2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-36623 | HIGH | 7.8 | 0.3% | Jul 5, 2023 | The root password of the Loxone Miniserver Go Gen.2 before 14.2 is calculated using hard-coded secrets and the MAC addre... |
| CVE-2023-36622 | HIGH | 7.2 | 1.0% | Jul 5, 2023 | The websocket configuration endpoint of the Loxone Miniserver Go Gen.2 before 14.1.5.9 allows remote authenticated admin... |
| CVE-2023-34457 | HIGH | 7.5 | 0.9% | Jul 5, 2023 | MechanicalSoup is a Python library for automating interaction with websites. Starting in version 0.2.0 and prior to vers... |
| CVE-2023-35001 | HIGH | 7.8 | 2.2% | Jul 5, 2023 | Linux Kernel nftables Out-Of-Bounds Read/Write Vulnerability; nft_byteorder poorly handled vm register contents when CAP... |
| CVE-2023-34473 | HIGH | 8.8 | 0.4% | Jul 5, 2023 | AMI SPx contains a vulnerability in the BMC where a valid user may cause a use of hard-coded credentials. A successful ... |
| CVE-2023-34471 | HIGH | 8.1 | 0.3% | Jul 5, 2023 | AMI SPx contains a vulnerability in the BMC where a user may cause a missing cryptographic step by generating a hash-b... |
| CVE-2023-34337 | HIGH | 8.8 | 0.2% | Jul 5, 2023 | AMI SPx contains a vulnerability in the BMC where a user may cause an inadequate encryption strength by hash-based mess... |
| CVE-2023-31248 | HIGH | 7.8 | 2.2% | Jul 5, 2023 | Linux Kernel nftables Use-After-Free Local Privilege Escalation Vulnerability; `nft_chain_lookup_byid()` failed to check... |
| CVE-2023-30607 | HIGH | 8.8 | 0.2% | Jul 5, 2023 | icingaweb2-module-jira provides integration with Atlassian Jira. Starting in version 1.3.0 and prior to version 1.3.2, t... |
| CVE-2023-36933 | HIGH | 7.5 | 72.2% | Jul 5, 2023 | In Progress MOVEit Transfer before 2021.0.9 (13.0.9), 2021.1.7 (13.1.7), 2022.0.7 (14.0.7), 2022.1.8 (14.1.8), and 2023.... |
| CVE-2023-36932 | HIGH | 8.1 | 81.5% | Jul 5, 2023 | In Progress MOVEit Transfer before 2020.1.11 (12.1.11), 2021.0.9 (13.0.9), 2021.1.7 (13.1.7), 2022.0.7 (14.0.7), 2022.1.... |
| CVE-2023-31194 | HIGH | 7.8 | 0.4% | Jul 5, 2023 | An improper array index validation vulnerability exists in the GraphPlanar::Write functionality of Diagon v1.0.139. A sp... |
| CVE-2023-27390 | HIGH | 7.8 | 0.5% | Jul 5, 2023 | A heap-based buffer overflow vulnerability exists in the Sequence::DrawText functionality of Diagon v1.0.139. A speciall... |
| CVE-2023-35979 | HIGH | 7.5 | 0.5% | Jul 5, 2023 | There is an unauthenticated buffer overflow vulnerability in the process controlling the ArubaOS web-based management in... |
| CVE-2023-35975 | HIGH | 8.1 | 0.6% | Jul 5, 2023 | An authenticated path traversal vulnerability exists in the ArubaOS command line interface. Successful exploitation of t... |
| CVE-2023-35974 | HIGH | 7.2 | 1.2% | Jul 5, 2023 | Authenticated command injection vulnerabilities exist in the ArubaOS command line interface. Successful exploitation of ... |
| CVE-2023-35973 | HIGH | 7.2 | 1.2% | Jul 5, 2023 | Authenticated command injection vulnerabilities exist in the ArubaOS command line interface. Successful exploitation of ... |
| CVE-2023-35972 | HIGH | 7.2 | 1.2% | Jul 5, 2023 | An authenticated remote command injection vulnerability exists in the ArubaOS web-based management interface. Successful... |
| CVE-2023-3089 | HIGH | 7.5 | 0.4% | Jul 5, 2023 | A compliance problem was found in the Red Hat OpenShift Container Platform. Red Hat discovered that, when FIPS mode was ... |
| CVE-2023-37212 | HIGH | 8.8 | 0.5% | Jul 5, 2023 | Memory safety bugs present in Firefox 114. Some of these bugs showed evidence of memory corruption and we presume that w... |
| CVE-2023-37211 | HIGH | 8.8 | 0.7% | Jul 5, 2023 | Memory safety bugs present in Firefox 114, Firefox ESR 102.12, and Thunderbird 102.12. Some of these bugs showed evidenc... |
| CVE-2023-37209 | HIGH | 8.8 | 0.5% | Jul 5, 2023 | A use-after-free condition existed in `NotifyOnHistoryReload` where a `LoadingSessionHistoryEntry` object was freed and ... |
| CVE-2023-37203 | HIGH | 7.8 | 0.3% | Jul 5, 2023 | Insufficient validation in the Drag and Drop API in conjunction with social engineering, may have allowed an attacker to... |
| CVE-2023-2880 | HIGH | 7.5 | 0.7% | Jul 5, 2023 | Frauscher Sensortechnik GmbH FDS001 for FAdC/FAdCi v1.3.3 and all previous versions are vulnerable to a path traversal v... |
| CVE-2023-37208 | HIGH | 7.8 | 0.3% | Jul 5, 2023 | When opening Diagcab files, Firefox did not warn the user that these files may contain malicious code. This vulnerabilit... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now