2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-50378 | MEDIUM | 6.1 | 1.2% | Mar 1, 2024 | Lack of proper input validation and constraint enforcement in Apache Ambari prior to 2.7.8 Impact : As it will be st... |
| CVE-2023-52497 | MEDIUM | 6.1 | 0.3% | Mar 1, 2024 | In the Linux kernel, the following vulnerability has been resolved: erofs: fix lz4 inplace decompression Currently ERO... |
| CVE-2023-46951 | MEDIUM | 6.1 | 0.5% | Mar 1, 2024 | Cross Site Scripting vulnerability in Contribsys Sidekiq v.6.5.8 allows a remote attacker to obtain sensitive informatio... |
| CVE-2023-46950 | MEDIUM | 6.1 | 0.6% | Mar 1, 2024 | Cross Site Scripting vulnerability in Contribsys Sidekiq v.6.5.8 allows a remote attacker to obtain sensitive informatio... |
| CVE-2023-48674 | MEDIUM | 4.9 | 0.5% | Mar 1, 2024 | Dell Platform BIOS contains an Improper Null Termination vulnerability. A high privilege user with network access to the... |
| CVE-2023-39254 | HIGH | 7.3 | 0.2% | Mar 1, 2024 | Dell Update Package (DUP), Versions prior to 4.9.10 contain an Uncontrolled Search Path vulnerability. A malicious user ... |
| CVE-2023-52555 | MEDIUM | 6.1 | 0.2% | Mar 1, 2024 | In mongo-express 1.0.2, /admin allows CSRF, as demonstrated by deletion of a Collection. |
| CVE-2023-50312 | MEDIUM | 6.5 | 0.6% | Mar 1, 2024 | IBM WebSphere Application Server Liberty 17.0.0.3 through 24.0.0.2 could provide weaker than expected security for outbo... |
| CVE-2023-47716 | HIGH | 8.8 | 0.4% | Mar 1, 2024 | IBM CP4BA - Filenet Content Manager Component 5.5.8.0, 5.5.10.0, and 5.5.11.0 could allow a user to gain the privileges ... |
| CVE-2023-38366 | MEDIUM | 5.3 | 0.8% | Mar 1, 2024 | IBM Filenet Content Manager Component 5.5.8.0, 5.5.10.0, and 5.5.11.0 could allow a remote attacker to traverse director... |
| CVE-2023-50324 | MEDIUM | 5.3 | 0.4% | Mar 1, 2024 | IBM Cognos Command Center 10.2.4.1 and 10.2.5 exposes details the X-AspNet-Version Response Header that could allow an a... |
| CVE-2023-50305 | MEDIUM | 5.1 | 0.2% | Mar 1, 2024 | IBM Engineering Requirements Management DOORS 9.7.2.7 does not require that users should have strong passwords by defaul... |
| CVE-2023-28949 | MEDIUM | 6.5 | 0.2% | Mar 1, 2024 | IBM Engineering Requirements Management DOORS 9.7.2.7 is vulnerable to cross-site request forgery which could allow an a... |
| CVE-2023-28525 | MEDIUM | 4.8 | 0.3% | Mar 1, 2024 | IBM Engineering Requirements Management 9.7.2.7 is vulnerable to cross-site scripting. This vulnerability allows users t... |
| CVE-2023-6132 | HIGH | 7.8 | 0.2% | Feb 29, 2024 | The vulnerability, if exploited, could allow a malicious entity with access to the file system to achieve arbitrary cod... |
| CVE-2023-52485 | MEDIUM | 5.5 | 0.2% | Feb 29, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Wake DMCUB before sending a comman... |
| CVE-2023-6090 | HIGH | 7.2 | 0.6% | Feb 29, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in Mollie Mollie Payments for WooCommerce.This issue affec... |
| CVE-2023-52484 | MEDIUM | 5.5 | 0.2% | Feb 29, 2024 | In the Linux kernel, the following vulnerability has been resolved: iommu/arm-smmu-v3: Fix soft lockup triggered by arm... |
| CVE-2023-52483 | HIGH | 7.8 | 0.2% | Feb 29, 2024 | In the Linux kernel, the following vulnerability has been resolved: mctp: perform route lookups under a RCU read-side l... |
| CVE-2023-52482 | HIGH | 7.8 | 0.3% | Feb 29, 2024 | In the Linux kernel, the following vulnerability has been resolved: x86/srso: Add SRSO mitigation for Hygon processors ... |
| CVE-2023-52481 | MEDIUM | 4.7 | 0.6% | Feb 29, 2024 | In the Linux kernel, the following vulnerability has been resolved: arm64: errata: Add Cortex-A520 speculative unprivil... |
| CVE-2023-52480 | HIGH | 7 | 0.5% | Feb 29, 2024 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix race condition between session lookup an... |
| CVE-2023-52479 | HIGH | 8.8 | 0.6% | Feb 29, 2024 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix uaf in smb20_oplock_break_ack drop refe... |
| CVE-2023-52478 | MEDIUM | 4.7 | 0.2% | Feb 29, 2024 | In the Linux kernel, the following vulnerability has been resolved: HID: logitech-hidpp: Fix kernel crash on receiver U... |
| CVE-2023-52477 | MEDIUM | 5.5 | 0.2% | Feb 29, 2024 | In the Linux kernel, the following vulnerability has been resolved: usb: hub: Guard against accesses to uninitialized B... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now