2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-23347HIGH7.1HCL DRYiCE iAutomate is affected by the use of a broken cryptographic algorithm. An attacker can potentially compromise...
CVE-2023-39005HIGH7.5Insecure permissions exist for configd.socket in OPNsense Community Edition before 23.7 and Business Edition before 23.4...
CVE-2023-39003HIGH7.5OPNsense Community Edition before 23.7 and Business Edition before 23.4.2 was discovered to contain insecure permissions...
CVE-2023-38997HIGH7.2A directory traversal vulnerability in the Captive Portal templates of OPNsense Community Edition before 23.7 and Busine...
CVE-2023-23346HIGH7.1HCL DRYiCE MyCloud is affected by the use of a broken cryptographic algorithm. An attacker can potentially compromise t...
CVE-2023-40012HIGH7.5uthenticode is a small cross-platform library for partially verifying Authenticode digital signatures. Versions of uthen...
CVE-2023-3518HIGH7.3HashiCorp Consul and Consul Enterprise 1.16.0 when using JWT Auth for service mesh incorrectly allows/denies access rega...
CVE-2023-33953HIGH7.5gRPC contains a vulnerability that allows hpack table accounting errors could lead to unwanted disconnects between clien...
CVE-2023-32782HIGH7.2A command injection was identified in PRTG 23.2.84.1566 and earlier versions in the Dicom C-ECHO sensor where an authent...
CVE-2023-32781HIGH7.2A command injection vulnerability was identified in PRTG 23.2.84.1566 and earlier versions in the HL7 sensor where an au...
CVE-2023-31452HIGH8.8A cross-site request forgery (CSRF) token bypass was identified in PRTG 23.2.84.1566 and earlier versions that allows re...
CVE-2023-38212HIGH7.8Adobe Dimension version 3.4.9 is affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary c...
CVE-2023-38211HIGH7.8Adobe Dimension version 3.4.9 is affected by a Use After Free vulnerability that could result in arbitrary code executio...
CVE-2023-23574HIGH8.8A blind SQL Injection vulnerability in Nozomi Networks Guardian and CMC, due to improper input validation in the alerts_...
CVE-2023-38208HIGH7.2Adobe Commerce versions 2.4.6-p1 (and earlier), 2.4.5-p3 (and earlier) and 2.4.4-p4 (and earlier) are affected by an Imp...
CVE-2023-38207HIGH7.5Adobe Commerce versions 2.4.6-p1 (and earlier), 2.4.5-p3 (and earlier) and 2.4.4-p4 (and earlier) are affected by a XML ...
CVE-2023-24477HIGH7In certain conditions, depending on timing and the usage of the Chrome web browser, Guardian/CMC versions before 22.6.2 ...
CVE-2023-37864HIGH7.2In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote attacker with SNMPv2 write privileges...
CVE-2023-37863HIGH7.2In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote attacker with SNMPv2 write privileges...
CVE-2023-37862HIGH8.2In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 an unauthenticated remote attacker can access ...
CVE-2023-37861HIGH8.8In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 an authenticated remote attacker can execute c...
CVE-2023-37860HIGH7.5In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 a remote unauthenticated attacker can obtain t...
CVE-2023-37859HIGH7.2In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 the SNMP daemon is running with root privilege...
CVE-2023-37857HIGH7.2In PHOENIX CONTACTs WP 6xxx series web panels in versions prior to 4.0.10 an authenticated, remote attacker with admin p...
CVE-2023-2905HIGH8.8Due to a failure in validating the length of a provided MQTT_CMD_PUBLISH parsed message with a variable length header, C...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now