2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-4905 | MEDIUM | 4.3 | 0.7% | Sep 12, 2023 | Inappropriate implementation in Prompts in Google Chrome prior to 117.0.5938.62 allowed a remote attacker to spoof secur... |
| CVE-2023-4904 | MEDIUM | 4.3 | 0.6% | Sep 12, 2023 | Insufficient policy enforcement in Downloads in Google Chrome prior to 117.0.5938.62 allowed a remote attacker to bypass... |
| CVE-2023-4903 | MEDIUM | 4.3 | 0.7% | Sep 12, 2023 | Inappropriate implementation in Custom Mobile Tabs in Google Chrome on Android prior to 117.0.5938.62 allowed a remote a... |
| CVE-2023-4902 | MEDIUM | 4.3 | 0.7% | Sep 12, 2023 | Inappropriate implementation in Input in Google Chrome prior to 117.0.5938.62 allowed a remote attacker to spoof securit... |
| CVE-2023-4901 | MEDIUM | 4.3 | 0.7% | Sep 12, 2023 | Inappropriate implementation in Prompts in Google Chrome prior to 117.0.5938.62 allowed a remote attacker to potentially... |
| CVE-2023-4900 | MEDIUM | 4.3 | 0.7% | Sep 12, 2023 | Inappropriate implementation in Custom Tabs in Google Chrome on Android prior to 117.0.5938.62 allowed a remote attacker... |
| CVE-2023-41885 | MEDIUM | 5.3 | 0.5% | Sep 12, 2023 | Piccolo is an ORM and query builder which supports asyncio. In versions 0.120.0 and prior, the implementation of `BaseUs... |
| CVE-2023-39215 | MEDIUM | 6.5 | 0.9% | Sep 12, 2023 | Improper authentication in Zoom clients may allow an authenticated user to conduct a denial of service via network acces... |
| CVE-2023-39201 | MEDIUM | 6.7 | 0.2% | Sep 12, 2023 | Untrusted search path in CleanZoom before file date 07/24/2023 may allow a privileged user to conduct an escalation of p... |
| CVE-2023-21523 | MEDIUM | 5.4 | 0.3% | Sep 12, 2023 | A Stored Cross-site Scripting (XSS) vulnerability in the Management Console (User Management and ... |
| CVE-2023-21520 | MEDIUM | 5.3 | 0.4% | Sep 12, 2023 | A PII Enumeration via Credential Recovery in the Self Service (Credential Recovery) of BlackBerry... |
| CVE-2023-30962 | MEDIUM | 5.4 | 0.3% | Sep 12, 2023 | The Gotham Cerberus service was found to have a stored cross-site scripting (XSS) vulnerability that could have allowed ... |
| CVE-2023-21522 | MEDIUM | 6.1 | 0.3% | Sep 12, 2023 | A Reflected Cross-site Scripting (XSS) vulnerability in the Management Console (Reports) of BlackBerry AtHoc version 7.... |
| CVE-2023-41764 | MEDIUM | 5.5 | 1.2% | Sep 12, 2023 | Microsoft Office Spoofing Vulnerability |
| CVE-2023-38164 | MEDIUM | 5.4 | 0.9% | Sep 12, 2023 | Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability |
| CVE-2023-38160 | MEDIUM | 5.5 | 1.1% | Sep 12, 2023 | Windows TCP/IP Information Disclosure Vulnerability |
| CVE-2023-38152 | MEDIUM | 5.3 | 24.0% | Sep 12, 2023 | DHCP Server Service Information Disclosure Vulnerability |
| CVE-2023-38140 | MEDIUM | 5.5 | 1.0% | Sep 12, 2023 | Windows Kernel Information Disclosure Vulnerability |
| CVE-2023-36886 | MEDIUM | 5.4 | 0.9% | Sep 12, 2023 | Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability |
| CVE-2023-36803 | MEDIUM | 5.5 | 1.0% | Sep 12, 2023 | Windows Kernel Information Disclosure Vulnerability |
| CVE-2023-36801 | MEDIUM | 5.3 | 1.5% | Sep 12, 2023 | DHCP Server Service Information Disclosure Vulnerability |
| CVE-2023-36800 | MEDIUM | 5.4 | 0.7% | Sep 12, 2023 | Dynamics Finance and Operations Cross-site Scripting Vulnerability |
| CVE-2023-36799 | MEDIUM | 6.5 | 4.7% | Sep 12, 2023 | .NET Core and Visual Studio Denial of Service Vulnerability |
| CVE-2023-36777 | MEDIUM | 5.7 | 81.2% | Sep 12, 2023 | Microsoft Exchange Server Information Disclosure Vulnerability |
| CVE-2023-36767 | MEDIUM | 4.3 | 3.3% | Sep 12, 2023 | Microsoft Office Security Feature Bypass Vulnerability |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now