2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-6584 | HIGH | 7.5 | 0.5% | Feb 27, 2024 | The WP JobSearch WordPress plugin before 2.3.4 does not prevent attackers from logging-in as any users with the only kno... |
| CVE-2023-51518 | CRITICAL | 9.8 | 1.2% | Feb 27, 2024 | Apache James prior to version 3.7.5 and 3.8.0 exposes a JMX endpoint on localhost subject to pre-authentication deserial... |
| CVE-2023-50379 | HIGH | 8.8 | 1.1% | Feb 27, 2024 | Malicious code injection in Apache Ambari in prior to 2.7.8. Users are recommended to upgrade to version 2.7.8, which fi... |
| CVE-2023-7033 | MEDIUM | 5.3 | 0.9% | Feb 27, 2024 | Insufficient Resource Pool vulnerability in Ethernet function of Mitsubishi Electric Corporation MELSEC iQ-R series CPU ... |
| CVE-2023-41506 | CRITICAL | 9.8 | 0.9% | Feb 27, 2024 | An arbitrary file upload vulnerability in the Update/Edit Student's Profile Picture function of Student Enrollment In PH... |
| CVE-2023-36237 | HIGH | 8.8 | 0.4% | Feb 26, 2024 | Cross Site Request Forgery vulnerability in Bagisto before v.1.5.1 allows an attacker to execute arbitrary code via a cr... |
| CVE-2023-52474 | HIGH | 7.8 | 0.3% | Feb 26, 2024 | In the Linux kernel, the following vulnerability has been resolved: IB/hfi1: Fix bugs with non-PAGE_SIZE-end multi-iove... |
| CVE-2023-5775 | LOW | 2.7 | 0.4% | Feb 26, 2024 | The BackWPup plugin for WordPress is vulnerable to Plaintext Storage of Backup Destination Password in all versions up t... |
| CVE-2023-52473 | MEDIUM | 5.5 | 0.3% | Feb 26, 2024 | In the Linux kernel, the following vulnerability has been resolved: thermal: core: Fix NULL pointer dereference in zone... |
| CVE-2023-52472 | MEDIUM | 5.5 | 0.3% | Feb 26, 2024 | In the Linux kernel, the following vulnerability has been resolved: crypto: rsa - add a check for allocation failure S... |
| CVE-2023-52471 | MEDIUM | 5.5 | 0.2% | Feb 26, 2024 | In the Linux kernel, the following vulnerability has been resolved: ice: Fix some null pointer dereference issues in ic... |
| CVE-2023-52470 | MEDIUM | 5.5 | 0.3% | Feb 26, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/radeon: check the alloc_workqueue return value ... |
| CVE-2023-52469 | HIGH | 7.8 | 0.3% | Feb 26, 2024 | In the Linux kernel, the following vulnerability has been resolved: drivers/amd/pm: fix a use-after-free in kv_parse_po... |
| CVE-2023-52468 | HIGH | 7.8 | 0.3% | Feb 26, 2024 | In the Linux kernel, the following vulnerability has been resolved: class: fix use-after-free in class_register() The ... |
| CVE-2023-52467 | MEDIUM | 5.5 | 0.3% | Feb 26, 2024 | In the Linux kernel, the following vulnerability has been resolved: mfd: syscon: Fix null pointer dereference in of_sys... |
| CVE-2023-52466 | — | — | — | Feb 26, 2024 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2023-52465 | MEDIUM | 5.5 | 0.3% | Feb 26, 2024 | In the Linux kernel, the following vulnerability has been resolved: power: supply: Fix null pointer dereference in smb2... |
| CVE-2023-49960 | HIGH | 7.5 | 0.7% | Feb 26, 2024 | In Indo-Sol PROFINET-INspektor NT through 2.4.0, a path traversal vulnerability in the httpuploadd service of the firmwa... |
| CVE-2023-49959 | CRITICAL | 9.8 | 1.4% | Feb 26, 2024 | In Indo-Sol PROFINET-INspektor NT through 2.4.0, a command injection vulnerability in the gedtupdater service of the fir... |
| CVE-2023-49114 | MEDIUM | 6.7 | 0.4% | Feb 26, 2024 | A DLL hijacking vulnerability was identified in the Qognify VMS Client Viewer version 7.1 or higher, which allows local ... |
| CVE-2023-43051 | MEDIUM | 5.4 | 0.6% | Feb 26, 2024 | IBM Cognos Analytics 11.1.7, 11.2.4, and 12.0.0 is vulnerable to cross-site scripting. This vulnerability allows users t... |
| CVE-2023-38359 | MEDIUM | 6.1 | 0.7% | Feb 26, 2024 | IBM Cognos Analytics 11.1.7, 11.2.4, and 12.0.0 is vulnerable to cross-site scripting. This vulnerability allows users t... |
| CVE-2023-32344 | MEDIUM | 4.3 | 0.4% | Feb 26, 2024 | IBM Cognos Analytics 11.1.7, 11.2.4, and 12.0.0 is vulnerable to form action hijacking where it is possible to modify th... |
| CVE-2023-30996 | MEDIUM | 5.3 | 0.4% | Feb 26, 2024 | IBM Cognos Analytics 11.1.7, 11.2.4, and 12.0.0 could be vulnerable to information leakage due to unverified sources in ... |
| CVE-2023-51394 | HIGH | 7.5 | 0.5% | Feb 23, 2024 | High traffic environments may result in NULL Pointer Dereference vulnerability in Silicon Labs's Ember ZNet SDK before v... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now