2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-30917HIGH7.8In DMService, there is a possible missing permission check. This could lead to local escalation of privilege with no add...
CVE-2023-30916HIGH7.8In DMService, there is a possible missing permission check. This could lead to local escalation of privilege with no add...
CVE-2023-29414HIGH7.8 A CWE-120: Buffer Copy without Checking Size of Input (Classic Buffer Overflow) vulnerability exists that could cause u...
CVE-2023-37199HIGH7.2 A CWE-94: Improper Control of Generation of Code ('Code Injection') vulnerability exists that could cause remote code e...
CVE-2023-32200HIGH8.8There is insufficient restrictions of called script functions in Apache Jena versions 4.8.0 and earlier. It allows a r...
CVE-2023-2763HIGH7.8Use-After-Free, Out-of-bounds Write and Heap-based Buffer Overflow vulnerabilities exist in the DWG and DXF file reading...
CVE-2023-2762HIGH7.8A Use-After-Free vulnerability in SLDPRT file reading procedure exists in SOLIDWORKS Desktop from Release SOLIDWORKS 202...
CVE-2023-37198HIGH7.2 A CWE-94: Improper Control of Generation of Code ('Code Injection') vulnerability exists that could cause remote co...
CVE-2023-37197HIGH8.8 A CWE-89: Improper Neutralization of Special Elements vulnerability used in an SQL Command ('SQL Injection') vulnerab...
CVE-2023-37196HIGH8.8 A CWE-89: Improper Neutralization of Special Elements vulnerability used in an SQL Command ('SQL Injection') vulnerabil...
CVE-2023-3525HIGH7.5The Getnet Argentina para Woocommerce plugin for WordPress is vulnerable to authorization bypass due to missing validati...
CVE-2023-3105HIGH8.8The LearnDash LMS plugin for WordPress is vulnerable to Insecure Direct Object References in versions up to, and includi...
CVE-2023-3023HIGH7.2The WP EasyCart plugin for WordPress is vulnerable to time-based SQL Injection via the ‘orderby’ parameter in versions u...
CVE-2023-3011HIGH8.8The ARMember plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 4.0.5. T...
CVE-2023-24492HIGH8.8 A vulnerability has been discovered in the Citrix Secure Access client for Ubuntu which, if exploited, could allow an a...
CVE-2023-24491HIGH7.8 A vulnerability has been discovered in the Citrix Secure Access client for Windows which, if exploited, could allow ...
CVE-2023-29984HIGH7.5Null pointer dereference vulnerability exists in multiple vendors MFPs and printers which implement Debut web server 1.2...
CVE-2023-36884HIGH7.5Windows Search Remote Code Execution Vulnerability
CVE-2023-36874HIGH7.8Windows Error Reporting Service Elevation of Privilege Vulnerability
CVE-2023-36867HIGH7.8Visual Studio Code GitHub Pull Requests and Issues Extension Remote Code Execution Vulnerability
CVE-2023-36538HIGH7.8Improper access control in Zoom Rooms for Windows before version 5.15.0 may allow an authenticated user to enable an esc...
CVE-2023-36537HIGH7.8Improper privilege management in Zoom Rooms for Windows before version 5.14.5 may allow an authenticated user to enable ...
CVE-2023-36536HIGH7.8 Untrusted search path in the installer for Zoom Rooms for Windows before version 5.15.0 may allow an authenticated user...
CVE-2023-35374HIGH7.8Paint 3D Remote Code Execution Vulnerability
CVE-2023-35364HIGH8.8Windows Kernel Elevation of Privilege Vulnerability

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now