2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-4583HIGH7.5When checking if the Browsing Context had been discarded in `HttpBaseChannel`, if the load group was not available then ...
CVE-2023-4582HIGH8.8Due to large allocation checks in Angle for glsl shaders being too lenient a buffer overflow could have occurred when al...
CVE-2023-4576HIGH8.6On Windows, an integer overflow could occur in `RecordedSourceSurfaceCreation` which resulted in a heap buffer overflow ...
CVE-2023-4816HIGH8.8A vulnerability exists in the Equipment Tag Out authentication, when configured with Single Sign-On (SSO) with password ...
CVE-2023-4877HIGH7.5Exposure of Sensitive Information to an Unauthorized Actor in GitHub repository hamza417/inure prior to build92.
CVE-2023-4876HIGH7.5Exposure of Sensitive Information to an Unauthorized Actor in GitHub repository hamza417/inure prior to build92.
CVE-2023-4869HIGH8.8A vulnerability was found in SourceCodester Contact Manager App 1.0. It has been rated as problematic. Affected by this ...
CVE-2023-4868HIGH8.8A vulnerability was found in SourceCodester Contact Manager App 1.0. It has been declared as problematic. Affected by th...
CVE-2023-4867HIGH8.8A vulnerability was found in Xintian Smart Table Integrated Management System 5.6.9. It has been classified as critical....
CVE-2023-4865HIGH8.8A vulnerability has been found in SourceCodester Take-Note App 1.0 and classified as problematic. This vulnerability aff...
CVE-2023-41915HIGH8.1OpenPMIx PMIx before 4.2.6 and 5.0.x before 5.0.1 allows attackers to obtain ownership of arbitrary files via a race con...
CVE-2023-4846HIGH7.5A vulnerability was found in SourceCodester Simple Membership System 1.0. It has been rated as critical. This issue affe...
CVE-2023-4844HIGH7.5A vulnerability was found in SourceCodester Simple Membership System 1.0. It has been classified as critical. This affec...
CVE-2023-42278HIGH7.5hutool v5.8.21 was discovered to contain a buffer overflow via the component JSONUtil.parse().
CVE-2023-30995HIGH7.5IBM Aspera Faspex 4.0 through 4.4.2 and 5.0 through 5.0.5 could allow a malicious actor to bypass IP whitelist restricti...
CVE-2023-41578HIGH7.5Jeecg boot up to v3.5.3 was discovered to contain an arbitrary file read vulnerability via the interface /testConnection...
CVE-2023-38736HIGH7.8IBM QRadar WinCollect Agent 10.0 through 10.1.6, when installed to run as ADMIN or SYSTEM, is vulnerable to a local esca...
CVE-2023-4782HIGH7.8Terraform version 1.0.8 through 1.5.6 allows arbitrary file write during the `init` operation if run on maliciously craf...
CVE-2023-39322HIGH7.5QUIC connections do not set an upper bound on the amount of data buffered when reading post-handshake messages, allowing...
CVE-2023-39321HIGH7.5Processing an incomplete post-handshake message for a QUIC connection can cause a panic.
CVE-2023-40924HIGH7.5SolarView Compact < 6.00 is vulnerable to Directory Traversal.
CVE-2023-39584HIGH7.5Hexo up to v7.0.0 (RC2) was discovered to contain an arbitrary file read vulnerability.
CVE-2023-4807HIGH7.8Issue summary: The POLY1305 MAC (message authentication code) implementation contains a bug that might corrupt the inter...
CVE-2023-41594HIGH7.5Dairy Farm Shop Management System Using PHP and MySQL v1.1 was discovered to contain multiple SQL injection vulnerabilit...
CVE-2023-40953HIGH8.8icms 7.0.16 is vulnerable to Cross Site Request Forgery (CSRF).

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now