2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-45038HIGH8.8An improper authentication vulnerability has been reported to affect Music Station. If exploited, the vulnerability coul...
CVE-2023-39300HIGH7.2An OS command injection vulnerability has been reported to affect legacy QTS. If exploited, the vulnerability could allo...
CVE-2023-39298HIGH7.8A missing authorization vulnerability has been reported to affect several QNAP operating system versions. If exploited, ...
CVE-2023-34979HIGH7.2An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, ...
CVE-2023-34974HIGH8.8An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, ...
CVE-2023-52916HIGH7.8In the Linux kernel, the following vulnerability has been resolved: media: aspeed: Fix memory overwrite if timing is 16...
CVE-2023-49233HIGH8.8Insufficient access checks in Visual Planning Admin Center 8 before v.1 Build 240207 allow attackers in possession of a ...
CVE-2023-43078HIGH7.3Dell Dock Firmware and Dell Client Platform contain an Improper Link Resolution vulnerability during installation result...
CVE-2023-45896HIGH7.1ntfs3 in the Linux kernel through 6.8.0 allows a physically proximate attacker to read kernel memory by mounting a files...
CVE-2023-26315HIGH8.8The Xiaomi router AX9000 has a post-authentication command injection vulnerability. This vulnerability is caused by the ...
CVE-2023-7260HIGH7.5Path Traversal vulnerability discovered in OpenText™ CX-E Voice, affecting all version through 22.4. The vulnerability...
CVE-2023-29929HIGH7.5Buffer Overflow vulnerability found in Kemptechnologies Loadmaster before v.7.2.60.0 allows a remote attacker to casue a...
CVE-2023-49198HIGH7.5Mysql security vulnerability in Apache SeaTunnel. Attackers can read files on the MySQL server by modifying the informa...
CVE-2023-22576HIGH7.8Dell Repository Manager version 3.4.2 and earlier, contain a Local Privilege Escalation Vulnerability in Installation mo...
CVE-2023-52906HIGH7.8In the Linux kernel, the following vulnerability has been resolved: net/sched: act_mpls: Fix warning during failed attr...
CVE-2023-3419HIGH7.2The tagDiv Opt-In Builder plugin is vulnerable to Blind SQL Injection via the 'couponId' parameter of the 'recreate_stri...
CVE-2023-3416HIGH7.2The tagDiv Opt-In Builder plugin is vulnerable to Blind SQL Injection via the 'subscriptionCouponId' parameter via the '...
CVE-2023-50314HIGH7.5IBM WebSphere Application Server Liberty 17.0.0.3 through 24.0.0.8 could allow an attacker with access to the network to...
CVE-2023-49144HIGH8.1Out of bounds read in OpenBMC Firmware for some Intel(R) Server Platforms before versions egs-1.15-0, bhs-0.27 may allow...
CVE-2023-49141HIGH7.8Improper isolation in some Intel(R) Processors stream cache mechanism may allow an authenticated user to potentially ena...
CVE-2023-42667HIGH7.8Improper isolation in the Intel(R) Core(TM) Ultra Processor stream cache mechanism may allow an authenticated user to po...
CVE-2023-31349HIGH7.8Incorrect default permissions in the AMD μProf installation directory could allow an attacker to achieve privilege escal...
CVE-2023-31348HIGH7.8A DLL hijacking vulnerability in AMD μProf could allow an attacker to achieve privilege escalation, potentially resultin...
CVE-2023-7066HIGH7.8The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially ...
CVE-2023-48171HIGH8.8An issue in OWASP DefectDojo before v.1.5.3.1 allows a remote attacker to escalate privileges via the user permissions c...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now