2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-3491 | HIGH | 8.8 | 0.7% | Jun 30, 2023 | Unrestricted Upload of File with Dangerous Type in GitHub repository fossbilling/fossbilling prior to 0.5.3. |
| CVE-2023-33298 | HIGH | 7.8 | 0.6% | Jun 30, 2023 | com.perimeter81.osx.HelperTool in Perimeter81 10.0.0.19 on macOS allows Local Privilege Escalation (to root) via shell m... |
| CVE-2023-29241 | HIGH | 7.1 | 0.3% | Jun 30, 2023 | Improper Information in Cybersecurity Guidebook in Bosch Building Integration System (BIS) 5.0 may lead to wrong configu... |
| CVE-2023-22816 | HIGH | 8.8 | 0.7% | Jun 30, 2023 | A post-authentication remote command injection vulnerability in a CGI file in Western Digital My Cloud OS 5 devices that... |
| CVE-2023-35947 | HIGH | 8.1 | 0.5% | Jun 30, 2023 | Gradle is a build tool with a focus on build automation and support for multi-language development. In affected versions... |
| CVE-2023-29145 | HIGH | 7.8 | 0.3% | Jun 30, 2023 | The Malwarebytes EDR 1.0.11 for Linux driver doesn't properly ensure whitelisting of executable libraries loaded by exec... |
| CVE-2023-27469 | HIGH | 7.1 | 0.4% | Jun 30, 2023 | Malwarebytes Anti-Exploit 4.4.0.220 is vulnerable to arbitrary file deletion and denial of service via an ALPC message i... |
| CVE-2023-37306 | HIGH | 7.5 | 0.4% | Jun 30, 2023 | MISP 2.4.172 mishandles different certificate file extensions in server sync. An attacker can obtain sensitive informati... |
| CVE-2023-35178 | HIGH | 8.8 | 0.4% | Jun 30, 2023 | Certain HP LaserJet Pro print products are potentially vulnerable to Buffer Overflow when performing a GET request to sc... |
| CVE-2023-35177 | HIGH | 8.8 | 0.4% | Jun 30, 2023 | Certain HP LaserJet Pro print products are potentially vulnerable to a stack-based buffer overflow related to the compac... |
| CVE-2023-35176 | HIGH | 8.8 | 0.5% | Jun 30, 2023 | Certain HP LaserJet Pro print products are potentially vulnerable to Buffer Overflow and/or Denial of Service when using... |
| CVE-2023-26299 | HIGH | 7 | 0.1% | Jun 30, 2023 | A potential Time-of-Check to Time-of-Use (TOCTOU) vulnerability has been identified in certain HP PC products using AMI ... |
| CVE-2023-3478 | HIGH | 7.2 | 0.6% | Jun 30, 2023 | A vulnerability classified as critical was found in IBOS OA 4.5.5. Affected by this vulnerability is the function action... |
| CVE-2023-32622 | HIGH | 7.2 | 0.6% | Jun 30, 2023 | Improper neutralization of special elements in WL-WN531AX2 firmware versions prior to 2023526 allows an attacker with an... |
| CVE-2023-32621 | HIGH | 7.2 | 0.6% | Jun 30, 2023 | WL-WN531AX2 firmware versions prior to 2023526 allows an attacker with an administrative privilege to upload arbitrary f... |
| CVE-2023-32613 | HIGH | 8.1 | 0.3% | Jun 30, 2023 | Exposure of resource to wrong sphere issue exists in WL-WN531AX2 firmware versions prior to 2023526, which may allow a n... |
| CVE-2023-32612 | HIGH | 7.2 | 0.6% | Jun 30, 2023 | Client-side enforcement of server-side security issue exists in WL-WN531AX2 firmware versions prior to 2023526, which ma... |
| CVE-2023-36539 | HIGH | 7.5 | 0.4% | Jun 30, 2023 | Exposure of information intended to be encrypted by some Zoom clients may lead to disclosure of sensitive information. |
| CVE-2023-3063 | HIGH | 8.8 | 0.6% | Jun 30, 2023 | The SP Project & Document Manager plugin for WordPress is vulnerable to Insecure Direct Object References in versions up... |
| CVE-2023-36347 | HIGH | 7.5 | 32.4% | Jun 30, 2023 | A broken authentication mechanism in the endpoint excel.php of POS Codekop v2.0 allows unauthenticated attackers to down... |
| CVE-2023-36143 | HIGH | 8.8 | 3.0% | Jun 30, 2023 | Maxprint Maxlink 1200G v3.4.11E has an OS command injection vulnerability in the "Diagnostic tool" functionality of the ... |
| CVE-2023-36470 | HIGH | 8.8 | 1.7% | Jun 29, 2023 | XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. By either creat... |
| CVE-2023-36469 | HIGH | 8.8 | 82.7% | Jun 29, 2023 | XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Any user who ca... |
| CVE-2023-36468 | HIGH | 8.8 | 1.6% | Jun 29, 2023 | XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. When an XWiki i... |
| CVE-2023-35938 | HIGH | 7.2 | 0.5% | Jun 29, 2023 | Tuleap is a Free & Open Source Suite to improve management of software developments and collaboration. When switching f... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now