2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-3491HIGH8.8Unrestricted Upload of File with Dangerous Type in GitHub repository fossbilling/fossbilling prior to 0.5.3.
CVE-2023-33298HIGH7.8com.perimeter81.osx.HelperTool in Perimeter81 10.0.0.19 on macOS allows Local Privilege Escalation (to root) via shell m...
CVE-2023-29241HIGH7.1Improper Information in Cybersecurity Guidebook in Bosch Building Integration System (BIS) 5.0 may lead to wrong configu...
CVE-2023-22816HIGH8.8A post-authentication remote command injection vulnerability in a CGI file in Western Digital My Cloud OS 5 devices that...
CVE-2023-35947HIGH8.1Gradle is a build tool with a focus on build automation and support for multi-language development. In affected versions...
CVE-2023-29145HIGH7.8The Malwarebytes EDR 1.0.11 for Linux driver doesn't properly ensure whitelisting of executable libraries loaded by exec...
CVE-2023-27469HIGH7.1Malwarebytes Anti-Exploit 4.4.0.220 is vulnerable to arbitrary file deletion and denial of service via an ALPC message i...
CVE-2023-37306HIGH7.5MISP 2.4.172 mishandles different certificate file extensions in server sync. An attacker can obtain sensitive informati...
CVE-2023-35178HIGH8.8Certain HP LaserJet Pro print products are potentially vulnerable to Buffer Overflow when performing a GET request to sc...
CVE-2023-35177HIGH8.8Certain HP LaserJet Pro print products are potentially vulnerable to a stack-based buffer overflow related to the compac...
CVE-2023-35176HIGH8.8Certain HP LaserJet Pro print products are potentially vulnerable to Buffer Overflow and/or Denial of Service when using...
CVE-2023-26299HIGH7A potential Time-of-Check to Time-of-Use (TOCTOU) vulnerability has been identified in certain HP PC products using AMI ...
CVE-2023-3478HIGH7.2A vulnerability classified as critical was found in IBOS OA 4.5.5. Affected by this vulnerability is the function action...
CVE-2023-32622HIGH7.2Improper neutralization of special elements in WL-WN531AX2 firmware versions prior to 2023526 allows an attacker with an...
CVE-2023-32621HIGH7.2WL-WN531AX2 firmware versions prior to 2023526 allows an attacker with an administrative privilege to upload arbitrary f...
CVE-2023-32613HIGH8.1Exposure of resource to wrong sphere issue exists in WL-WN531AX2 firmware versions prior to 2023526, which may allow a n...
CVE-2023-32612HIGH7.2Client-side enforcement of server-side security issue exists in WL-WN531AX2 firmware versions prior to 2023526, which ma...
CVE-2023-36539HIGH7.5Exposure of information intended to be encrypted by some Zoom clients may lead to disclosure of sensitive information.
CVE-2023-3063HIGH8.8The SP Project & Document Manager plugin for WordPress is vulnerable to Insecure Direct Object References in versions up...
CVE-2023-36347HIGH7.5A broken authentication mechanism in the endpoint excel.php of POS Codekop v2.0 allows unauthenticated attackers to down...
CVE-2023-36143HIGH8.8Maxprint Maxlink 1200G v3.4.11E has an OS command injection vulnerability in the "Diagnostic tool" functionality of the ...
CVE-2023-36470HIGH8.8XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. By either creat...
CVE-2023-36469HIGH8.8XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Any user who ca...
CVE-2023-36468HIGH8.8XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. When an XWiki i...
CVE-2023-35938HIGH7.2 Tuleap is a Free & Open Source Suite to improve management of software developments and collaboration. When switching f...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now