2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-35957 | HIGH | 7.8 | 0.4% | Jan 8, 2024 | Multiple heap-based buffer overflow vulnerabilities exist in the fstReaderIterBlocks2 VCDATA parsing functionality of GT... |
| CVE-2023-35956 | HIGH | 7.8 | 0.4% | Jan 8, 2024 | Multiple heap-based buffer overflow vulnerabilities exist in the fstReaderIterBlocks2 VCDATA parsing functionality of GT... |
| CVE-2023-35955 | HIGH | 7.8 | 0.4% | Jan 8, 2024 | Multiple heap-based buffer overflow vulnerabilities exist in the fstReaderIterBlocks2 VCDATA parsing functionality of GT... |
| CVE-2023-35704 | HIGH | 7.8 | 0.4% | Jan 8, 2024 | Multiple stack-based buffer overflow vulnerabilities exist in the FST LEB128 varint functionality of GTKWave 3.3.115. A ... |
| CVE-2023-35703 | HIGH | 7.8 | 0.4% | Jan 8, 2024 | Multiple stack-based buffer overflow vulnerabilities exist in the FST LEB128 varint functionality of GTKWave 3.3.115. A ... |
| CVE-2023-35702 | HIGH | 7.8 | 0.4% | Jan 8, 2024 | Multiple stack-based buffer overflow vulnerabilities exist in the FST LEB128 varint functionality of GTKWave 3.3.115. A ... |
| CVE-2023-35128 | HIGH | 7.8 | 0.4% | Jan 8, 2024 | An integer overflow vulnerability exists in the fstReaderIterBlocks2 time_table tsec_nitems functionality of GTKWave 3.3... |
| CVE-2023-35057 | HIGH | 7.8 | 0.4% | Jan 8, 2024 | An integer overflow vulnerability exists in the LXT2 lxt2_rd_trace value elements allocation functionality of GTKWave 3.... |
| CVE-2023-35004 | HIGH | 7.8 | 0.4% | Jan 8, 2024 | An integer overflow vulnerability exists in the VZT longest_len value allocation functionality of GTKWave 3.3.115. A spe... |
| CVE-2023-34436 | HIGH | 7.8 | 0.4% | Jan 8, 2024 | An out-of-bounds write vulnerability exists in the LXT2 num_time_table_entries functionality of GTKWave 3.3.115. A speci... |
| CVE-2023-34087 | HIGH | 7.8 | 0.4% | Jan 8, 2024 | An improper array index validation vulnerability exists in the EVCD var len parsing functionality of GTKWave 3.3.115. A ... |
| CVE-2023-32650 | HIGH | 7.8 | 0.4% | Jan 8, 2024 | An integer overflow vulnerability exists in the FST_BL_GEOM parsing maxhandle functionality of GTKWave 3.3.115, when com... |
| CVE-2023-7224 | HIGH | 7.8 | 0.2% | Jan 8, 2024 | OpenVPN Connect version 3.0 through 3.4.6 on macOS allows local users to execute code in external third party libraries ... |
| CVE-2023-51701 | HIGH | 7.5 | 0.5% | Jan 8, 2024 | fastify-reply-from is a Fastify plugin to forward the current HTTP request to another server. A reverse proxy server bui... |
| CVE-2023-6552 | MEDIUM | 6.1 | 0.5% | Jan 8, 2024 | Lack of "current" GET parameter validation during the action of changing a language leads to an open redirect vulnerabil... |
| CVE-2023-6921 | CRITICAL | 9.1 | 0.7% | Jan 8, 2024 | Blind SQL Injection vulnerability in PrestaShow Google Integrator (PrestaShop addon) allows for data extraction and modi... |
| CVE-2023-5091 | MEDIUM | 5.5 | 0.2% | Jan 8, 2024 | Use After Free vulnerability in Arm Ltd Valhall GPU Kernel Driver allows a local non-privileged user to make improper GP... |
| CVE-2023-41710 | MEDIUM | 5.4 | 0.4% | Jan 8, 2024 | User-defined script code could be stored for a upsell related shop URL. This code was not correctly sanitized when addin... |
| CVE-2023-29052 | MEDIUM | 5.4 | 0.4% | Jan 8, 2024 | Users were able to define disclaimer texts for an upsell shop dialog that would contain script code that was not sanitiz... |
| CVE-2023-29051 | HIGH | 8.1 | 0.5% | Jan 8, 2024 | User-defined OXMF templates could be used to access a limited part of the internal OX App Suite Java API. The existing s... |
| CVE-2023-29050 | CRITICAL | 9.6 | 1.7% | Jan 8, 2024 | The optional "LDAP contacts provider" could be abused by privileged users to inject LDAP filter strings that allow to ac... |
| CVE-2023-29049 | MEDIUM | 6.1 | 0.6% | Jan 8, 2024 | The "upsell" widget at the portal page could be abused to inject arbitrary script code. Attackers that manage to lure us... |
| CVE-2023-29048 | HIGH | 8.8 | 1.3% | Jan 8, 2024 | A component for parsing OXMF templates could be abused to execute arbitrary system commands that would be executed as th... |
| CVE-2023-47140 | HIGH | 8.1 | 0.2% | Jan 8, 2024 | IBM CICS Transaction Gateway 9.3 could allow a user to transfer or view files due to improper access controls. |
| CVE-2023-7215 | MEDIUM | 6.1 | 0.5% | Jan 8, 2024 | A vulnerability, which was classified as problematic, has been found in Chanzhaoyu chatgpt-web 2.11.1. This issue affect... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now