2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-30989HIGH7.8IBM Performance Tools for i 7.2, 7.3, 7.4, and 7.5 contains a local privilege escalation vulnerability. A malicious act...
CVE-2023-30988HIGH7.8The IBM i 7.2, 7.3, 7.4, and 7.5 product Facsimile Support for i contains a local privilege escalation vulnerability. A...
CVE-2023-38379HIGH7.5The web interface on the RIGOL MSO5000 digital oscilloscope with firmware 00.01.03.00.03 allows remote attackers to chan...
CVE-2023-3692HIGH7.2Unrestricted Upload of File with Dangerous Type in GitHub repository admidio/admidio prior to 4.2.10.
CVE-2023-2268HIGH7.5Plane version 0.7.1 allows an unauthenticated attacker to view all stored server files of all users.
CVE-2023-38349HIGH8.8PNP4Nagios through 81ebfc5 lacks CSRF protection in the AJAX controller. This affects 0.6.26.
CVE-2023-38337HIGH7.5rswag before 2.10.1 allows remote attackers to read arbitrary JSON and YAML files via directory traversal, because rswag...
CVE-2023-37268HIGH8.8Warpgate is an SSH, HTTPS and MySQL bastion host for Linux that doesn't need special client apps. When logging in as a u...
CVE-2023-36818HIGH7.5Discourse is an open source discussion platform. In affected versions a request to create or update custom sidebar secti...
CVE-2023-37473HIGH8.8zenstruck/collections is a set of helpers for iterating/paginating/filtering collections. Passing _callable strings_ (ie...
CVE-2023-37464HIGH7.5OpenIDC/cjose is a C library implementing the Javascript Object Signing and Encryption (JOSE). The AES GCM decryption ro...
CVE-2023-37462HIGH8.8XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Improper escapi...
CVE-2023-3633HIGH7.5An out-of-bounds write vulnerability in Bitdefender Engines on Windows causes the engine to crash. This issue affects Bi...
CVE-2023-38325HIGH7.5The cryptography package before 41.0.2 for Python mishandles SSH certificates that have critical options.
CVE-2023-37474HIGH7.5Copyparty is a portable file server. Versions prior to 1.8.2 are subject to a path traversal vulnerability detected in t...
CVE-2023-36887HIGH7.8Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
CVE-2023-36835HIGH7.5An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (PFE) of Juniper N...
CVE-2023-32761HIGH8Cross Site Request Forgery (CSRF) vulnerability in Archer Platform before v.6.13 and fixed in v.6.12.0.6 and v.6.13.0 al...
CVE-2023-28985HIGH7.5An Improper Validation of Syntactic Correctness of Input vulnerability in Intrusion Detection and Prevention (IDP) of Ju...
CVE-2023-36832HIGH7.5An Improper Handling of Exceptional Conditions vulnerability in packet processing of Juniper Networks Junos OS on MX Ser...
CVE-2023-35692HIGH7.8In getLocationCache of GeoLocation.java, there is a possible way to send a mock location during an emergency call due to...
CVE-2023-36831HIGH7.5An Improper Check or Handling of Exceptional Conditions vulnerability in the UTM (Unified Threat Management) Web-Filteri...
CVE-2023-3673HIGH7.2 SQL Injection in GitHub repository pimcore/pimcore prior to 10.5.24.
CVE-2023-3514HIGH7.8Improper Privilege Control in RazerCentralSerivce Named Pipe in Razer RazerCentral <=7.11.0.558 on Windows allows a mali...
CVE-2023-3513HIGH7.8Improper Privilege Control in RazerCentralSerivce Named Pipe in Razer RazerCentral <=7.11.0.558 on Windows allows a mali...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now