2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-37117CRITICAL9.8A heap-use-after-free vulnerability was found in live555 version 2023.05.10 while handling the SETUP.
CVE-2023-34061HIGH7.5Cloud Foundry routing release versions from v0.163.0 to v0.283.0 are vulnerable to a DOS attack. An unauthenticated att...
CVE-2023-6040HIGH7.8An out-of-bounds access vulnerability involving netfilter was reported and fixed as: f1082dd31fe4 (netfilter: nf_tables:...
CVE-2023-52339MEDIUM6.5In libebml before 1.4.5, an integer overflow in MemIOCallback.cpp can occur when reading or writing. It may result in bu...
CVE-2023-40250HIGH8.8Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in Hancom HCell on Windows allows O...
CVE-2023-36842MEDIUM6.5 An Improper Check for Unusual or Exceptional Conditions vulnerability in Juniper DHCP Daemon (jdhcpd) of Juniper Networ...
CVE-2023-51350CRITICAL9.8A spoofing attack in ujcms v.8.0.2 allows a remote attacker to obtain sensitive information and execute arbitrary code v...
CVE-2023-46474HIGH7.2File Upload vulnerability PMB v.7.4.8 allows a remote attacker to execute arbitrary code and escalate privileges via a c...
CVE-2023-7226MEDIUM6.5A vulnerability was found in meetyoucrop big-whale 1.1 and classified as critical. Affected by this issue is some unknow...
CVE-2023-50129MEDIUM6.5Missing encryption in the NFC tags of the Flient Smart Door Lock v1.0 allows attackers to create a cloned tag via brief ...
CVE-2023-50128MEDIUM5.3The remote keyless system of the Hozard alarm system (alarmsystemen) v1.0 sends an identical radio frequency signal for ...
CVE-2023-50127MEDIUM5.9Hozard alarm system (Alarmsysteem) v1.0 is vulnerable to Improper Authentication. Commands sent via the SMS functionalit...
CVE-2023-50126MEDIUM6.5Missing encryption in the RFID tags of the Hozard alarm system (Alarmsysteem) v1.0 allow attackers to create a cloned ta...
CVE-2023-50125MEDIUM5.9A default engineer password set on the Hozard alarm system (Alarmsysteem) v1.0 allows an attacker to bring the alarm sys...
CVE-2023-50124MEDIUM6.8Flient Smart Door Lock v1.0 is vulnerable to Use of Default Credentials. Due to default credentials on a debug interface...
CVE-2023-50123HIGH8.1The number of attempts to bring the Hozard Alarm system (alarmsystemen) v1.0 to a disarmed state is not limited. This co...
CVE-2023-51782HIGH7An issue was discovered in the Linux kernel before 6.6.8. rose_ioctl in net/rose/af_rose.c has a use-after-free because ...
CVE-2023-51781HIGH7An issue was discovered in the Linux kernel before 6.6.8. atalk_ioctl in net/appletalk/ddp.c has a use-after-free becaus...
CVE-2023-51780HIGH7An issue was discovered in the Linux kernel before 6.6.8. do_vcc_ioctl in net/atm/ioctl.c has a use-after-free because o...
CVE-2023-50671HIGH7.8In exiftags 1.01, nikon_prop1 in nikon.c has a heap-based buffer overflow (write of size 28) because snprintf can write ...
CVE-2023-6554MEDIUM6.5When access to the "admin" folder is not protected by some external authorization mechanisms e.g. Apache Basic Auth, it ...
CVE-2023-5118MEDIUM5.4The application is vulnerable to Stored Cross-Site Scripting (XSS) in the endpoint /sofer/DocumentService.asc/SaveAnnota...
CVE-2023-51989Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2025-51987. Reason: This candidate is a reservation d...
CVE-2023-51987CRITICAL9.8D-Link DIR-822+ V1.0.2 contains a login bypass in the HNAP1 interface, which allows attackers to log in to administrator...
CVE-2023-51984CRITICAL9.8D-Link DIR-822+ V1.0.2 was found to contain a command injection in SetStaticRouteSettings function. allows remote attack...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now