2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-0579HIGH8.8The YARPP WordPress plugin before 5.30.3 does not validate and escape some of its shortcode attributes before using them...
CVE-2023-4241HIGH7.5lol-html can cause panics on certain HTML inputs. Anyone processing arbitrary 3rd party HTML with the library is affecte...
CVE-2023-4343HIGH7.5Broadcom RAID Controller web interface is vulnerable due to exposure of sensitive password information in the URL as a U...
CVE-2023-4339HIGH7.5Broadcom RAID Controller web interface is vulnerable to exposure of private keys used for CIM stored with insecure file ...
CVE-2023-4335HIGH7.5Broadcom RAID Controller Web server (nginx) is serving private server-side files without any authentication on Linux
CVE-2023-4334HIGH7.5Broadcom RAID Controller Web server (nginx) is serving private files without any authentication
CVE-2023-4332HIGH7.5Broadcom RAID Controller web interface is vulnerable due to Improper permissions on the log file
CVE-2023-4331HIGH7.5Broadcom RAID Controller web interface is vulnerable has an insecure default TLS configuration that support obsolete and...
CVE-2023-4326HIGH7.5Broadcom RAID Controller web interface is vulnerable has an insecure default TLS configuration that supports obsolete SH...
CVE-2023-38402HIGH7.1A vulnerability in the HPE Aruba Networking Virtual Intranet Access (VIA) client could allow malicious users to overwrit...
CVE-2023-38401HIGH7.8A vulnerability in the HPE Aruba Networking Virtual Intranet Access (VIA) client could allow local users to elevate priv...
CVE-2023-4369HIGH8.8Insufficient data validation in Systems Extensions in Google Chrome on ChromeOS prior to 116.0.5845.120 allowed an attac...
CVE-2023-4368HIGH8.8Insufficient policy enforcement in Extensions API in Google Chrome prior to 116.0.5845.96 allowed an attacker who convin...
CVE-2023-4366HIGH8.8Use after free in Extensions in Google Chrome prior to 116.0.5845.96 allowed an attacker who convinced a user to install...
CVE-2023-4362HIGH8.8Heap buffer overflow in Mojom IDL in Google Chrome prior to 116.0.5845.96 allowed a remote attacker who had compromised ...
CVE-2023-4358HIGH8.8Use after free in DNS in Google Chrome prior to 116.0.5845.96 allowed a remote attacker to potentially exploit heap corr...
CVE-2023-4357HIGH8.8Insufficient validation of untrusted input in XML in Google Chrome prior to 116.0.5845.96 allowed a remote attacker to b...
CVE-2023-4356HIGH8.8Use after free in Audio in Google Chrome prior to 116.0.5845.96 allowed a remote attacker who has convinced a user to en...
CVE-2023-4355HIGH8.8Out of bounds memory access in V8 in Google Chrome prior to 116.0.5845.96 allowed a remote attacker to potentially explo...
CVE-2023-4354HIGH8.8Heap buffer overflow in Skia in Google Chrome prior to 116.0.5845.96 allowed a remote attacker who had compromised the r...
CVE-2023-4353HIGH8.8Heap buffer overflow in ANGLE in Google Chrome prior to 116.0.5845.96 allowed a remote attacker to potentially exploit h...
CVE-2023-4352HIGH8.8Type confusion in V8 in Google Chrome prior to 116.0.5845.96 allowed a remote attacker to potentially exploit heap corru...
CVE-2023-4351HIGH8.8Use after free in Network in Google Chrome prior to 116.0.5845.96 allowed a remote attacker who has elicited a browser s...
CVE-2023-4349HIGH8.8Use after free in Device Trust Connectors in Google Chrome prior to 116.0.5845.96 allowed a remote attacker to potential...
CVE-2023-2312HIGH8.8Use after free in Offline in Google Chrome on Android prior to 116.0.5845.96 allowed a remote attacker who had compromis...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now