2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-38075HIGH7.8A vulnerability has been identified in JT2Go (All versions < V14.3.0.1), Teamcenter Visualization V13.3 (All versions < ...
CVE-2023-38074HIGH7.8A vulnerability has been identified in JT2Go (All versions < V14.3.0.1), Teamcenter Visualization V13.3 (All versions < ...
CVE-2023-38073HIGH7.8A vulnerability has been identified in JT2Go (All versions < V14.3.0.1), Teamcenter Visualization V13.3 (All versions < ...
CVE-2023-38072HIGH7.8A vulnerability has been identified in JT2Go (All versions < V14.3.0.1), Teamcenter Visualization V13.3 (All versions < ...
CVE-2023-38071HIGH7.8A vulnerability has been identified in JT2Go (All versions < V14.3.0.1), Teamcenter Visualization V13.3 (All versions < ...
CVE-2023-38070HIGH7.8A vulnerability has been identified in JT2Go (All versions < V14.3.0.1), Teamcenter Visualization V13.3 (All versions < ...
CVE-2023-28831HIGH7.5The OPC UA implementations (ANSI C and C++) in affected products contain an integer overflow vulnerability that could ca...
CVE-2023-37881HIGH8.8Weak access control in Wing FTP Server (Admin Web Client) allows for privilege escalation.This issue affects Wing FTP Se...
CVE-2023-37879HIGH7.5Insecure storage of sensitive information in Wing FTP Server (User Web Client) allows information elicitation.This issue...
CVE-2023-37878HIGH8.8Insecure default permissions in Wing FTP Server (Admin Web Client) allows for privilege escalation.This issue affects Wi...
CVE-2023-3039HIGH7.8 SD ROM Utility, versions prior to 1.0.2.0 contain an Improper Access Control vulnerability. A low-privileged malicious ...
CVE-2023-40623HIGH7.1SAP BusinessObjects Suite Installer - version 420, 430, allows an attacker within the network to create a directory unde...
CVE-2023-42472HIGH7.3Due to insufficient file type validation, SAP BusinessObjects Business Intelligence Platform (Web Intelligence HTML inte...
CVE-2023-40308HIGH7.5SAP CommonCryptoLib allows an unauthenticated attacker to craft a request, which when submitted to an open port causes a...
CVE-2023-32558HIGH7.5The use of the deprecated API `process.binding()` can bypass the permission model through path traversal. This vulnera...
CVE-2023-25519HIGH7.8 NVIDIA ConnectX Host Firmware for the BlueField Data Processing Unit contains a vulnerability where a restricted host m...
CVE-2023-4899HIGH8.8 SQL Injection in GitHub repository mintplex-labs/anything-llm prior to 0.0.1.
CVE-2023-4898HIGH7.5Authentication Bypass by Primary Weakness in GitHub repository mintplex-labs/anything-llm prior to 0.0.1.
CVE-2023-41990HIGH7.8The issue was addressed with improved handling of caches. This issue is fixed in tvOS 16.3, iOS 16.3 and iPadOS 16.3, ma...
CVE-2023-40440HIGH7.5This issue was addressed with improved state management of S/MIME encrypted emails. This issue is fixed in macOS Montere...
CVE-2023-41879HIGH7.5Magento LTS is the official OpenMage LTS codebase. Guest orders may be viewed without authentication using a "guest-view...
CVE-2023-35687HIGH7.8In MtpPropertyValue of MtpProperty.h, there is a possible memory corruption due to a use after free. This could lead to ...
CVE-2023-35684HIGH8.8In avdt_msg_asmbl of avdt_msg.cc, there is a possible out of bounds write due to an integer overflow. This could lead to...
CVE-2023-35682HIGH7.8In hasPermissionForActivity of PackageManagerHelper.java, there is a possible way to start arbitrary components due to a...
CVE-2023-35676HIGH7.8In createQuickShareAction of SaveImageInBackgroundTask.java, there is a possible way to trigger a background activity la...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now