2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-50344 | MEDIUM | 5.4 | 0.3% | Jan 3, 2024 | HCL DRYiCE MyXalytics is impacted by improper access control (Unauthenticated File Download) vulnerability. An unauthent... |
| CVE-2023-50343 | MEDIUM | 6.5 | 0.4% | Jan 3, 2024 | HCL DRYiCE MyXalytics is impacted by an Improper Access Control (Controller APIs) vulnerability. Certain API endpoints a... |
| CVE-2023-50342 | MEDIUM | 4.3 | 0.3% | Jan 3, 2024 | HCL DRYiCE MyXalytics is impacted by an Insecure Direct Object Reference (IDOR) vulnerability. A user can obtain certai... |
| CVE-2023-50341 | HIGH | 7.5 | 0.4% | Jan 3, 2024 | HCL DRYiCE MyXalytics is impacted by Improper Access Control (Obsolete web pages) vulnerability. Discovery of outdated a... |
| CVE-2023-45724 | CRITICAL | 9.8 | 0.5% | Jan 3, 2024 | HCL DRYiCE MyXalytics product is impacted by unauthenticated file upload vulnerability. The web application permits the ... |
| CVE-2023-45723 | CRITICAL | 9.8 | 1.0% | Jan 3, 2024 | HCL DRYiCE MyXalytics is impacted by path traversal vulnerability which allows file upload capability. Certain endpoint... |
| CVE-2023-45722 | CRITICAL | 9.8 | 0.7% | Jan 3, 2024 | HCL DRYiCE MyXalytics is impacted by path traversal arbitrary file read vulnerability because it uses external input to ... |
| CVE-2023-50351 | CRITICAL | 9.1 | 0.2% | Jan 3, 2024 | HCL DRYiCE MyXalytics is impacted by the use of an insecure key rotation mechanism which can allow an attacker to compro... |
| CVE-2023-50350 | HIGH | 7.5 | 0.2% | Jan 3, 2024 | HCL DRYiCE MyXalytics is impacted by the use of a broken cryptographic algorithm for encryption, potentially giving an a... |
| CVE-2023-50348 | MEDIUM | 5.3 | 0.3% | Jan 3, 2024 | HCL DRYiCE MyXalytics is impacted by an improper error handling vulnerability. The application returns detailed error me... |
| CVE-2023-50346 | MEDIUM | 4.3 | 0.3% | Jan 3, 2024 | HCL DRYiCE MyXalytics is impacted by an information disclosure vulnerability. Certain endpoints within the application d... |
| CVE-2023-50345 | MEDIUM | 6.1 | 0.3% | Jan 3, 2024 | HCL DRYiCE MyXalytics is impacted by an Open Redirect vulnerability which could allow an attacker to redirect users to m... |
| CVE-2023-41783 | HIGH | 7.8 | 0.6% | Jan 3, 2024 | There is a command injection vulnerability of ZTE's ZXCLOUD iRAI. Due to the program failed to adequately validate the... |
| CVE-2023-41780 | HIGH | 7.8 | 0.2% | Jan 3, 2024 | There is an unsafe DLL loading vulnerability in ZTE ZXCLOUD iRAI. Due to the program failed to adequately validate the... |
| CVE-2023-41779 | MEDIUM | 5.5 | 0.2% | Jan 3, 2024 | There is an illegal memory access vulnerability of ZTE's ZXCLOUD iRAI product.When the vulnerability is exploited by an ... |
| CVE-2023-41776 | HIGH | 7.8 | 0.2% | Jan 3, 2024 | There is a local privilege escalation vulnerability of ZTE's ZXCLOUD iRAI.Attackers with regular user privileges can cre... |
| CVE-2023-49558 | MEDIUM | 5.5 | 0.4% | Jan 3, 2024 | An issue in YASM 1.3.0.86.g9def allows a remote attacker to cause a denial of service via the expand_mmac_params functio... |
| CVE-2023-49557 | MEDIUM | 5.5 | 0.4% | Jan 3, 2024 | An issue in YASM 1.3.0.86.g9def allows a remote attacker to cause a denial of service via the yasm_section_bcs_first fun... |
| CVE-2023-49556 | MEDIUM | 5.5 | 0.4% | Jan 3, 2024 | Buffer Overflow vulnerability in YASM 1.3.0.86.g9def allows a remote attacker to cause a denial of service via the expr_... |
| CVE-2023-49555 | MEDIUM | 5.5 | 0.4% | Jan 3, 2024 | An issue in YASM 1.3.0.86.g9def allows a remote attacker to cause a denial of service via the expand_smacro function in ... |
| CVE-2023-49554 | MEDIUM | 5.5 | 0.4% | Jan 3, 2024 | Use After Free vulnerability in YASM 1.3.0.86.g9def allows a remote attacker to cause a denial of service via the do_dir... |
| CVE-2023-49553 | HIGH | 7.5 | 0.9% | Jan 2, 2024 | An issue in Cesanta mjs 2.20.0 allows a remote attacker to cause a denial of service via the mjs_destroy function in the... |
| CVE-2023-49552 | HIGH | 7.5 | 0.8% | Jan 2, 2024 | An Out of Bounds Write in Cesanta mjs 2.20.0 allows a remote attacker to cause a denial of service via the mjs_op_json_s... |
| CVE-2023-49551 | HIGH | 7.5 | 0.8% | Jan 2, 2024 | An issue in Cesanta mjs 2.20.0 allows a remote attacker to cause a denial of service via the mjs_op_json_parse function ... |
| CVE-2023-49550 | HIGH | 7.5 | 0.8% | Jan 2, 2024 | An issue in Cesanta mjs 2.20.0 allows a remote attacker to cause a denial of service via the mjs+0x4ec508 component. |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now