2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-52511MEDIUM5.3In the Linux kernel, the following vulnerability has been resolved: spi: sun6i: reduce DMA RX transfer width to single ...
CVE-2023-52510HIGH7.8In the Linux kernel, the following vulnerability has been resolved: ieee802154: ca8210: Fix a potential UAF in ca8210_p...
CVE-2023-52509HIGH7.8In the Linux kernel, the following vulnerability has been resolved: ravb: Fix use-after-free issue in ravb_tx_timeout_w...
CVE-2023-52508MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: nvme-fc: Prevent null pointer dereference in nvme_f...
CVE-2023-52507HIGH7.1In the Linux kernel, the following vulnerability has been resolved: nfc: nci: assert requested protocol is valid The p...
CVE-2023-52506MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: LoongArch: Set all reserved memblocks on Node#0 at ...
CVE-2023-52505MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: phy: lynx-28g: serialize concurrent phy_set_mode_ex...
CVE-2023-52504HIGH7.1In the Linux kernel, the following vulnerability has been resolved: x86/alternatives: Disable KASAN in apply_alternativ...
CVE-2023-52503HIGH7In the Linux kernel, the following vulnerability has been resolved: tee: amdtee: fix use-after-free vulnerability in am...
CVE-2023-52502HIGH8.8In the Linux kernel, the following vulnerability has been resolved: net: nfc: fix races in nfc_llcp_sock_get() and nfc_...
CVE-2023-52501HIGH7.1In the Linux kernel, the following vulnerability has been resolved: ring-buffer: Do not attempt to read past "commit" ...
CVE-2023-52500MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: scsi: pm80xx: Avoid leaking tags when processing OP...
CVE-2023-52499MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: powerpc/47x: Fix 47x syscall return crash Eddie re...
CVE-2023-6326MEDIUM4.3The Master Slider – Responsive Touch Slider plugin for WordPress is vulnerable to Cross-Site Request Forgery in all vers...
CVE-2023-49545HIGH7.5A directory listing vulnerability in Customer Support System v1 allows attackers to list directories and sensitive files...
CVE-2023-49544MEDIUM4.9A local file inclusion (LFI) in Customer Support System v1 allows attackers to include internal PHP files and gain unaut...
CVE-2023-49543CRITICAL9.8Incorrect access control in Book Store Management System v1 allows attackers to access unauthorized pages and execute ad...
CVE-2023-49540MEDIUM6.1Book Store Management System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability in /bsms_ci/index...
CVE-2023-49539MEDIUM6.1Book Store Management System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability in /bsms_ci/index...
CVE-2023-7244CRITICAL9.8Industrial Control Systems Network Protocol Parsers (ICSNPP) - Ethercat Zeek Plugin versions d78dda6 and prior are vuln...
CVE-2023-7243CRITICAL9.8 Industrial Control Systems Network Protocol Parsers (ICSNPP) - Ethercat Zeek Plugin versions d78dda6 and prior are vul...
CVE-2023-7242HIGH8.2 Industrial Control Systems Network Protocol Parsers (ICSNPP) - Ethercat Zeek Plugin versions d78dda6 and prior are vu...
CVE-2023-52558HIGH7.5In OpenBSD 7.4 before errata 002 and OpenBSD 7.3 before errata 019, a network buffer that had to be split at certain len...
CVE-2023-52557HIGH7.5In OpenBSD 7.3 before errata 016, npppd(8) could crash by a l2tp message which has an AVP (Attribute-Value Pair) with wr...
CVE-2023-52556MEDIUM6.2In OpenBSD 7.4 before errata 009, a race condition between pf(4)'s processing of packets and expiration of packet states...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now