2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-50809 | HIGH | 7.8 | 0.4% | Aug 12, 2024 | In certain Sonos products before S1 Release 11.12 and S2 release 15.9, the mt_7615.ko wireless driver does not properly ... |
| CVE-2023-31315 | HIGH | 7.5 | 0.6% | Aug 12, 2024 | Improper validation in a model specific register (MSR) could allow a malicious program with ring0 access to modify SMM c... |
| CVE-2023-5000 | HIGH | 8.8 | 0.6% | Aug 6, 2024 | The Horizontal scrolling announcements plugin for WordPress is vulnerable to SQL Injection via the plugin's 'hsas-shortc... |
| CVE-2023-52209 | HIGH | 8 | 0.3% | Aug 1, 2024 | Improper Privilege Management vulnerability in WPForms, LLC. WPForms User Registration allows Privilege Escalation.This ... |
| CVE-2023-1577 | HIGH | 7.8 | 0.2% | Jul 31, 2024 | A path hijacking vulnerability was reported in Lenovo Driver Manager prior to version 3.1.1307.1308 that could allow a l... |
| CVE-2023-28074 | HIGH | 7.1 | 0.1% | Jul 31, 2024 | Dell BSAFE Crypto-C Micro Edition, version 4.1.5, and Dell BSAFE Micro Edition Suite, versions 4.0 through 4.6.1 and ver... |
| CVE-2023-33976 | HIGH | 7.5 | 0.4% | Jul 30, 2024 | TensorFlow is an end-to-end open source platform for machine learning. `array_ops.upper_bound` causes a segfault when no... |
| CVE-2023-42959 | HIGH | 7 | 0.1% | Jul 29, 2024 | A race condition was addressed with improved state handling. This issue is fixed in macOS Sonoma 14. An app may be able ... |
| CVE-2023-42958 | HIGH | 7.8 | 0.2% | Jul 29, 2024 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Ventura 13.4. An app may be... |
| CVE-2023-40398 | HIGH | 8.8 | 0.2% | Jul 29, 2024 | This issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.6.4, macOS Big Sur 11.7.5, macOS... |
| CVE-2023-40396 | HIGH | 7.8 | 0.2% | Jul 29, 2024 | The issue was addressed with improved memory handling. This issue is fixed in iOS 17 and iPadOS 17, macOS Sonoma 14, wat... |
| CVE-2023-50700 | HIGH | 7.8 | 0.2% | Jul 26, 2024 | Insecure Permissions vulnerability in Deepin dde-file-manager 6.0.54 and earlier allows privileged operations to be call... |
| CVE-2023-38522 | HIGH | 7.5 | 1.0% | Jul 26, 2024 | Apache Traffic Server accepts characters that are not allowed for HTTP field names and forwards malformed requests to or... |
| CVE-2023-48362 | HIGH | 8.8 | 0.8% | Jul 24, 2024 | XXE in the XML Format Plugin in Apache Drill version 1.19.0 and greater allows a user to read any file on a remote file ... |
| CVE-2023-7269 | HIGH | 7.5 | 0.2% | Jul 19, 2024 | The ArtPlacer Widget WordPress plugin before 2.21.2 does not have CSRF check in some places, and is missing sanitisation... |
| CVE-2023-50304 | HIGH | 8.2 | 0.6% | Jul 18, 2024 | IBM Engineering Requirements Management DOORS Web Access 9.7.2.8 is vulnerable to an XML External Entity Injection (XXE)... |
| CVE-2023-7272 | HIGH | 7.5 | 0.6% | Jul 17, 2024 | In Eclipse Parsson before 1.0.4 and 1.1.3, a document with a large depth of nested objects can allow an attacker to caus... |
| CVE-2023-7010 | HIGH | 8.8 | 0.4% | Jul 16, 2024 | Use after free in WebRTC in Google Chrome prior to 117.0.5938.62 allowed a remote attacker to potentially exploit heap c... |
| CVE-2023-52290 | HIGH | 8.1 | 0.6% | Jul 16, 2024 | In streampark-console the list pages(e.g: application pages), users can sort page by field. This sort field is sent from... |
| CVE-2023-49566 | HIGH | 8.8 | 0.8% | Jul 15, 2024 | In Apache Linkis <=1.5.0, due to the lack of effective filtering of parameters, an attacker configuring malicious db2... |
| CVE-2023-46801 | HIGH | 8.8 | 1.2% | Jul 15, 2024 | In Apache Linkis <= 1.5.0, data source management module, when adding Mysql data source, exists remote code execution v... |
| CVE-2023-52885 | HIGH | 7.8 | 0.2% | Jul 14, 2024 | In the Linux kernel, the following vulnerability has been resolved: SUNRPC: Fix UAF in svc_tcp_listen_data_ready() Aft... |
| CVE-2023-32472 | HIGH | 8.2 | 0.2% | Jul 10, 2024 | Dell Edge Gateway BIOS, versions 3200 and 5200, contains an out-of-bounds write vulnerability. A local authenticated mal... |
| CVE-2023-32467 | HIGH | 8.2 | 0.2% | Jul 10, 2024 | Dell Edge Gateway BIOS, versions 3200 and 5200, contains an out-of-bounds write vulnerability. A local authenticated mal... |
| CVE-2023-7062 | HIGH | 8.8 | 0.7% | Jul 10, 2024 | The Advanced File Manager Shortcodes plugin for WordPress is vulnerable to Directory Traversal in all versions up to, an... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now