2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-23844 | HIGH | 7.2 | 3.0% | Jul 26, 2023 | The SolarWinds Platform was susceptible to the Incorrect Comparison Vulnerability. This vulnerability allows users with ... |
| CVE-2023-23843 | HIGH | 7.2 | 2.6% | Jul 26, 2023 | The SolarWinds Platform was susceptible to the Incorrect Comparison Vulnerability. This vulnerability allows users with ... |
| CVE-2023-39261 | HIGH | 7.8 | 0.3% | Jul 26, 2023 | In JetBrains IntelliJ IDEA before 2023.2 plugin for Space was requesting excessive permissions |
| CVE-2023-38672 | HIGH | 7.5 | 0.6% | Jul 26, 2023 | FPE in paddle.trace in PaddlePaddle before 2.5.0. This flaw can cause a runtime crash and a denial of service. |
| CVE-2023-38670 | HIGH | 7.5 | 0.6% | Jul 26, 2023 | Null pointer dereference in paddle.flip in PaddlePaddle before 2.5.0. This resulted in a runtime crash and denial of ser... |
| CVE-2023-28130 | HIGH | 7.2 | 21.4% | Jul 26, 2023 | Local user may lead to privilege escalation using Gaia Portal hostnames page. |
| CVE-2023-38555 | HIGH | 8.8 | 0.3% | Jul 26, 2023 | Authentication bypass vulnerability in Fujitsu network devices Si-R series and SR-M series allows a network-adjacent una... |
| CVE-2023-38433 | HIGH | 7.5 | 3.0% | Jul 26, 2023 | Fujitsu Real-time Video Transmission Gear "IP series" use hard-coded credentials, which may allow a remote unauthenticat... |
| CVE-2023-32629 | HIGH | 7.8 | 8.9% | Jul 26, 2023 | Local privilege escalation vulnerability in Ubuntu Kernels overlayfs ovl_copy_up_meta_inode_data skip permission checks ... |
| CVE-2023-2640 | HIGH | 7.8 | 15.8% | Jul 26, 2023 | On Ubuntu kernels carrying both c914c0e27eb0 and "UBUNTU: SAUCE: overlayfs: Skip permission checking for trusted.overlay... |
| CVE-2023-38493 | HIGH | 7.5 | 0.6% | Jul 25, 2023 | Armeria is a microservice framework Spring supports Matrix variables. When Spring integration is used, Armeria calls Spr... |
| CVE-2023-37907 | HIGH | 7.8 | 0.2% | Jul 25, 2023 | Cryptomator is data encryption software for users who store their files in the cloud. Prior to version 1.9.2, the MSI in... |
| CVE-2023-35943 | HIGH | 7.5 | 0.6% | Jul 25, 2023 | Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to versions 1.27.0, 1.26.4,... |
| CVE-2023-34235 | HIGH | 7.5 | 0.9% | Jul 25, 2023 | Strapi is an open-source headless content management system. Prior to version 4.10.8, it is possible to leak private fie... |
| CVE-2023-2626 | HIGH | 8.8 | 0.1% | Jul 25, 2023 | There exists an authentication bypass vulnerability in OpenThread border router devices and implementations. This issue ... |
| CVE-2023-39174 | HIGH | 7.5 | 1.4% | Jul 25, 2023 | In JetBrains TeamCity before 2023.05.2 a ReDoS attack was possible via integration with issue trackers |
| CVE-2023-39173 | HIGH | 8.8 | 0.3% | Jul 25, 2023 | In JetBrains TeamCity before 2023.05.2 a token with limited permissions could be used to gain full account access |
| CVE-2023-34093 | HIGH | 7.1 | 0.6% | Jul 25, 2023 | Strapi is an open-source headless content management system. Prior to version 4.10.8, anyone (Strapi developers, users, ... |
| CVE-2023-3486 | HIGH | 7.5 | 75.8% | Jul 25, 2023 | An authentication bypass exists in PaperCut NG versions 22.0.12 and prior that could allow a remote, unauthenticated att... |
| CVE-2023-34434 | HIGH | 7.5 | 1.3% | Jul 25, 2023 | Deserialization of Untrusted Data Vulnerability in Apache Software Foundation Apache InLong.This issue affects Apache In... |
| CVE-2023-21406 | HIGH | 8.8 | 0.3% | Jul 25, 2023 | Ariel Harush and Roy Hodir from OTORIO have found a flaw in the AXIS A1001 when communicating over OSDP. A heap-based bu... |
| CVE-2023-35067 | HIGH | 7.5 | 0.4% | Jul 25, 2023 | Plaintext Storage of a Password vulnerability in Infodrom Software E-Invoice Approval System allows Read Sensitive Strin... |
| CVE-2023-3882 | HIGH | 7.5 | 0.6% | Jul 25, 2023 | A vulnerability, which was classified as critical, has been found in Campcodes Beauty Salon Management System 1.0. Affec... |
| CVE-2023-3881 | HIGH | 7.5 | 0.6% | Jul 25, 2023 | A vulnerability classified as critical was found in Campcodes Beauty Salon Management System 1.0. Affected by this vulne... |
| CVE-2023-3880 | HIGH | 7.5 | 0.6% | Jul 25, 2023 | A vulnerability classified as critical has been found in Campcodes Beauty Salon Management System 1.0. Affected is an un... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now