 2023 | The SolarWinds Access Rights Manager was susceptible to Remote Code Execution Vulnerability. This vulnerability allows a... |
| CVE-2023-35183 | HIGH | 7.8 | 0.2% | Oct 19, 2023 | The SolarWinds Access Rights Manager was susceptible to Privilege Escalation Vulnerability. This vulnerability allows au... |
| CVE-2023-35181 | HIGH | 7.8 | 0.2% | Oct 19, 2023 | The SolarWinds Access Rights Manager was susceptible to Privilege Escalation Vulnerability. This vulnerability allows us... |
| CVE-2023-35180 | HIGH | 8.8 | 27.4% | Oct 19, 2023 | The SolarWinds Access Rights Manager was susceptible to Remote Code Execution Vulnerability. This vulnerability allows a... |
| CVE-2023-45883 | HIGH | 7.8 | 0.2% | Oct 19, 2023 | A privilege escalation vulnerability exists within the Qumu Multicast Extension v2 before 2.0.63 for Windows. When a sta... |
| CVE-2023-43252 | HIGH | 7.8 | 0.5% | Oct 19, 2023 | XNSoft Nconvert 7.136 is vulnerable to Buffer Overflow via a crafted image file. |
| CVE-2023-46227 | HIGH | 7.5 | 1.0% | Oct 19, 2023 | Deserialization of Untrusted Data Vulnerability in Apache Software Foundation Apache InLong. This issue affects Apache... |
| CVE-2023-5241 | HIGH | 8.1 | 2.1% | Oct 19, 2023 | The AI ChatBot for WordPress is vulnerable to Directory Traversal in versions up to, and including, 4.8.9 as well as 4.9... |
| CVE-2023-5212 | HIGH | 8.1 | 1.6% | Oct 19, 2023 | The AI ChatBot plugin for WordPress is vulnerable to Arbitrary File Deletion in versions up to, and including, 4.8.9 as ... |
| CVE-2023-5204 | HIGH | 7.5 | 6.9% | Oct 19, 2023 | The ChatBot plugin for WordPress is vulnerable to SQL Injection via the $strid parameter in versions up to, and includin... |
| CVE-2023-46229 | HIGH | 8.8 | 44.7% | Oct 19, 2023 | LangChain before 0.0.317 allows SSRF via document_loaders/recursive_url_loader.py because crawling can proceed from an e... |
| CVE-2023-46228 | HIGH | 7.8 | 0.3% | Oct 19, 2023 | zchunk before 1.3.2 has multiple integer overflows via malformed zchunk files to lib/comp/comp.c, lib/comp/zstd/zstd.c, ... |
| CVE-2023-34441 | HIGH | 8.2 | 0.2% | Oct 19, 2023 | Baker Hughes – Bently Nevada 3500 System TDI Firmware version 5.05 contains a cleartext transmission vulnerability ... |
| CVE-2023-34437 | HIGH | 7.5 | 0.5% | Oct 19, 2023 | Baker Hughes – Bently Nevada 3500 System TDI Firmware version 5.05 contains a vulnerability in their password retrieva... |
| CVE-2023-37502 | HIGH | 8.8 | 0.5% | Oct 18, 2023 | HCL Compass is vulnerable to lack of file upload security. An attacker could upload files containing active code that c... |
| CVE-2023-45812 | HIGH | 7.5 | 0.7% | Oct 18, 2023 | The Apollo Router is a configurable, high-performance graph router written in Rust to run a federated supergraph that us... |
| CVE-2023-43801 | HIGH | 7.1 | 0.3% | Oct 18, 2023 | Arduino Create Agent is a package to help manage Arduino development. This vulnerability affects the endpoint `/v2/pkgs/... |
| CVE-2023-43800 | HIGH | 7.8 | 0.2% | Oct 18, 2023 | Arduino Create Agent is a package to help manage Arduino development. The vulnerability affects the endpoint `/v2/pkgs/t... |
| CVE-2023-45813 | HIGH | 7.5 | 0.8% | Oct 18, 2023 | Torbot is an open source tor network intelligence tool. In affected versions the `torbot.modules.validators.validate_lin... |
| CVE-2023-43803 | HIGH | 7.1 | 0.3% | Oct 18, 2023 | Arduino Create Agent is a package to help manage Arduino development. This vulnerability affects the endpoint `/v2/pkgs/... |
| CVE-2023-43802 | HIGH | 7.8 | 0.4% | Oct 18, 2023 | Arduino Create Agent is a package to help manage Arduino development. This vulnerability affects the endpoint `/upload` ... |
| CVE-2023-35663 | HIGH | 7.5 | 0.3% | Oct 18, 2023 | In Init of protocolnetadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This coul... |
| CVE-2023-35656 | HIGH | 7.5 | 0.3% | Oct 18, 2023 | In multiple functions of protocolembmsadapter.cpp, there is a possible out of bounds read due to a missing bounds c... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now