2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-25527HIGH7.8NVIDIA DGX H100 BMC contains a vulnerability in the host KVM daemon, where an authenticated local attacker may cause cor...
CVE-2023-25525HIGH7.5NVIDIA Cumulus Linux contains a vulnerability in forwarding where a VxLAN-encapsulated IPv6 packet received on an SVI in...
CVE-2023-36319HIGH8.8File Upload vulnerability in Openupload Stable v.0.4.3 allows a remote attacker to execute arbitrary code via the action...
CVE-2023-40934HIGH7.2A SQL injection vulnerability in Nagios XI 5.11.1 and below allows authenticated attackers with privileges to manage hos...
CVE-2023-40933HIGH8.8A SQL injection vulnerability in Nagios XI v5.11.1 and below allows authenticated attackers with announcement banner con...
CVE-2023-22513HIGH8.8This High severity RCE (Remote Code Execution) vulnerability was introduced in version 8.0.0 of Bitbucket Data Center an...
CVE-2023-42451HIGH7.5Mastodon is a free, open-source social network server based on ActivityPub. Prior to versions 3.5.14, 4.0.10, 4.1.8, and...
CVE-2023-42450HIGH7.5Mastodon is a free, open-source social network server based on ActivityPub. Starting in version 4.2.0-beta1 and prior to...
CVE-2023-38356HIGH8.1MiniTool Power Data Recovery 11.6 contains an insecure installation process that allows attackers to achieve remote code...
CVE-2023-38355HIGH8.1MiniTool Movie Maker 7.0 contains an insecure installation process that allows attackers to achieve remote code executio...
CVE-2023-38354HIGH8.1MiniTool Shadow Maker version 4.1 contains an insecure installation process that allows attackers to achieve remote code...
CVE-2023-38352HIGH8.1MiniTool Partition Wizard 12.8 contains an insecure update mechanism that allows attackers to achieve remote code execut...
CVE-2023-38351HIGH8.1MiniTool Partition Wizard 12.8 contains an insecure installation mechanism that allows attackers to achieve remote code ...
CVE-2023-32182HIGH7.8A Improper Link Resolution Before File Access ('Link Following') vulnerability in SUSE SUSE Linux Enterprise Desktop 15 ...
CVE-2023-42447HIGH7.5blurhash-rs is a pure Rust implementation of Blurhash, software for encoding images into ASCII strings that can be turne...
CVE-2023-42444HIGH7.5phonenumber is a library for parsing, formatting and validating international phone numbers. Prior to versions `0.3.3+8....
CVE-2023-41890HIGH7.5Sustainsys.Saml2 library adds SAML2P support to ASP.NET web sites, allowing the web site to act as a SAML2 Service Provi...
CVE-2023-3892HIGH7.4Improper Restriction of XML External Entity Reference vulnerability in MIM Assistant and Client DICOM RTst Loading modul...
CVE-2023-4096HIGH8.2Weak password recovery mechanism vulnerability in Fujitsu Arconte Áurea version 1.5.0.0, which exploitation could allow ...
CVE-2023-4094HIGH8.2ARCONTE Aurea's authentication system, in its 1.5.0.0 version, could allow an attacker to make incorrect access requests...
CVE-2023-41179HIGH7.2A vulnerability in the 3rd party AV uninstaller module contained in Trend Micro Apex One (on-prem and SaaS), Worry-Free ...
CVE-2023-31808HIGH7.2Technicolor TG670 10.5.N.9 devices contain multiple accounts with hard-coded passwords. One account has administrative p...
CVE-2023-32649HIGH7.5A Denial of Service (Dos) vulnerability in Nozomi Networks Guardian and CMC, due to improper input validation in certain...
CVE-2023-2567HIGH8.8A SQL Injection vulnerability has been found in Nozomi Networks Guardian and CMC, due to improper input validation in ce...
CVE-2023-29245HIGH7.4A SQL Injection vulnerability in Nozomi Networks Guardian and CMC, due to improper input validation in certain fields us...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now