2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-0579 | HIGH | 8.8 | 0.9% | Aug 16, 2023 | The YARPP WordPress plugin before 5.30.3 does not validate and escape some of its shortcode attributes before using them... |
| CVE-2023-4241 | HIGH | 7.5 | 0.6% | Aug 16, 2023 | lol-html can cause panics on certain HTML inputs. Anyone processing arbitrary 3rd party HTML with the library is affecte... |
| CVE-2023-4343 | HIGH | 7.5 | 0.5% | Aug 15, 2023 | Broadcom RAID Controller web interface is vulnerable due to exposure of sensitive password information in the URL as a U... |
| CVE-2023-4339 | HIGH | 7.5 | 0.7% | Aug 15, 2023 | Broadcom RAID Controller web interface is vulnerable to exposure of private keys used for CIM stored with insecure file ... |
| CVE-2023-4335 | HIGH | 7.5 | 0.5% | Aug 15, 2023 | Broadcom RAID Controller Web server (nginx) is serving private server-side files without any authentication on Linux |
| CVE-2023-4334 | HIGH | 7.5 | 0.5% | Aug 15, 2023 | Broadcom RAID Controller Web server (nginx) is serving private files without any authentication |
| CVE-2023-4332 | HIGH | 7.5 | 0.5% | Aug 15, 2023 | Broadcom RAID Controller web interface is vulnerable due to Improper permissions on the log file |
| CVE-2023-4331 | HIGH | 7.5 | 0.3% | Aug 15, 2023 | Broadcom RAID Controller web interface is vulnerable has an insecure default TLS configuration that support obsolete and... |
| CVE-2023-4326 | HIGH | 7.5 | 0.3% | Aug 15, 2023 | Broadcom RAID Controller web interface is vulnerable has an insecure default TLS configuration that supports obsolete SH... |
| CVE-2023-38402 | HIGH | 7.1 | 0.2% | Aug 15, 2023 | A vulnerability in the HPE Aruba Networking Virtual Intranet Access (VIA) client could allow malicious users to overwrit... |
| CVE-2023-38401 | HIGH | 7.8 | 0.2% | Aug 15, 2023 | A vulnerability in the HPE Aruba Networking Virtual Intranet Access (VIA) client could allow local users to elevate priv... |
| CVE-2023-4369 | HIGH | 8.8 | 0.3% | Aug 15, 2023 | Insufficient data validation in Systems Extensions in Google Chrome on ChromeOS prior to 116.0.5845.120 allowed an attac... |
| CVE-2023-4368 | HIGH | 8.8 | 0.7% | Aug 15, 2023 | Insufficient policy enforcement in Extensions API in Google Chrome prior to 116.0.5845.96 allowed an attacker who convin... |
| CVE-2023-4366 | HIGH | 8.8 | 0.6% | Aug 15, 2023 | Use after free in Extensions in Google Chrome prior to 116.0.5845.96 allowed an attacker who convinced a user to install... |
| CVE-2023-4362 | HIGH | 8.8 | 18.5% | Aug 15, 2023 | Heap buffer overflow in Mojom IDL in Google Chrome prior to 116.0.5845.96 allowed a remote attacker who had compromised ... |
| CVE-2023-4358 | HIGH | 8.8 | 0.8% | Aug 15, 2023 | Use after free in DNS in Google Chrome prior to 116.0.5845.96 allowed a remote attacker to potentially exploit heap corr... |
| CVE-2023-4357 | HIGH | 8.8 | 45.9% | Aug 15, 2023 | Insufficient validation of untrusted input in XML in Google Chrome prior to 116.0.5845.96 allowed a remote attacker to b... |
| CVE-2023-4356 | HIGH | 8.8 | 0.8% | Aug 15, 2023 | Use after free in Audio in Google Chrome prior to 116.0.5845.96 allowed a remote attacker who has convinced a user to en... |
| CVE-2023-4355 | HIGH | 8.8 | 26.8% | Aug 15, 2023 | Out of bounds memory access in V8 in Google Chrome prior to 116.0.5845.96 allowed a remote attacker to potentially explo... |
| CVE-2023-4354 | HIGH | 8.8 | 1.6% | Aug 15, 2023 | Heap buffer overflow in Skia in Google Chrome prior to 116.0.5845.96 allowed a remote attacker who had compromised the r... |
| CVE-2023-4353 | HIGH | 8.8 | 0.9% | Aug 15, 2023 | Heap buffer overflow in ANGLE in Google Chrome prior to 116.0.5845.96 allowed a remote attacker to potentially exploit h... |
| CVE-2023-4352 | HIGH | 8.8 | 1.8% | Aug 15, 2023 | Type confusion in V8 in Google Chrome prior to 116.0.5845.96 allowed a remote attacker to potentially exploit heap corru... |
| CVE-2023-4351 | HIGH | 8.8 | 0.8% | Aug 15, 2023 | Use after free in Network in Google Chrome prior to 116.0.5845.96 allowed a remote attacker who has elicited a browser s... |
| CVE-2023-4349 | HIGH | 8.8 | 0.8% | Aug 15, 2023 | Use after free in Device Trust Connectors in Google Chrome prior to 116.0.5845.96 allowed a remote attacker to potential... |
| CVE-2023-2312 | HIGH | 8.8 | 0.8% | Aug 15, 2023 | Use after free in Offline in Google Chrome on Android prior to 116.0.5845.96 allowed a remote attacker who had compromis... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now