2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-20692 | HIGH | 7.5 | 0.4% | Jul 4, 2023 | In wlan firmware, there is possible system crash due to an uncaught exception. This could lead to remote denial of servi... |
| CVE-2023-20691 | HIGH | 7.5 | 0.4% | Jul 4, 2023 | In wlan firmware, there is possible system crash due to an integer overflow. This could lead to remote denial of service... |
| CVE-2023-20690 | HIGH | 7.5 | 0.4% | Jul 4, 2023 | In wlan firmware, there is possible system crash due to an integer overflow. This could lead to remote denial of service... |
| CVE-2023-20689 | HIGH | 7.5 | 0.4% | Jul 4, 2023 | In wlan firmware, there is possible system crash due to an integer overflow. This could lead to remote denial of service... |
| CVE-2023-25522 | HIGH | 7.8 | 0.2% | Jul 4, 2023 | NVIDIA DGX A100/A800 contains a vulnerability in SBIOS where an attacker may cause improper input validation by p... |
| CVE-2023-25521 | HIGH | 7.8 | 0.1% | Jul 4, 2023 | NVIDIA DGX A100/A800 contains a vulnerability in SBIOS where an attacker may cause execution with unnecessary privi... |
| CVE-2023-25517 | HIGH | 7.1 | 0.2% | Jul 4, 2023 | NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where a guest OS may be able to... |
| CVE-2023-25516 | HIGH | 7.1 | 0.2% | Jul 4, 2023 | NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer, where an unprivileged user can c... |
| CVE-2023-22906 | HIGH | 8.8 | 0.7% | Jul 4, 2023 | Hero Qubo HCD01_02_V1.38_20220125 devices allow TELNET access with root privileges by default, without a password. |
| CVE-2023-36377 | HIGH | 7.8 | 0.3% | Jul 3, 2023 | Buffer Overflow vulnerability in mtrojnar osslsigncode v.2.3 and before allows a local attacker to execute arbitrary cod... |
| CVE-2023-36183 | HIGH | 7.8 | 0.4% | Jul 3, 2023 | Buffer Overflow vulnerability in OpenImageIO v.2.4.12.0 and before allows a remote to execute arbitrary code and obtain ... |
| CVE-2023-36162 | HIGH | 8.8 | 0.4% | Jul 3, 2023 | Cross Site Request Forgery vulnerability in ZZCMS v.2023 and earlier allows a remote attacker to gain privileges via the... |
| CVE-2023-36609 | HIGH | 7.2 | 0.6% | Jul 3, 2023 | The affected TBox RTUs run OpenVPN with root privileges and can run user defined configuration scripts. An attacker cou... |
| CVE-2023-36815 | HIGH | 8.1 | 0.5% | Jul 3, 2023 | Sealos is a Cloud Operating System designed for managing cloud-native applications. In version 4.2.0 and prior, there is... |
| CVE-2023-36814 | HIGH | 7.5 | 0.6% | Jul 3, 2023 | Products.CMFCore are the key framework services for the Zope Content Management Framework (CMF). The use of Python's mar... |
| CVE-2023-34451 | HIGH | 8.2 | 0.7% | Jul 3, 2023 | CometBFT is a Byzantine Fault Tolerant (BFT) middleware that takes a state transition machine and replicates it on many ... |
| CVE-2023-26509 | HIGH | 7.5 | 0.8% | Jul 3, 2023 | AnyDesk 7.0.8 allows remote Denial of Service. |
| CVE-2023-36053 | HIGH | 7.5 | 2.7% | Jul 3, 2023 | In Django 3.2 before 3.2.20, 4 before 4.1.10, and 4.2 before 4.2.3, EmailValidator and URLValidator are subject to a pot... |
| CVE-2023-3314 | HIGH | 8.8 | 0.9% | Jul 3, 2023 | A vulnerability arises out of a failure to comprehensively sanitize the processing of a zip file(s). Incomplete neutral... |
| CVE-2023-3438 | HIGH | 7.8 | 0.2% | Jul 3, 2023 | An unquoted Windows search path vulnerability existed in the install the MOVE 4.10.x and earlier Windows install servic... |
| CVE-2023-3313 | HIGH | 7.8 | 0.5% | Jul 3, 2023 | An OS common injection vulnerability exists in the ESM certificate API, whereby incorrectly neutralized special element... |
| CVE-2023-30589 | HIGH | 7.5 | 3.9% | Jul 1, 2023 | The llhttp parser in the http module in Node v20.2.0 does not strictly use the CRLF sequence to delimit HTTP requests. T... |
| CVE-2023-30586 | HIGH | 7.5 | 1.3% | Jul 1, 2023 | A privilege escalation vulnerability exists in Node.js 20 that allowed loading arbitrary OpenSSL engines when the experi... |
| CVE-2023-36144 | HIGH | 7.5 | 39.7% | Jun 30, 2023 | An authentication bypass in Intelbras Switch SG 2404 MR in firmware 1.00.54 allows an unauthenticated attacker to downlo... |
| CVE-2023-3493 | HIGH | 8 | 0.4% | Jun 30, 2023 | Improper Neutralization of Formula Elements in a CSV File in GitHub repository fossbilling/fossbilling prior to 0.5.3. |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now