2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-47997MEDIUM6.5An issue discovered in BitmapAccess.cpp::FreeImage_AllocateBitmap in FreeImage 3.18.0 leads to an infinite loop and allo...
CVE-2023-47996MEDIUM6.5An integer overflow vulnerability in Exif.cpp::jpeg_read_exif_dir in FreeImage 3.18.0 allows attackers to obtain informa...
CVE-2023-47995MEDIUM6.5Memory Allocation with Excessive Size Value discovered in BitmapAccess.cpp::FreeImage_AllocateBitmap in FreeImage 3.18.0...
CVE-2023-47994HIGH8.8An integer overflow vulnerability in LoadPixelDataRLE4 function in PluginBMP.cpp in Freeimage 3.18.0 allows attackers to...
CVE-2023-47993MEDIUM6.5A Buffer out-of-bound read vulnerability in Exif.cpp::ReadInt32 in FreeImage 3.18.0 allows attackers to cause a denial-o...
CVE-2023-47992HIGH8.8An integer overflow vulnerability in FreeImageIO.cpp::_MemoryReadProc in FreeImage 3.18.0 allows attackers to obtain sen...
CVE-2023-3043HIGH8.8 AMI’s SPx contains a vulnerability in the BMC where an Attacker may cause a stack-based buffer overflow via an ...
CVE-2023-37297HIGH8.8 AMI’s SPx contains a vulnerability in the BMC where an Attacker may cause a heap memory corruption via an adjacent netw...
CVE-2023-37296HIGH8.8 AMI’s SPx contains a vulnerability in the BMC where an Attacker may cause a stack memory corruption via an adjacent n...
CVE-2023-37295HIGH8.8 AMI’s SPx contains a vulnerability in the BMC where an Attacker may cause a heap memory corruption via an adjacent ...
CVE-2023-37294HIGH8.8 AMI’s SPx contains a vulnerability in the BMC where an Attacker may cause a heap memory corruption via an adjacen...
CVE-2023-37293HIGH8.8AMI’s SPx contains a vulnerability in the BMC where an Attacker may cause a stack-based buffer overflow via an adjacent ...
CVE-2023-34333HIGH7.8 AMI’s SPx contains a vulnerability in the BMC where an Attacker may cause an untrusted pointer to dereference...
CVE-2023-34332HIGH7.8 AMI’s SPx contains a vulnerability in the BMC where an Attacker may cause an untrusted pointer to dereference...
CVE-2023-6476HIGH7.5A flaw was found in CRI-O that involves an experimental annotation leading to a container being unconfined. This may all...
CVE-2023-5770MEDIUM5.4Proofpoint Enterprise Protection contains a vulnerability in the email delivery agent that allows an unauthenticated att...
CVE-2023-50136MEDIUM5.4Cross Site Scripting (XSS) vulnerability in JFinalcms 5.0.0 allows attackers to run arbitrary code via the name field wh...
CVE-2023-38827MEDIUM6.1Cross Site Scripting vulnerability in Follet School Solutions Destiny v.20_0_1_AU4 and later allows a remote attacker to...
CVE-2023-7032HIGH7.8 A CWE-502: Deserialization of untrusted data vulnerability exists that could allow an attacker logged in with a user le...
CVE-2023-6129MEDIUM6.5Issue summary: The POLY1305 MAC (message authentication code) implementation contains a bug that might corrupt the inter...
CVE-2023-7223MEDIUM6.5A vulnerability classified as problematic has been found in Totolink T6 4.1.9cu.5241_B20210923. This affects an unknown ...
CVE-2023-7222CRITICAL9.8A vulnerability was found in Totolink X2000R 1.0.0-B20221212.1452. It has been declared as critical. This vulnerability ...
CVE-2023-7221CRITICAL9.8A vulnerability was found in Totolink T6 4.1.9cu.5241_B20210923. It has been classified as critical. This affects the fu...
CVE-2023-5376CRITICAL9.1An Improper Authentication vulnerability in Korenix JetNet TFTP allows abuse of this service. This issue affects JetNet ...
CVE-2023-5347CRITICAL9.1An Improper Verification of Cryptographic Signature vulnerability in the update process of Korenix JetNet Series allows ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now