2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-52444 | HIGH | 7.8 | 0.2% | Feb 22, 2024 | In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid dirent corruption As Al reporte... |
| CVE-2023-52443 | MEDIUM | 5.5 | 0.2% | Feb 22, 2024 | In the Linux kernel, the following vulnerability has been resolved: apparmor: avoid crash when parsed profile name is e... |
| CVE-2023-52161 | HIGH | 7.5 | 1.1% | Feb 22, 2024 | The Access Point functionality in eapol_auth_key_handle in eapol.c in iNet wireless daemon (IWD) before 2.14 allows atta... |
| CVE-2023-52160 | MEDIUM | 6.5 | 1.2% | Feb 22, 2024 | The implementation of PEAP in wpa_supplicant through 2.10 allows authentication bypass. For a successful attack, wpa_sup... |
| CVE-2023-51653 | CRITICAL | 9.8 | 2.1% | Feb 22, 2024 | Hertzbeat is a real-time monitoring system. In the implementation of `JmxCollectImpl.java`, `JMXConnectorFactory.connect... |
| CVE-2023-51389 | CRITICAL | 9.8 | 1.3% | Feb 22, 2024 | Hertzbeat is a real-time monitoring system. At the interface of `/define/yml`, SnakeYAML is used as a parser to parse ym... |
| CVE-2023-51388 | CRITICAL | 9.8 | 1.3% | Feb 22, 2024 | Hertzbeat is a real-time monitoring system. In `CalculateAlarm.java`, `AviatorEvaluator` is used to directly execute the... |
| CVE-2023-51450 | HIGH | 8.1 | 1.5% | Feb 22, 2024 | baserCMS is a website development framework. Prior to version 5.0.9, there is an OS Command Injection vulnerability in t... |
| CVE-2023-44379 | MEDIUM | 6.1 | 0.5% | Feb 22, 2024 | baserCMS is a website development framework. Prior to version 5.0.9, there is a cross-site scripting vulnerability in th... |
| CVE-2023-3966 | HIGH | 7.5 | 1.0% | Feb 22, 2024 | A flaw was found in Open vSwitch where multiple versions are vulnerable to crafted Geneve packets, which may result in a... |
| CVE-2023-29181 | HIGH | 8.8 | 0.7% | Feb 22, 2024 | A use of externally-controlled format string in Fortinet FortiOS 7.2.0 through 7.2.4, 7.0.0 through 7.0.11, 6.4.0 throug... |
| CVE-2023-29180 | HIGH | 7.5 | 2.6% | Feb 22, 2024 | A null pointer dereference in Fortinet FortiOS version 7.2.0 through 7.2.4, 7.0.0 through 7.0.11, 6.4.0 through 6.4.12, ... |
| CVE-2023-29179 | MEDIUM | 6.5 | 2.5% | Feb 22, 2024 | A null pointer dereference in Fortinet FortiOS version 7.2.0 through 7.2.4, 7.0.0 through 7.0.11, 6.4.0 through 6.4.12, ... |
| CVE-2023-4895 | MEDIUM | 4.3 | 0.4% | Feb 22, 2024 | An issue has been discovered in GitLab EE affecting all versions starting from 12.0 to 16.7.6, all versions starting fro... |
| CVE-2023-6477 | MEDIUM | 6.7 | 0.5% | Feb 22, 2024 | An issue has been discovered in GitLab EE affecting all versions starting from 16.5 before 16.7.6, all versions starting... |
| CVE-2023-3509 | MEDIUM | 5.4 | 0.3% | Feb 21, 2024 | An issue has been discovered in GitLab affecting all versions before 16.7.6, all versions starting from 16.8 before 16.8... |
| CVE-2023-52155 | HIGH | 7.2 | 0.7% | Feb 21, 2024 | A SQL Injection vulnerability in /admin/sauvegarde/run.php in PMB 7.4.7 and earlier allows remote authenticated attacker... |
| CVE-2023-52154 | HIGH | 7.2 | 0.7% | Feb 21, 2024 | File Upload vulnerability in pmb/camera_upload.php in PMB 7.4.7 and earlier allows attackers to run arbitrary code via u... |
| CVE-2023-52153 | CRITICAL | 9.8 | 0.8% | Feb 21, 2024 | A SQL Injection vulnerability in /pmb/opac_css/includes/sessions.inc.php in PMB 7.4.7 and earlier allows remote unauthen... |
| CVE-2023-51828 | CRITICAL | 9.8 | 0.9% | Feb 21, 2024 | A SQL Injection vulnerability in /admin/convert/export.class.php in PMB 7.4.7 and earlier versions allows remote unauthe... |
| CVE-2023-38844 | HIGH | 7.5 | 0.9% | Feb 21, 2024 | SQL injection vulnerability in PMB v.7.4.7 and earlier allows a remote attacker to execute arbitrary code via the thesau... |
| CVE-2023-37177 | CRITICAL | 9.8 | 1.1% | Feb 21, 2024 | SQL Injection vulnerability in PMB Services PMB v.7.4.7 and before allows a remote unauthenticated attacker to execute a... |
| CVE-2023-24334 | HIGH | 8 | 0.5% | Feb 21, 2024 | A stack overflow vulnerability in Tenda AC23 with firmware version US_AC23V1.0re_V16.03.07.45_cn_TDC01 allows attackers ... |
| CVE-2023-24333 | HIGH | 8.8 | 0.5% | Feb 21, 2024 | A stack overflow vulnerability in Tenda AC21 with firmware version US_AC21V1.0re_V16.03.08.15_cn_TDC01 allows attackers ... |
| CVE-2023-24332 | HIGH | 8.1 | 0.5% | Feb 21, 2024 | A stack overflow vulnerability in Tenda AC6 with firmware version US_AC6V5.0re_V03.03.02.01_cn_TDC01 allows attackers to... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now