2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-53750 | — | — | 0.2% | Dec 8, 2025 | In the Linux kernel, the following vulnerability has been resolved: pinctrl: freescale: Fix a memory out of bounds when... |
| CVE-2023-53749 | — | — | — | Dec 8, 2025 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2023-53748 | HIGH | 7.1 | 0.2% | Dec 8, 2025 | In the Linux kernel, the following vulnerability has been resolved: media: mediatek: vcodec: Fix potential array out-of... |
| CVE-2023-53747 | HIGH | 7.8 | 0.2% | Dec 8, 2025 | In the Linux kernel, the following vulnerability has been resolved: vc_screen: reload load of struct vc_data pointer in... |
| CVE-2023-53746 | — | — | 0.2% | Dec 8, 2025 | In the Linux kernel, the following vulnerability has been resolved: s390/vfio-ap: fix memory leak in vfio_ap device dri... |
| CVE-2023-53745 | — | — | 0.2% | Dec 8, 2025 | In the Linux kernel, the following vulnerability has been resolved: um: vector: Fix memory leak in vector_config If th... |
| CVE-2023-53744 | — | — | 0.2% | Dec 8, 2025 | In the Linux kernel, the following vulnerability has been resolved: soc: ti: pm33xx: Fix refcount leak in am33xx_pm_pro... |
| CVE-2023-53743 | — | — | 0.2% | Dec 8, 2025 | In the Linux kernel, the following vulnerability has been resolved: PCI: Free released resource after coalescing relea... |
| CVE-2023-53742 | — | — | 0.2% | Dec 8, 2025 | In the Linux kernel, the following vulnerability has been resolved: kcsan: Avoid READ_ONCE() in read_instrumented_memor... |
| CVE-2023-53735 | MEDIUM | 5.3 | 0.3% | Dec 4, 2025 | WEBIGniter 28.7.23 contains a cross-site scripting vulnerability in the user creation process that allows unauthenticate... |
| CVE-2023-53734 | HIGH | 8.7 | 0.4% | Dec 4, 2025 | dawa-pharma-1.0 allows unauthenticated attackers to execute SQL queries on the server, allowing them to access sensitive... |
| CVE-2023-7330 | CRITICAL | 9.3 | 0.5% | Nov 24, 2025 | Ruijie NBR series routers contain an unauthenticated arbitrary file upload vulnerability via /ddi/server/fileupload.php.... |
| CVE-2023-7328 | MEDIUM | 5.3 | 0.3% | Nov 14, 2025 | Screen SFT DAB 600/C firmware versions up to and including 1.9.3 contain an improper access control on the user manageme... |
| CVE-2023-7329 | HIGH | 8.7 | 0.8% | Nov 12, 2025 | Tinycontrol LAN Controller v3 (LK3) firmware versions up to 1.58a (hardware v3.8) contain a missing authentication vulne... |
| CVE-2023-7327 | HIGH | 8.7 | 2.0% | Nov 12, 2025 | Ozeki SMS Gateway versions up to and including 10.3.208 contain a path traversal vulnerability. Successful exploitation ... |
| CVE-2023-7326 | HIGH | 8.7 | 0.5% | Nov 12, 2025 | The Epson Stylus SX510W embedded web management service fails to properly handle consecutive ampersand characters in que... |
| CVE-2023-43000 | HIGH | 8.8 | 3.9% | Nov 5, 2025 | A use-after-free issue was addressed with improved memory management. This issue is fixed in macOS Ventura 13.5, iOS 16.... |
| CVE-2023-7325 | CRITICAL | 9.3 | 0.4% | Oct 30, 2025 | Anheng Mingyu Operation and Maintenance Audit and Risk Control System up to 2023-08-10 contains a server-side request fo... |
| CVE-2023-7323 | MEDIUM | 5.4 | 0.5% | Oct 30, 2025 | Nagios Log Server versions prior to 2024R1 are vulnerable to cross-site scripting (XSS) via the Create User function. In... |
| CVE-2023-7322 | HIGH | 8.1 | 1.0% | Oct 30, 2025 | Nagios Log Server versions prior to 2024R1 contain an incorrect authorization vulnerability. Users who lacked the requir... |
| CVE-2023-7321 | MEDIUM | 5.4 | 0.5% | Oct 30, 2025 | Nagios Log Server versions prior to 2.1.14 are vulnerable to cross-site scripting (XSS) via the Snapshots Page. Untruste... |
| CVE-2023-7319 | MEDIUM | 5.4 | 0.5% | Oct 30, 2025 | Nagios Network Analyzer versions prior to 2024R1 are vulnerable to cross-site scripting (XSS) via the Percentile Calcula... |
| CVE-2023-7318 | MEDIUM | 5.4 | 0.5% | Oct 30, 2025 | Nagios XI versions prior to < 2024R1.0.2 are vulnerable to cross-site scripting (XSS) via the Nagios Core Command Expans... |
| CVE-2023-7317 | HIGH | 8.8 | 1.5% | Oct 30, 2025 | Nagios XI versions prior to 2024R1 contain a missing access control vulnerability via the Web SSH Terminal. A remote, lo... |
| CVE-2023-7316 | MEDIUM | 5.4 | 0.5% | Oct 30, 2025 | Nagios XI versions prior to 2024R1 are vulnerable to cross-site scripting (XSS) via the Graph Explorer component. Insuff... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now