2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-1386 | HIGH | 7.8 | 0.2% | Jul 24, 2023 | A flaw was found in the 9p passthrough filesystem (9pfs) implementation in QEMU. When a local user in the guest writes a... |
| CVE-2023-3417 | HIGH | 7.5 | 0.6% | Jul 24, 2023 | Thunderbird allowed the Text Direction Override Unicode Character in filenames. An email attachment could be incorrectly... |
| CVE-2023-2761 | HIGH | 7.2 | 0.7% | Jul 24, 2023 | The User Activity Log WordPress plugin before 1.6.3 does not properly sanitise and escape the `txtsearch` parameter befo... |
| CVE-2023-38060 | HIGH | 8.8 | 0.6% | Jul 24, 2023 | Improper Input Validation vulnerability in the ContentType parameter for attachments on TicketCreate or TicketUpdate ope... |
| CVE-2023-38056 | HIGH | 7.2 | 0.8% | Jul 24, 2023 | Improper Neutralization of commands allowed to be executed via OTRS System Configuration e.g. SchedulerCronTaskModule us... |
| CVE-2023-3852 | HIGH | 7.2 | 23.2% | Jul 23, 2023 | A vulnerability was found in OpenRapid RapidCMS up to 1.3.1. It has been declared as critical. This vulnerability affect... |
| CVE-2023-28133 | HIGH | 7.8 | 5.7% | Jul 23, 2023 | Local privilege escalation in Check Point Endpoint Security Client (version E87.30) via crafted OpenSSL configuration fi... |
| CVE-2023-3842 | HIGH | 7.8 | 0.2% | Jul 23, 2023 | A vulnerability was found in Pointware EasyInventory 1.0.12.0 and classified as critical. This issue affects some unknow... |
| CVE-2023-3841 | HIGH | 8.8 | 0.2% | Jul 23, 2023 | A vulnerability has been found in NxFilter 4.3.2.5 and classified as problematic. This vulnerability affects unknown cod... |
| CVE-2023-3839 | HIGH | 7.2 | 0.6% | Jul 23, 2023 | A vulnerability, which was classified as problematic, has been found in DedeBIZ 6.2.10. Affected by this issue is some u... |
| CVE-2023-3776 | HIGH | 7.8 | 0.5% | Jul 21, 2023 | A use-after-free vulnerability in the Linux kernel's net/sched: cls_fw component can be exploited to achieve local privi... |
| CVE-2023-3611 | HIGH | 7.8 | 0.3% | Jul 21, 2023 | An out-of-bounds write vulnerability in the Linux kernel's net/sched: sch_qfq component can be exploited to achieve loca... |
| CVE-2023-3610 | HIGH | 7.8 | 0.3% | Jul 21, 2023 | A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local pr... |
| CVE-2023-3609 | HIGH | 7.8 | 0.4% | Jul 21, 2023 | A use-after-free vulnerability in the Linux kernel's net/sched: cls_u32 component can be exploited to achieve local priv... |
| CVE-2023-37918 | HIGH | 7.5 | 1.1% | Jul 21, 2023 | Dapr is a portable, event-driven, runtime for building distributed applications across cloud and edge. A vulnerability h... |
| CVE-2023-37917 | HIGH | 8.8 | 0.6% | Jul 21, 2023 | KubePi is an opensource kubernetes management panel. A normal user has permission to create/update users, they can becom... |
| CVE-2023-37916 | HIGH | 7.5 | 0.7% | Jul 21, 2023 | KubePi is an opensource kubernetes management panel. The endpoint /kubepi/api/v1/users/search?pageNum=1&&pageSize=10 lea... |
| CVE-2023-37915 | HIGH | 7.5 | 0.8% | Jul 21, 2023 | OpenDDS is an open source C++ implementation of the Object Management Group (OMG) Data Distribution Service (DDS). OpenD... |
| CVE-2023-35077 | HIGH | 7.5 | 1.5% | Jul 21, 2023 | An out-of-bounds write vulnerability on windows operating systems causes the Ivanti AntiVirus Product to crash. Update t... |
| CVE-2023-36339 | HIGH | 7.5 | 0.5% | Jul 21, 2023 | An access control issue in WebBoss.io CMS v3.7.0.1 allows attackers to access the Website Backup Tool via a crafted GET ... |
| CVE-2023-3820 | HIGH | 7.2 | 1.0% | Jul 21, 2023 | SQL Injection in GitHub repository pimcore/pimcore prior to 10.6.4. |
| CVE-2023-35086 | HIGH | 7.2 | 39.7% | Jul 21, 2023 | It is identified a format string vulnerability in ASUS RT-AX56U V2 & RT-AC86U. This vulnerability is caused by directly... |
| CVE-2023-28730 | HIGH | 7.8 | 0.2% | Jul 21, 2023 | A memory corruption vulnerability Panasonic Control FPWIN Pro versions 7.6.0.3 and all previous versions may allow arbit... |
| CVE-2023-28729 | HIGH | 7.8 | 0.2% | Jul 21, 2023 | A type confusion vulnerability in Panasonic Control FPWIN Pro versions 7.6.0.3 and all previous versions may allow arbit... |
| CVE-2023-28728 | HIGH | 7.8 | 0.3% | Jul 21, 2023 | A stack-based buffer overflow in Panasonic Control FPWIN Pro versions 7.6.0.3 and all previous versions may allow arbitr... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now