2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-33972HIGH8.8Scylladb is a NoSQL data store using the seastar framework, compatible with Apache Cassandra. Authenticated users who ar...
CVE-2023-5184HIGH8.8Two potential signed to unsigned conversion errors and buffer overflow vulnerabilities at the following locations in the...
CVE-2023-20262HIGH7.5A vulnerability in the SSH service of Cisco Catalyst SD-WAN Manager could allow an unauthenticated, remote attacker to c...
CVE-2023-20254HIGH8.8A vulnerability in the session management system of the Cisco Catalyst SD-WAN Manager multi-tenant feature could allow a...
CVE-2023-20231HIGH8.8A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker to perform an injec...
CVE-2023-20227HIGH7.5A vulnerability in the Layer 2 Tunneling Protocol (L2TP) feature of Cisco IOS XE Software could allow an unauthenticated...
CVE-2023-20226HIGH7.5A vulnerability in Application Quality of Experience (AppQoE) and Unified Threat Defense (UTD) on Cisco IOS XE Software ...
CVE-2023-20223HIGH8.2A vulnerability in Cisco DNA Center could allow an unauthenticated, remote attacker to read and modify data in a reposit...
CVE-2023-20187HIGH7.5A vulnerability in the Multicast Leaf Recycle Elimination (mLRE) feature of Cisco IOS XE Software for Cisco ASR 1000 Ser...
CVE-2023-20176HIGH8.6A vulnerability in the networking component of Cisco access point (AP) software could allow an unauthenticated, remote a...
CVE-2023-20034HIGH7.5Vulnerability in the Elasticsearch database used in the of Cisco SD-WAN vManage software could allow an unauthenticated,...
CVE-2023-20033HIGH8.6A vulnerability in Cisco IOS XE Software for Cisco Catalyst 3650 and Catalyst 3850 Series Switches could allow an unauth...
CVE-2023-4129HIGH7.5 Dell Data Protection Central, version 19.9, contains an Inadequate Encryption Strength Vulnerability. An unauthenticate...
CVE-2023-43125HIGH8.2 BIG-IP APM clients may send IP traffic outside of the VPN tunnel.  Note: Software versions which have reached End of Te...
CVE-2023-43124HIGH7.1 BIG-IP APM clients may send IP traffic outside of the VPN tunnel.  Note: Software versions which have reached End of Te...
CVE-2023-32458HIGH7.8 Dell AppSync, versions 4.4.0.0 to 4.6.0.0 including Service Pack releases, contains an improper access control vulnerab...
CVE-2023-5183HIGH8.8Unsafe deserialization of untrusted JSON allows execution of arbitrary code on affected releases of the Illumio PCE. Aut...
CVE-2023-5173HIGH7.5In a non-standard configuration of Firefox, an integer overflow could have occurred based on network traffic (possibly u...
CVE-2023-5170HIGH7.4In canvas rendering, a compromised content process could have caused a surface to change unexpectedly, leading to a memo...
CVE-2023-5157HIGH7.5A vulnerability was found in MariaDB. An OpenVAS port scan on ports 3306 and 4567 allows a malicious remote client to ca...
CVE-2023-4934HIGH8.8Authorization Bypass Through User-Controlled Key vulnerability in Usta AYBS allows Authentication Abuse, Authentication ...
CVE-2023-44159HIGH7.5Sensitive information disclosure due to cleartext storage of sensitive information. The following products are affected:...
CVE-2023-44158HIGH7.5Sensitive information disclosure due to insufficient token field masking. The following products are affected: Acronis C...
CVE-2023-44157HIGH7.8Local privilege escalation due to insecure folder permissions. The following products are affected: Acronis Cyber Protec...
CVE-2023-44156HIGH7.5Sensitive information disclosure due to spell-jacking. The following products are affected: Acronis Cyber Protect 15 (Li...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now