2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-38612LOW3.3The issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.7, iOS 16.7 and iPadOS 16.7, iOS ...
CVE-2023-38610HIGH7.1A memory corruption issue was addressed by removing the vulnerable code. This issue is fixed in macOS Sonoma 14, iOS 17 ...
CVE-2023-38607MEDIUM5.5The issue was addressed with improved handling of caches. This issue is fixed in macOS Sonoma 14. An app may be able to ...
CVE-2023-32436HIGH7.1The issue was addressed with improved bounds checks. This issue is fixed in macOS Ventura 13.3. An app may be able to ca...
CVE-2023-32424MEDIUM5.5The issue was addressed with improved memory handling. This issue is fixed in iOS 16.4 and iPadOS 16.4, watchOS 9.4. An ...
CVE-2023-32401HIGH7.8A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS Monterey 12.6.6, macOS Big S...
CVE-2023-32383HIGH7.8This issue was addressed by forcing hardened runtime on the affected binaries at the system level. This issue is fixed i...
CVE-2023-32378HIGH7.8A use-after-free issue was addressed with improved memory management. This issue is fixed in macOS Ventura 13.3, macOS B...
CVE-2023-32366HIGH7.8An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.7.5, ...
CVE-2023-28197LOW3.3An access issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Ventura 13.3, macOS Big...
CVE-2023-28185MEDIUM5.5An integer overflow was addressed through improved input validation. This issue is fixed in tvOS 16.4, macOS Big Sur 11....
CVE-2023-52064CRITICAL9.8Wuzhicms v4.1.0 was discovered to contain a SQL injection vulnerability via the $keywords parameter at /core/admin/copyf...
CVE-2023-51127HIGH7.5FLIR AX8 thermal sensor cameras up to and including 1.46.16 are vulnerable to Directory Traversal due to improper access...
CVE-2023-51126CRITICAL9.8Command injection vulnerability in /usr/www/res.php in FLIR AX8 up to 1.46.16 allows attackers to run arbitrary commands...
CVE-2023-29447MEDIUM5.3An insufficiently protected credentials vulnerability in KEPServerEX could allow an adversary to capture user credential...
CVE-2023-29446MEDIUM4.7An improper input validation vulnerability has been discovered that could allow an adversary to inject a UNC path via a ...
CVE-2023-29445HIGH7.8An uncontrolled search path element vulnerability (DLL hijacking) has been discovered that could allow a locally authent...
CVE-2023-51195Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2023-31488CRITICAL9.8Hyland Perceptive Filters releases before 2023-12-08 (e.g., 11.4.0.2647), as used in Cisco IronPort Email Security Appli...
CVE-2023-50916HIGH7.2Kyocera Device Manager before 3.1.1213.0 allows NTLM credential exposure during UNC path authentication via a crafted ch...
CVE-2023-48783MEDIUM5.4An Authorization Bypass Through User-Controlled Key vulnerability [CWE-639] affecting PortiPortal version 7.2.1 and belo...
CVE-2023-46712HIGH8.8A improper access control in Fortinet FortiPortal version 7.0.0 through 7.0.6, Fortinet FortiPortal version 7.2.0 throug...
CVE-2023-44250HIGH8.8An improper privilege management vulnerability [CWE-269] in a Fortinet FortiOS HA cluster version 7.4.0 through 7.4.1 an...
CVE-2023-37934MEDIUM6.5An allocation of resources without limits or throttling vulnerability [CWE-770] in FortiPAM 1.0 all versions allows an a...
CVE-2023-37932MEDIUM6.5An improper limitation of a pathname to a restricted directory ('path traversal') vulnerability [CWE-22] in FortiVoiceEn...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now