2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-30989 | HIGH | 7.8 | 0.2% | Jul 16, 2023 | IBM Performance Tools for i 7.2, 7.3, 7.4, and 7.5 contains a local privilege escalation vulnerability. A malicious act... |
| CVE-2023-30988 | HIGH | 7.8 | 0.2% | Jul 16, 2023 | The IBM i 7.2, 7.3, 7.4, and 7.5 product Facsimile Support for i contains a local privilege escalation vulnerability. A... |
| CVE-2023-38379 | HIGH | 7.5 | 0.6% | Jul 16, 2023 | The web interface on the RIGOL MSO5000 digital oscilloscope with firmware 00.01.03.00.03 allows remote attackers to chan... |
| CVE-2023-3692 | HIGH | 7.2 | 0.8% | Jul 16, 2023 | Unrestricted Upload of File with Dangerous Type in GitHub repository admidio/admidio prior to 4.2.10. |
| CVE-2023-2268 | HIGH | 7.5 | 0.6% | Jul 15, 2023 | Plane version 0.7.1 allows an unauthenticated attacker to view all stored server files of all users. |
| CVE-2023-38349 | HIGH | 8.8 | 0.3% | Jul 15, 2023 | PNP4Nagios through 81ebfc5 lacks CSRF protection in the AJAX controller. This affects 0.6.26. |
| CVE-2023-38337 | HIGH | 7.5 | 1.0% | Jul 14, 2023 | rswag before 2.10.1 allows remote attackers to read arbitrary JSON and YAML files via directory traversal, because rswag... |
| CVE-2023-37268 | HIGH | 8.8 | 0.5% | Jul 14, 2023 | Warpgate is an SSH, HTTPS and MySQL bastion host for Linux that doesn't need special client apps. When logging in as a u... |
| CVE-2023-36818 | HIGH | 7.5 | 0.6% | Jul 14, 2023 | Discourse is an open source discussion platform. In affected versions a request to create or update custom sidebar secti... |
| CVE-2023-37473 | HIGH | 8.8 | 0.8% | Jul 14, 2023 | zenstruck/collections is a set of helpers for iterating/paginating/filtering collections. Passing _callable strings_ (ie... |
| CVE-2023-37464 | HIGH | 7.5 | 0.6% | Jul 14, 2023 | OpenIDC/cjose is a C library implementing the Javascript Object Signing and Encryption (JOSE). The AES GCM decryption ro... |
| CVE-2023-37462 | HIGH | 8.8 | 91.3% | Jul 14, 2023 | XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Improper escapi... |
| CVE-2023-3633 | HIGH | 7.5 | 0.5% | Jul 14, 2023 | An out-of-bounds write vulnerability in Bitdefender Engines on Windows causes the engine to crash. This issue affects Bi... |
| CVE-2023-38325 | HIGH | 7.5 | 0.6% | Jul 14, 2023 | The cryptography package before 41.0.2 for Python mishandles SSH certificates that have critical options. |
| CVE-2023-37474 | HIGH | 7.5 | 42.8% | Jul 14, 2023 | Copyparty is a portable file server. Versions prior to 1.8.2 are subject to a path traversal vulnerability detected in t... |
| CVE-2023-36887 | HIGH | 7.8 | 1.3% | Jul 14, 2023 | Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability |
| CVE-2023-36835 | HIGH | 7.5 | 0.5% | Jul 14, 2023 | An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (PFE) of Juniper N... |
| CVE-2023-32761 | HIGH | 8 | 0.4% | Jul 14, 2023 | Cross Site Request Forgery (CSRF) vulnerability in Archer Platform before v.6.13 and fixed in v.6.12.0.6 and v.6.13.0 al... |
| CVE-2023-28985 | HIGH | 7.5 | 0.5% | Jul 14, 2023 | An Improper Validation of Syntactic Correctness of Input vulnerability in Intrusion Detection and Prevention (IDP) of Ju... |
| CVE-2023-36832 | HIGH | 7.5 | 0.5% | Jul 14, 2023 | An Improper Handling of Exceptional Conditions vulnerability in packet processing of Juniper Networks Junos OS on MX Ser... |
| CVE-2023-35692 | HIGH | 7.8 | 0.1% | Jul 14, 2023 | In getLocationCache of GeoLocation.java, there is a possible way to send a mock location during an emergency call due to... |
| CVE-2023-36831 | HIGH | 7.5 | 0.5% | Jul 14, 2023 | An Improper Check or Handling of Exceptional Conditions vulnerability in the UTM (Unified Threat Management) Web-Filteri... |
| CVE-2023-3673 | HIGH | 7.2 | 0.7% | Jul 14, 2023 | SQL Injection in GitHub repository pimcore/pimcore prior to 10.5.24. |
| CVE-2023-3514 | HIGH | 7.8 | 0.2% | Jul 14, 2023 | Improper Privilege Control in RazerCentralSerivce Named Pipe in Razer RazerCentral <=7.11.0.558 on Windows allows a mali... |
| CVE-2023-3513 | HIGH | 7.8 | 0.3% | Jul 14, 2023 | Improper Privilege Control in RazerCentralSerivce Named Pipe in Razer RazerCentral <=7.11.0.558 on Windows allows a mali... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now