2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-6482 | MEDIUM | 5.2 | 0.1% | Jan 27, 2024 | Use of encryption key derived from static information in Synaptics Fingerprint Driver allows an attacker to set up a T... |
| CVE-2023-52187 | HIGH | 7.5 | 0.5% | Jan 27, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Thomas Maier Image Source Control Lite – Sho... |
| CVE-2023-6470 | — | — | — | Jan 26, 2024 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. |
| CVE-2023-29081 | MEDIUM | 5.5 | 0.1% | Jan 26, 2024 | A vulnerability has been reported in Suite Setups built with versions prior to InstallShield 2023 R2. This vulnerability... |
| CVE-2023-6291 | HIGH | 7.1 | 0.9% | Jan 26, 2024 | A flaw was found in the redirect_uri validation logic in Keycloak. This issue may allow a bypass of otherwise explicitly... |
| CVE-2023-6919 | HIGH | 7.5 | 0.6% | Jan 26, 2024 | Path Traversal: '/../filedir' vulnerability in Biges Safe Life Technologies Electronics Inc. VGuard allows Absolute Path... |
| CVE-2023-48129 | MEDIUM | 5.4 | 0.4% | Jan 26, 2024 | An issue in kimono-oldnew mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage ... |
| CVE-2023-48135 | MEDIUM | 5.4 | 0.4% | Jan 26, 2024 | An issue in mimasaka_farm mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage ... |
| CVE-2023-48133 | MEDIUM | 5.4 | 0.4% | Jan 26, 2024 | An issue in angel coffee mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage o... |
| CVE-2023-48132 | MEDIUM | 5.4 | 0.4% | Jan 26, 2024 | An issue in kosei entertainment esportsstudioLegends mini-app on Line v13.6.1 allows attackers to send crafted malicious... |
| CVE-2023-48131 | MEDIUM | 5.4 | 0.4% | Jan 26, 2024 | An issue in CHIGASAKI BAKERY mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leaka... |
| CVE-2023-48130 | MEDIUM | 5.4 | 0.4% | Jan 26, 2024 | An issue in GINZA CAFE mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of ... |
| CVE-2023-48128 | MEDIUM | 5.4 | 0.4% | Jan 26, 2024 | An issue in UNITED BOXING GYM mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leak... |
| CVE-2023-48127 | MEDIUM | 5.4 | 0.4% | Jan 26, 2024 | An issue in myGAKUYA mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of th... |
| CVE-2023-48126 | MEDIUM | 5.4 | 0.4% | Jan 26, 2024 | An issue in Luxe Beauty Clinic mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via lea... |
| CVE-2023-38323 | CRITICAL | 9.8 | 1.1% | Jan 26, 2024 | An issue was discovered in OpenNDS before 10.1.3. It fails to sanitize the status path script entry in the configuration... |
| CVE-2023-38319 | CRITICAL | 9.8 | 1.1% | Jan 26, 2024 | An issue was discovered in OpenNDS before 10.1.3. It fails to sanitize the FAS key entry in the configuration file, allo... |
| CVE-2023-38318 | CRITICAL | 9.8 | 1.1% | Jan 26, 2024 | An issue was discovered in OpenNDS before 10.1.3. It fails to sanitize the gateway FQDN entry in the configuration file,... |
| CVE-2023-38317 | CRITICAL | 9.8 | 1.1% | Jan 26, 2024 | An issue was discovered in OpenNDS before 10.1.3. It fails to sanitize the network interface name entry in the configura... |
| CVE-2023-6159 | MEDIUM | 6.5 | 1.0% | Jan 26, 2024 | An issue has been discovered in GitLab CE/EE affecting all versions from 12.7 prior to 16.6.6, 16.7 prior to 16.7.4, and... |
| CVE-2023-5612 | MEDIUM | 5.3 | 4.4% | Jan 26, 2024 | An issue has been discovered in GitLab affecting all versions before 16.6.6, 16.7 prior to 16.7.4, and 16.8 prior to 16.... |
| CVE-2023-5933 | MEDIUM | 5.4 | 0.7% | Jan 26, 2024 | An issue has been discovered in GitLab CE/EE affecting all versions after 13.7 before 16.6.6, 16.7 prior to 16.7.4, and ... |
| CVE-2023-51833 | HIGH | 8.1 | 4.4% | Jan 25, 2024 | A command injection issue in TRENDnet TEW-411BRPplus v.2.07_eu that allows a local attacker to execute arbitrary code vi... |
| CVE-2023-52251 | HIGH | 8.8 | 85.0% | Jan 25, 2024 | An issue discovered in provectus kafka-ui 0.4.0 through 0.7.1 allows remote attackers to execute arbitrary code via the ... |
| CVE-2023-52046 | MEDIUM | 4.8 | 0.6% | Jan 25, 2024 | Cross Site Scripting vulnerability (XSS) in webmin v.2.105 and earlier allows a remote attacker to execute arbitrary cod... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now