2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-24331CRITICAL9.8Command Injection vulnerability in D-Link Dir 816 with firmware version DIR-816_A2_v1.10CNB04 allows attackers to run ar...
CVE-2023-24330HIGH8.8Command Injection vulnerability in D-Link Dir 882 with firmware version DIR882A1_FW130B06 allows attackers to run arbitr...
CVE-2023-6640MEDIUM6.5Malformed S2 Nonce Get Command Class packets can be sent to crash PC Controller v5.54.0 and earlier.
CVE-2023-6533MEDIUM6.5Malformed Device Reset Locally Command Class packets can be sent to the controller, causing the controller to assume the...
CVE-2023-50975HIGH8.4The TD Bank TD Advanced Dashboard client through 3.0.3 for macOS allows arbitrary code execution because of the lack of ...
CVE-2023-49100MEDIUM4.4Trusted Firmware-A (TF-A) before 2.10 has a potential read out-of-bounds in the SDEI service. The input parameter passed...
CVE-2023-46241HIGH8.1`discourse-microsoft-auth` is a plugin that enables authentication via Microsoft. On sites with the `discourse-microsoft...
CVE-2023-50955LOW2.7IBM InfoSphere Information Server 11.7 could allow an authenticated privileged user to obtain the absolute path of the w...
CVE-2023-33843MEDIUM5.4IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed a...
CVE-2023-47795MEDIUM5.4Stored cross-site scripting (XSS) vulnerability in the Document and Media widget in Liferay Portal 7.4.3.18 through 7.4....
CVE-2023-7235HIGH8.4The OpenVPN GUI installer before version 2.6.9 did not set the proper access control restrictions to the installation di...
CVE-2023-52442MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate session id and tree id in compound ...
CVE-2023-52441HIGH7.8In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix out of bounds in init_smb2_rsp_hdr() If...
CVE-2023-52440HIGH7.8In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix slub overflow in ksmbd_decode_ntlmssp_au...
CVE-2023-42953MEDIUM5.5A permissions issue was addressed with additional restrictions. This issue is fixed in tvOS 17.1, watchOS 10.1, macOS So...
CVE-2023-42952MEDIUM4.4The issue was addressed with improved checks. This issue is fixed in iOS 17.1 and iPadOS 17.1, macOS Ventura 13.6.3, mac...
CVE-2023-42951MEDIUM4.3The issue was addressed with improved handling of caches. This issue is fixed in iOS 17.1 and iPadOS 17.1. A user may be...
CVE-2023-42946MEDIUM5.5This issue was addressed with improved redaction of sensitive information. This issue is fixed in tvOS 17.1, watchOS 10....
CVE-2023-42945MEDIUM5.5A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sonoma 14.1. An app may gai...
CVE-2023-42942HIGH7.8This issue was addressed with improved handling of symlinks. This issue is fixed in watchOS 10.1, macOS Sonoma 14.1, tvO...
CVE-2023-42939LOW3.3A logic issue was addressed with improved checks. This issue is fixed in iOS 17.1 and iPadOS 17.1. A user's private brow...
CVE-2023-42928HIGH7.8The issue was addressed with improved bounds checks. This issue is fixed in iOS 17.1 and iPadOS 17.1. An app may be able...
CVE-2023-42889MEDIUM5.5The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.1, macOS Monterey 12.7.1, macOS Ven...
CVE-2023-42878MEDIUM5.5A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in watchOS 10.1,...
CVE-2023-42877MEDIUM5.5The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.1, macOS Monterey 12.7.1, macOS Ven...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now