2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-23844HIGH7.2The SolarWinds Platform was susceptible to the Incorrect Comparison Vulnerability. This vulnerability allows users with ...
CVE-2023-23843HIGH7.2The SolarWinds Platform was susceptible to the Incorrect Comparison Vulnerability. This vulnerability allows users with ...
CVE-2023-39261HIGH7.8In JetBrains IntelliJ IDEA before 2023.2 plugin for Space was requesting excessive permissions
CVE-2023-38672HIGH7.5FPE in paddle.trace in PaddlePaddle before 2.5.0. This flaw can cause a runtime crash and a denial of service.
CVE-2023-38670HIGH7.5Null pointer dereference in paddle.flip in PaddlePaddle before 2.5.0. This resulted in a runtime crash and denial of ser...
CVE-2023-28130HIGH7.2Local user may lead to privilege escalation using Gaia Portal hostnames page.
CVE-2023-38555HIGH8.8Authentication bypass vulnerability in Fujitsu network devices Si-R series and SR-M series allows a network-adjacent una...
CVE-2023-38433HIGH7.5Fujitsu Real-time Video Transmission Gear "IP series" use hard-coded credentials, which may allow a remote unauthenticat...
CVE-2023-32629HIGH7.8Local privilege escalation vulnerability in Ubuntu Kernels overlayfs ovl_copy_up_meta_inode_data skip permission checks ...
CVE-2023-2640HIGH7.8On Ubuntu kernels carrying both c914c0e27eb0 and "UBUNTU: SAUCE: overlayfs: Skip permission checking for trusted.overlay...
CVE-2023-38493HIGH7.5Armeria is a microservice framework Spring supports Matrix variables. When Spring integration is used, Armeria calls Spr...
CVE-2023-37907HIGH7.8Cryptomator is data encryption software for users who store their files in the cloud. Prior to version 1.9.2, the MSI in...
CVE-2023-35943HIGH7.5Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to versions 1.27.0, 1.26.4,...
CVE-2023-34235HIGH7.5Strapi is an open-source headless content management system. Prior to version 4.10.8, it is possible to leak private fie...
CVE-2023-2626HIGH8.8There exists an authentication bypass vulnerability in OpenThread border router devices and implementations. This issue ...
CVE-2023-39174HIGH7.5In JetBrains TeamCity before 2023.05.2 a ReDoS attack was possible via integration with issue trackers
CVE-2023-39173HIGH8.8In JetBrains TeamCity before 2023.05.2 a token with limited permissions could be used to gain full account access
CVE-2023-34093HIGH7.1Strapi is an open-source headless content management system. Prior to version 4.10.8, anyone (Strapi developers, users, ...
CVE-2023-3486HIGH7.5An authentication bypass exists in PaperCut NG versions 22.0.12 and prior that could allow a remote, unauthenticated att...
CVE-2023-34434HIGH7.5Deserialization of Untrusted Data Vulnerability in Apache Software Foundation Apache InLong.This issue affects Apache In...
CVE-2023-21406HIGH8.8Ariel Harush and Roy Hodir from OTORIO have found a flaw in the AXIS A1001 when communicating over OSDP. A heap-based bu...
CVE-2023-35067HIGH7.5Plaintext Storage of a Password vulnerability in Infodrom Software E-Invoice Approval System allows Read Sensitive Strin...
CVE-2023-3882HIGH7.5A vulnerability, which was classified as critical, has been found in Campcodes Beauty Salon Management System 1.0. Affec...
CVE-2023-3881HIGH7.5A vulnerability classified as critical was found in Campcodes Beauty Salon Management System 1.0. Affected by this vulne...
CVE-2023-3880HIGH7.5A vulnerability classified as critical has been found in Campcodes Beauty Salon Management System 1.0. Affected is an un...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now