2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-43636HIGH8.8 In EVE OS, the “measured boot” mechanism prevents a compromised device from accessing the encrypted data located in t...
CVE-2023-43635HIGH8.8 Vault Key Sealed With SHA1 PCRs The measured boot solution implemented in EVE OS leans on a PCR locking mechanism...
CVE-2023-43630HIGH8.8PCR14 is not in the list of PCRs that seal/unseal the “vault” key, but due to the change that was implemented in commit ...
CVE-2023-41902HIGH7.8An XPC misconfiguration vulnerability in CoreCode MacUpdater before 2.3.8, and 3.x before 3.1.2, allows attackers to esc...
CVE-2023-4236HIGH7.5A flaw in the networking code handling DNS-over-TLS queries may cause `named` to terminate unexpectedly due to an assert...
CVE-2023-43477HIGH8.8The ping_from parameter of ping_tracerte.cgi in the web UI of Telstra Smart Modem Gen 2 (Arcadyan LH1000), firmware vers...
CVE-2023-3341HIGH7.5The code that processes control channel messages sent to `named` calls certain functions recursively during packet parsi...
CVE-2023-5042HIGH7.5Sensitive information disclosure due to insecure folder permissions. The following products are affected: Acronis Cyber ...
CVE-2023-4853HIGH8.1A flaw was found in Quarkus where HTTP security policies are not sanitizing certain character permutations correctly whe...
CVE-2023-41375HIGH7.8Use after free vulnerability exists in Kostac PLC Programming Software Version 1.6.11.0. Arbitrary code may be executed ...
CVE-2023-41374HIGH7.8Double free issue exists in Kostac PLC Programming Software Version 1.6.11.0 and earlier. Arbitrary code may be executed...
CVE-2023-43620HIGH7.8An issue was discovered in Croc through 9.6.5. A sender may place ANSI or CSI escape sequences in a filename to attack t...
CVE-2023-43619HIGH7.8An issue was discovered in Croc through 9.6.5. A sender may send dangerous new files to a receiver, such as executable c...
CVE-2023-2163HIGH8.8Incorrect verifier pruning in BPF in Linux Kernel >=5.4 leads to unsafe code paths being incorrectly marked as safe, res...
CVE-2023-4088HIGH7.8Incorrect Default Permissions vulnerability in Mitsubishi Electric Corporation multiple FA engineering software products...
CVE-2023-31015HIGH7.8NVIDIA DGX H100 BMC contains a vulnerability in the REST service where a host user may cause as improper authentication ...
CVE-2023-31013HIGH8.8NVIDIA DGX H100 BMC contains a vulnerability in the REST service, where an attacker may cause improper input validation....
CVE-2023-31012HIGH8.8NVIDIA DGX H100 BMC contains a vulnerability in the REST service where an attacker may cause improper input validation. ...
CVE-2023-31011HIGH8.8NVIDIA DGX H100 BMC contains a vulnerability in the REST service where an attacker may cause improper input validation. ...
CVE-2023-31010HIGH8.8NVIDIA DGX H100 BMC contains a vulnerability in IPMI, where an attacker may cause improper input validation. A successfu...
CVE-2023-38887HIGH8.8File Upload vulnerability in Dolibarr ERP CRM v.17.0.1 and before allows a remote attacker to execute arbitrary code and...
CVE-2023-38886HIGH7.2An issue in Dolibarr ERP CRM v.17.0.1 and before allows a remote privileged attacker to execute arbitrary code via a cra...
CVE-2023-31008HIGH7.8NVIDIA DGX H100 BMC contains a vulnerability in IPMI, where an attacker may cause improper input validation. A successfu...
CVE-2023-25532HIGH7.5NVIDIA DGX H100 BMC contains a vulnerability in IPMI, where an attacker may cause insufficient protection of credentials...
CVE-2023-25529HIGH8.1NVIDIA DGX H100 BMC and DGX A100 BMC contains a vulnerability in the host KVM daemon, where an unauthenticated attacker ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now