2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-27392 | MEDIUM | 4.4 | 0.2% | Aug 11, 2023 | Incorrect default permissions in the Intel(R) Support android application before version v23.02.07 may allow a privilege... |
| CVE-2023-27391 | MEDIUM | 6.7 | 0.2% | Aug 11, 2023 | Improper access control in some Intel(R) oneAPI Toolkit and component software installers before version 4.3.1.493 may a... |
| CVE-2023-23908 | MEDIUM | 4.4 | 0.3% | Aug 11, 2023 | Improper access control in some 3rd Generation Intel(R) Xeon(R) Scalable processors may allow a privileged user to poten... |
| CVE-2023-22840 | MEDIUM | 5.5 | 0.4% | Aug 11, 2023 | Improper neutralization in software for the Intel(R) oneVPL GPU software before version 22.6.5 may allow an authenticate... |
| CVE-2023-22449 | MEDIUM | 6.7 | 0.2% | Aug 11, 2023 | Improper input validation in some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable escalatio... |
| CVE-2023-22444 | MEDIUM | 4.4 | 0.2% | Aug 11, 2023 | Improper initialization in some Intel(R) NUC 13 Extreme Compute Element, Intel(R) NUC 13 Extreme Kit, Intel(R) NUC 11 Pe... |
| CVE-2023-22356 | MEDIUM | 4.4 | 0.2% | Aug 11, 2023 | Improper initialization in some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable information... |
| CVE-2023-22338 | MEDIUM | 5.5 | 0.3% | Aug 11, 2023 | Out-of-bounds read in some Intel(R) oneVPL GPU software before version 22.6.5 may allow an authenticated user to potenti... |
| CVE-2023-22330 | MEDIUM | 4.4 | 0.2% | Aug 11, 2023 | Use of uninitialized resource in some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable infor... |
| CVE-2023-22276 | MEDIUM | 4.7 | 0.1% | Aug 11, 2023 | Race condition in firmware for some Intel(R) Ethernet Controllers and Adapters E810 Series before version 1.7.2.4 may al... |
| CVE-2023-37513 | MEDIUM | 5.5 | 0.2% | Aug 11, 2023 | When the app is put to the background and the user goes to the task switcher of iOS, the app snapshot is not blurred whi... |
| CVE-2023-37512 | MEDIUM | 5.5 | 0.2% | Aug 11, 2023 | When the app is put to the background and the user goes to the task switcher of iOS, the app snapshot is not blurred whi... |
| CVE-2023-37511 | MEDIUM | 4.3 | 0.3% | Aug 11, 2023 | If certain App Transport Security (ATS) settings are set in a certain manner, insecure loading of web content can be ach... |
| CVE-2023-40235 | MEDIUM | 6.5 | 0.7% | Aug 10, 2023 | An NTLM Hash Disclosure was discovered in ArchiMate Archi before 5.1.0. When parsing the XMLNS value of an ArchiMate pro... |
| CVE-2023-38333 | MEDIUM | 6.1 | 2.0% | Aug 10, 2023 | Zoho ManageEngine Applications Manager through 16530 allows reflected XSS while logged in. |
| CVE-2023-40224 | MEDIUM | 6.1 | 0.4% | Aug 10, 2023 | MISP 2.4.174 allows XSS in app/View/Events/index.ctp. |
| CVE-2023-40014 | MEDIUM | 5.3 | 0.6% | Aug 10, 2023 | OpenZeppelin Contracts is a library for secure smart contract development. Starting in version 4.0.0 and prior to versio... |
| CVE-2023-37625 | MEDIUM | 5.4 | 0.6% | Aug 10, 2023 | A stored cross-site scripting (XSS) vulnerability in Netbox v3.4.7 allows attackers to execute arbitrary web scripts or ... |
| CVE-2023-39965 | MEDIUM | 4.3 | 0.4% | Aug 10, 2023 | 1Panel is an open source Linux server operation and maintenance management panel. In version 1.4.3, authenticated attack... |
| CVE-2023-39961 | MEDIUM | 4.3 | 0.5% | Aug 10, 2023 | Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 24.0.4 and prio... |
| CVE-2023-39959 | MEDIUM | 5.3 | 0.5% | Aug 10, 2023 | Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 25.0.0 and prio... |
| CVE-2023-39958 | MEDIUM | 5.3 | 0.6% | Aug 10, 2023 | Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 22.0.0 and prio... |
| CVE-2023-36315 | MEDIUM | 6.1 | 0.4% | Aug 10, 2023 | There is a Cross Site Scripting (XSS) vulnerability in the "action" parameter of index.php in PHPJabbers Callback Widget... |
| CVE-2023-36314 | MEDIUM | 6.1 | 0.4% | Aug 10, 2023 | There is a Cross Site Scripting (XSS) vulnerability in the value-text-o_sms_email_request_message parameters of index.ph... |
| CVE-2023-36313 | MEDIUM | 6.1 | 0.4% | Aug 10, 2023 | PHPJabbers Document Creator v1.0 is vulnerable to Cross Site Scripting (XSS) via all post parameters of "Export Requests... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now