2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-26140MEDIUM6.1Versions of the package @excalidraw/excalidraw from 0.0.0 are vulnerable to Cross-site Scripting (XSS) via embedded link...
CVE-2023-20564MEDIUM6.7 Insufficient validation in the IOCTL (Input Output Control) input buffer in AMD Ryzen™ Master may permit a privil...
CVE-2023-20560MEDIUM4.4 Insufficient validation of the IOCTL (Input Output Control) input buffer in AMD Ryzen™ Master may allow a privi...
CVE-2023-39841MEDIUM4.6Missing encryption in the RFID tag of Etekcity 3-in-1 Smart Door Lock v1.0 allows attackers to create a cloned tag via b...
CVE-2023-4333MEDIUM5.5Broadcom RAID Controller web interface doesn’t enforce SSL cipher ordering by server
CVE-2023-4328MEDIUM5.5Broadcom RAID Controller web interface is vulnerable to exposure of sensitive data and the keys used for encryption are...
CVE-2023-4327MEDIUM5.5Broadcom RAID Controller web interface is vulnerable to exposure of sensitive data and the keys used for encryption are ...
CVE-2023-4367MEDIUM6.5Insufficient policy enforcement in Extensions API in Google Chrome prior to 116.0.5845.96 allowed an attacker who convin...
CVE-2023-4365MEDIUM4.3Inappropriate implementation in Fullscreen in Google Chrome prior to 116.0.5845.96 allowed a remote attacker to obfuscat...
CVE-2023-4364MEDIUM4.3Inappropriate implementation in Permission Prompts in Google Chrome prior to 116.0.5845.96 allowed a remote attacker to ...
CVE-2023-4363MEDIUM4.3Inappropriate implementation in WebShare in Google Chrome on Android prior to 116.0.5845.96 allowed a remote attacker to...
CVE-2023-4361MEDIUM5.3Inappropriate implementation in Autofill in Google Chrome on Android prior to 116.0.5845.96 allowed a remote attacker to...
CVE-2023-4360MEDIUM4.3Inappropriate implementation in Color in Google Chrome prior to 116.0.5845.96 allowed a remote attacker to obfuscate sec...
CVE-2023-4359MEDIUM5.3Inappropriate implementation in App Launcher in Google Chrome on iOS prior to 116.0.5845.96 allowed a remote attacker to...
CVE-2023-4350MEDIUM6.5Inappropriate implementation in Fullscreen in Google Chrome on Android prior to 116.0.5845.96 allowed a remote attacker ...
CVE-2023-4345MEDIUM6.5Broadcom RAID Controller web interface is vulnerable client-side control bypass leads to unauthorized data access for lo...
CVE-2023-40028MEDIUM6.5Ghost is an open source content management system. Versions prior to 5.59.1 are subject to a vulnerability which allows ...
CVE-2023-40027MEDIUM5.3Keystone is an open source headless CMS for Node.js — built with GraphQL and React. When `ui.isAccessAllowed` is set as ...
CVE-2023-38898MEDIUM5.3An issue in Python cpython v.3.7 allows an attacker to obtain sensitive information via the _asyncio._swap_current_task ...
CVE-2023-38858MEDIUM6.5Buffer Overflow vulnerability infaad2 v.2.10.1 allows a remote attacker to execute arbitrary code and cause a denial of ...
CVE-2023-38857MEDIUM5.5Buffer Overflow vulnerability infaad2 v.2.10.1 allows a remote attacker to execute arbitrary code and cause a denial of ...
CVE-2023-38856MEDIUM6.5Buffer Overflow vulnerability in libxlsv.1.6.2 allows a remote attacker to execute arbitrary code and cause a denial of ...
CVE-2023-38855MEDIUM6.5Buffer Overflow vulnerability in libxlsv.1.6.2 allows a remote attacker to execute arbitrary code and cause a denial of ...
CVE-2023-38854MEDIUM6.5Buffer Overflow vulnerability in libxlsv.1.6.2 allows a remote attacker to execute arbitrary code and cause a denial of ...
CVE-2023-38853MEDIUM6.5Buffer Overflow vulnerability in libxlsv.1.6.2 allows a remote attacker to execute arbitrary code and cause a denial of ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now