2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-36706 | MEDIUM | 6.5 | 1.8% | Oct 10, 2023 | Windows Deployment Services Information Disclosure Vulnerability |
| CVE-2023-36698 | MEDIUM | 4.4 | 0.5% | Oct 10, 2023 | Windows Kernel Security Feature Bypass Vulnerability |
| CVE-2023-36584 | MEDIUM | 5.4 | 3.1% | Oct 10, 2023 | Windows Mark of the Web Security Feature Bypass Vulnerability |
| CVE-2023-36576 | MEDIUM | 5.5 | 1.0% | Oct 10, 2023 | Windows Kernel Information Disclosure Vulnerability |
| CVE-2023-36566 | MEDIUM | 6.5 | 2.8% | Oct 10, 2023 | Microsoft Common Data Model SDK Denial of Service Vulnerability |
| CVE-2023-36564 | MEDIUM | 6.5 | 1.3% | Oct 10, 2023 | Windows Search Security Feature Bypass Vulnerability |
| CVE-2023-36563 | MEDIUM | 5.5 | 20.9% | Oct 10, 2023 | Microsoft WordPad Information Disclosure Vulnerability |
| CVE-2023-36433 | MEDIUM | 6.5 | 1.9% | Oct 10, 2023 | Microsoft Dynamics 365 (On-Premises) Information Disclosure Vulnerability |
| CVE-2023-36429 | MEDIUM | 6.5 | 2.0% | Oct 10, 2023 | Microsoft Dynamics 365 (On-Premises) Information Disclosure Vulnerability |
| CVE-2023-36416 | MEDIUM | 6.1 | 0.8% | Oct 10, 2023 | Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability |
| CVE-2023-5496 | MEDIUM | 5.4 | 0.6% | Oct 10, 2023 | A vulnerability was found in Translator PoqDev Add-On 1.0.11 on Firefox. It has been rated as problematic. This issue af... |
| CVE-2023-44399 | MEDIUM | 5.3 | 0.5% | Oct 10, 2023 | ZITADEL provides identity infrastructure. In versions 2.37.2 and prior, ZITADEL administrators can enable a setting call... |
| CVE-2023-44249 | MEDIUM | 6.5 | 0.9% | Oct 10, 2023 | An authorization bypass through user-controlled key [CWE-639] vulnerability in Fortinet FortiManager version 7.4.0 and b... |
| CVE-2023-42788 | MEDIUM | 6.7 | 1.3% | Oct 10, 2023 | An improper neutralization of special elements used in an os command ('OS Command Injection') vulnerability [CWE-78] in ... |
| CVE-2023-42787 | MEDIUM | 6.5 | 1.4% | Oct 10, 2023 | A client-side enforcement of server-side security [CWE-602] vulnerability in Fortinet FortiManager version 7.4.0 and bef... |
| CVE-2023-42782 | MEDIUM | 5.3 | 0.3% | Oct 10, 2023 | A insufficient verification of data authenticity vulnerability [CWE-345] in FortiAnalyzer version 7.4.0 and below 7.2.3 ... |
| CVE-2023-41675 | MEDIUM | 5.3 | 1.0% | Oct 10, 2023 | A use after free vulnerability [CWE-416] in FortiOS version 7.2.0 through 7.2.4 and version 7.0.0 through 7.0.10 and For... |
| CVE-2023-36637 | MEDIUM | 5.4 | 0.4% | Oct 10, 2023 | An improper neutralization of input during web page generation vulnerability [CWE-79] in FortiMail version 7.2.0 through... |
| CVE-2023-36555 | MEDIUM | 5.4 | 0.3% | Oct 10, 2023 | An improper neutralization of script-related html tags in a web page (basic xss) in Fortinet FortiOS 7.2.0 - 7.2.4 allow... |
| CVE-2023-33301 | MEDIUM | 4.3 | 0.4% | Oct 10, 2023 | An improper access control vulnerability in Fortinet FortiOS 7.2.0 - 7.2.4 and 7.4.0 allows an attacker to access a rest... |
| CVE-2023-25604 | MEDIUM | 5.5 | 0.2% | Oct 10, 2023 | An insertion of sensitive information into log file vulnerability in Fortinet FortiGuest 1.0.0 allows a local attacker t... |
| CVE-2023-30804 | MEDIUM | 6.5 | 12.8% | Oct 10, 2023 | The Sangfor Next-Gen Application Firewall version NGAF8.0.17 is vulnerable to an authenticated file disclosure vulnerabi... |
| CVE-2023-30802 | MEDIUM | 5.3 | 0.6% | Oct 10, 2023 | The Sangfor Next-Gen Application Firewall version NGAF8.0.17 is vulnerable to a source code disclosure vulnerability. A ... |
| CVE-2023-45219 | MEDIUM | 4.4 | 0.2% | Oct 10, 2023 | Exposure of Sensitive Information vulnerability exist in an undisclosed BIG-IP TMOS shell (tmsh) command which may allo... |
| CVE-2023-43788 | MEDIUM | 5.5 | 0.4% | Oct 10, 2023 | A vulnerability was found in libXpm due to a boundary condition within the XpmCreateXpmImageFromBuffer() function. This ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now