2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-35126HIGH7.8An out-of-bounds write vulnerability exists within the parsers for both the "DocumentViewStyles" and "DocumentEditStyles...
CVE-2023-43251HIGH7.8XNSoft Nconvert 7.136 has an Exception Handler Chain Corrupted via a crafted image file. Attackers could exploit this is...
CVE-2023-35186HIGH8.8The SolarWinds Access Rights Manager was susceptible to Remote Code Execution Vulnerability. This vulnerability allows a...
CVE-2023-35183HIGH7.8The SolarWinds Access Rights Manager was susceptible to Privilege Escalation Vulnerability. This vulnerability allows au...
CVE-2023-35181HIGH7.8The SolarWinds Access Rights Manager was susceptible to Privilege Escalation Vulnerability. This vulnerability allows us...
CVE-2023-35180HIGH8.8The SolarWinds Access Rights Manager was susceptible to Remote Code Execution Vulnerability. This vulnerability allows a...
CVE-2023-45883HIGH7.8A privilege escalation vulnerability exists within the Qumu Multicast Extension v2 before 2.0.63 for Windows. When a sta...
CVE-2023-43252HIGH7.8XNSoft Nconvert 7.136 is vulnerable to Buffer Overflow via a crafted image file.
CVE-2023-46227HIGH7.5 Deserialization of Untrusted Data Vulnerability in Apache Software Foundation Apache InLong. This issue affects Apache...
CVE-2023-5241HIGH8.1The AI ChatBot for WordPress is vulnerable to Directory Traversal in versions up to, and including, 4.8.9 as well as 4.9...
CVE-2023-5212HIGH8.1The AI ChatBot plugin for WordPress is vulnerable to Arbitrary File Deletion in versions up to, and including, 4.8.9 as ...
CVE-2023-5204HIGH7.5The ChatBot plugin for WordPress is vulnerable to SQL Injection via the $strid parameter in versions up to, and includin...
CVE-2023-46229HIGH8.8LangChain before 0.0.317 allows SSRF via document_loaders/recursive_url_loader.py because crawling can proceed from an e...
CVE-2023-46228HIGH7.8zchunk before 1.3.2 has multiple integer overflows via malformed zchunk files to lib/comp/comp.c, lib/comp/zstd/zstd.c, ...
CVE-2023-34441HIGH8.2 Baker Hughes – Bently Nevada 3500 System TDI Firmware version 5.05 contains a cleartext transmission vulnerability ...
CVE-2023-34437HIGH7.5Baker Hughes – Bently Nevada 3500 System TDI Firmware version 5.05 contains a vulnerability in their password retrieva...
CVE-2023-37502HIGH8.8HCL Compass is vulnerable to lack of file upload security.  An attacker could upload files containing active code that c...
CVE-2023-45812HIGH7.5The Apollo Router is a configurable, high-performance graph router written in Rust to run a federated supergraph that us...
CVE-2023-43801HIGH7.1Arduino Create Agent is a package to help manage Arduino development. This vulnerability affects the endpoint `/v2/pkgs/...
CVE-2023-43800HIGH7.8Arduino Create Agent is a package to help manage Arduino development. The vulnerability affects the endpoint `/v2/pkgs/t...
CVE-2023-45813HIGH7.5Torbot is an open source tor network intelligence tool. In affected versions the `torbot.modules.validators.validate_lin...
CVE-2023-43803HIGH7.1Arduino Create Agent is a package to help manage Arduino development. This vulnerability affects the endpoint `/v2/pkgs/...
CVE-2023-43802HIGH7.8Arduino Create Agent is a package to help manage Arduino development. This vulnerability affects the endpoint `/upload` ...
CVE-2023-35663HIGH7.5 In Init of protocolnetadapter.cpp, there is a possible out of bounds read due to a missing bounds check. This coul...
CVE-2023-35656HIGH7.5 In multiple functions of protocolembmsadapter.cpp, there is a possible out of bounds read due to a missing bounds c...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now