2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-32186 | HIGH | 7.5 | 0.6% | Sep 19, 2023 | A Allocation of Resources Without Limits or Throttling vulnerability in SUSE RKE2 allows attackers with access to K3s s... |
| CVE-2023-32184 | HIGH | 7.8 | 0.3% | Sep 19, 2023 | A Insecure Storage of Sensitive Information vulnerability in openSUSE opensuse-welcome allows local attackers to execute... |
| CVE-2023-41443 | HIGH | 7.2 | 1.1% | Sep 18, 2023 | SQL injection vulnerability in Novel-Plus v.4.1.0 allows a remote attacker to execute arbitrary code via a crafted scrip... |
| CVE-2023-42443 | HIGH | 8.1 | 0.7% | Sep 18, 2023 | Vyper is a Pythonic Smart Contract Language for the Ethereum Virtual Machine (EVM). In version 0.3.9 and prior, under ce... |
| CVE-2023-39452 | HIGH | 7.5 | 0.5% | Sep 18, 2023 | The web application that owns the device clearly stores the credentials within the user management sectio... |
| CVE-2023-39446 | HIGH | 8.8 | 0.2% | Sep 18, 2023 | Thanks to the weaknesses that the web application has at the user management level, an attacker could obtain the ... |
| CVE-2023-41965 | HIGH | 7.5 | 0.5% | Sep 18, 2023 | Sending some requests in the web application of the vulnerable device allows information to be obtained due to the lack ... |
| CVE-2023-40221 | HIGH | 8.8 | 0.5% | Sep 18, 2023 | The absence of filters when loading some sections in the web application of the vulnerable device allows po... |
| CVE-2023-42328 | HIGH | 8.8 | 1.2% | Sep 18, 2023 | An issue in PeppermintLabs Peppermint v.0.2.4 and before allows a remote attacker to obtain sensitive information and ex... |
| CVE-2023-41595 | HIGH | 7.5 | 0.5% | Sep 18, 2023 | An issue in xui-xray v1.8.3 allows attackers to obtain sensitive information via default password. |
| CVE-2023-42387 | HIGH | 7.5 | 0.7% | Sep 18, 2023 | An issue in TDSQL Chitu management platform v.10.3.19.5.0 allows a remote attacker to obtain sensitive information via g... |
| CVE-2023-34195 | HIGH | 7.8 | 0.2% | Sep 18, 2023 | An issue was discovered in SystemFirmwareManagementRuntimeDxe in Insyde InsydeH2O with kernel 5.0 through 5.5. The imple... |
| CVE-2023-32187 | HIGH | 7.5 | 0.6% | Sep 18, 2023 | An Allocation of Resources Without Limits or Throttling vulnerability in SUSE k3s allows attackers with access to K3s se... |
| CVE-2023-41929 | HIGH | 7.3 | 0.2% | Sep 18, 2023 | A DLL hijacking vulnerability in Samsung Memory Card & UFD Authentication Utility PC Software before 1.0.1 could allow a... |
| CVE-2023-34999 | HIGH | 7.2 | 1.1% | Sep 18, 2023 | A command injection vulnerability exists in RTS VLink Virtual Matrix Software Versions v5 (< 5.7.6) and v6 (< 6.5.0) tha... |
| CVE-2023-43115 | HIGH | 8.8 | 5.9% | Sep 18, 2023 | In Artifex Ghostscript through 10.01.2, gdevijs.c in GhostPDL can lead to remote code execution via crafted PostScript d... |
| CVE-2023-42525 | HIGH | 7.5 | 0.5% | Sep 18, 2023 | Certain WithSecure products allow an infinite loop in a scanning engine via unspecified file types. This affects WithSec... |
| CVE-2023-42524 | HIGH | 7.5 | 0.5% | Sep 18, 2023 | Certain WithSecure products allow an infinite loop in a scanning engine via unspecified file types. This affects WithSec... |
| CVE-2023-42523 | HIGH | 7.5 | 0.5% | Sep 18, 2023 | Certain WithSecure products allow a remote crash of a scanning engine via unpacking of a PE file. This affects WithSecur... |
| CVE-2023-42522 | HIGH | 7.5 | 0.5% | Sep 18, 2023 | Certain WithSecure products allow a remote crash of a scanning engine via processing of an import struct in a PE file. T... |
| CVE-2023-42521 | HIGH | 7.5 | 0.5% | Sep 18, 2023 | Certain WithSecure products allow a remote crash of a scanning engine via processing of a compressed file. This affects ... |
| CVE-2023-5036 | HIGH | 8.8 | 0.3% | Sep 18, 2023 | Cross-Site Request Forgery (CSRF) in GitHub repository usememos/memos prior to 0.15.1. |
| CVE-2023-42526 | HIGH | 7.5 | 0.5% | Sep 18, 2023 | Certain WithSecure products allow a remote crash of a scanning engine via decompression of crafted data files. This affe... |
| CVE-2023-42520 | HIGH | 7.5 | 0.5% | Sep 18, 2023 | Certain WithSecure products allow a remote crash of a scanning engine via unpacking of crafted data files. This affects ... |
| CVE-2023-5033 | HIGH | 7.2 | 0.6% | Sep 18, 2023 | A vulnerability classified as critical has been found in OpenRapid RapidCMS 1.3.1. This affects an unknown part of the f... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now