2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-42298 | MEDIUM | 5.5 | 0.2% | Oct 12, 2023 | An issue in GPAC GPAC v.2.2.1 and before allows a local attacker to cause a denial of service via the Q_DecCoordOnUnitSp... |
| CVE-2023-5487 | MEDIUM | 6.5 | 0.6% | Oct 11, 2023 | Inappropriate implementation in Fullscreen in Google Chrome prior to 118.0.5993.70 allowed an attacker who convinced a u... |
| CVE-2023-5486 | MEDIUM | 4.3 | 0.7% | Oct 11, 2023 | Inappropriate implementation in Input in Google Chrome prior to 118.0.5993.70 allowed a remote attacker to spoof securit... |
| CVE-2023-5485 | MEDIUM | 4.3 | 0.7% | Oct 11, 2023 | Inappropriate implementation in Autofill in Google Chrome prior to 118.0.5993.70 allowed a remote attacker to bypass aut... |
| CVE-2023-5484 | MEDIUM | 6.5 | 1.0% | Oct 11, 2023 | Inappropriate implementation in Navigation in Google Chrome prior to 118.0.5993.70 allowed a remote attacker to spoof se... |
| CVE-2023-5483 | MEDIUM | 6.5 | 0.8% | Oct 11, 2023 | Inappropriate implementation in Intents in Google Chrome prior to 118.0.5993.70 allowed a remote attacker to bypass cont... |
| CVE-2023-5481 | MEDIUM | 6.5 | 0.7% | Oct 11, 2023 | Inappropriate implementation in Downloads in Google Chrome prior to 118.0.5993.70 allowed a remote attacker to spoof sec... |
| CVE-2023-5479 | MEDIUM | 6.5 | 0.6% | Oct 11, 2023 | Inappropriate implementation in Extensions API in Google Chrome prior to 118.0.5993.70 allowed an attacker who convinced... |
| CVE-2023-5478 | MEDIUM | 4.3 | 0.8% | Oct 11, 2023 | Inappropriate implementation in Autofill in Google Chrome prior to 118.0.5993.70 allowed a remote attacker to leak cross... |
| CVE-2023-5477 | MEDIUM | 4.3 | 0.5% | Oct 11, 2023 | Inappropriate implementation in Installer in Google Chrome prior to 118.0.5993.70 allowed a local attacker to bypass dis... |
| CVE-2023-5475 | MEDIUM | 6.5 | 0.6% | Oct 11, 2023 | Inappropriate implementation in DevTools in Google Chrome prior to 118.0.5993.70 allowed an attacker who convinced a use... |
| CVE-2023-5473 | MEDIUM | 6.3 | 0.7% | Oct 11, 2023 | Use after free in Cast in Google Chrome prior to 118.0.5993.70 allowed a remote attacker who had compromised the rendere... |
| CVE-2023-44190 | MEDIUM | 5.4 | 0.2% | Oct 11, 2023 | An Origin Validation vulnerability in MAC address validation of Juniper Networks Junos OS Evolved on PTX10001, PTX10004... |
| CVE-2023-44189 | MEDIUM | 5.4 | 0.2% | Oct 11, 2023 | An Origin Validation vulnerability in MAC address validation of Juniper Networks Junos OS Evolved on PTX10003 Series al... |
| CVE-2023-44188 | MEDIUM | 5.3 | 0.3% | Oct 11, 2023 | A Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in telemetry processing of Juniper Networks Junos OS ... |
| CVE-2023-44187 | MEDIUM | 5.5 | 0.2% | Oct 11, 2023 | An Exposure of Sensitive Information vulnerability in the 'file copy' command of Junos OS Evolved allows a local, authen... |
| CVE-2023-41882 | MEDIUM | 4.3 | 0.4% | Oct 11, 2023 | vantage6 is privacy preserving federated learning infrastructure. The endpoint /api/collaboration/{id}/task is used to c... |
| CVE-2023-41881 | MEDIUM | 4.3 | 0.3% | Oct 11, 2023 | vantage6 is privacy preserving federated learning infrastructure. When a collaboration is deleted, the linked resources ... |
| CVE-2023-35660 | MEDIUM | 6.7 | 0.1% | Oct 11, 2023 | In lwis_transaction_client_cleanup of lwis_transaction.c, there is a possible way to corrupt memory due to a use after f... |
| CVE-2023-35655 | MEDIUM | 6.7 | 0.1% | Oct 11, 2023 | In CanConvertPadV2Op of darwinn_mlir_converter_aidl.cc, there is a possible out of bounds read due to a heap buffer over... |
| CVE-2023-35654 | MEDIUM | 6.7 | 0.1% | Oct 11, 2023 | In ctrl_roi of stmvl53l1_module.c, there is a possible out of bounds read due to an incorrect bounds check. This could l... |
| CVE-2023-35653 | MEDIUM | 4.4 | 0.1% | Oct 11, 2023 | In TBD of TBD, there is a possible way to access location information due to a permissions bypass. This could lead to lo... |
| CVE-2023-28635 | MEDIUM | 5.4 | 0.4% | Oct 11, 2023 | vantage6 is privacy preserving federated learning infrastructure. Prior to version 4.0.0, malicious users may try to get... |
| CVE-2023-44962 | MEDIUM | 5.3 | 1.0% | Oct 11, 2023 | File Upload vulnerability in Koha Library Software 23.05.04 and before allows a remote attacker to read arbitrary files ... |
| CVE-2023-35645 | MEDIUM | 6.4 | 0.1% | Oct 11, 2023 | In tbd of tbd, there is a possible memory corruption due to a race condition. This could lead to local escalation of pri... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now