2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-26615HIGH7.5D-Link DIR-823G firmware version 1.02B05 has a password reset vulnerability, which originates from the SetMultipleAction...
CVE-2023-20192HIGH7.7Multiple vulnerabilities in Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS) could allow ...
CVE-2023-20178HIGH7.8A vulnerability in the client update process of Cisco AnyConnect Secure Mobility Client Software for Windows and Cisco S...
CVE-2023-20108HIGH7.5A vulnerability in the XCP Authentication Service of the Cisco Unified Communications Manager IM & Presence Service ...
CVE-2023-20006HIGH7.5A vulnerability in the hardware-based SSL/TLS cryptography functionality of Cisco Adaptive Security Appliance (ASA) Soft...
CVE-2023-36467HIGH8.8AWS data.all is an open source development framework to help users build a data marketplace on Amazon Web Services. data...
CVE-2023-34932HIGH7.5A stack overflow in the UpdateWanMode function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (...
CVE-2023-34931HIGH7.5A stack overflow in the EditWlanMacList function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service...
CVE-2023-34930HIGH7.5A stack overflow in the EditMacList function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (Do...
CVE-2023-34929HIGH7.5A stack overflow in the AddMacList function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service (DoS...
CVE-2023-34928HIGH7.5A stack overflow in the Edit_BasicSSID function of H3C Magic B1STV100R012 allows attackers to cause a Denial of Service ...
CVE-2023-1295HIGH7A time-of-check to time-of-use issue exists in io_uring subsystem's IORING_OP_CLOSE operation in the Linux kernel's vers...
CVE-2023-3333HIGH7.2Improper Neutralization of Special Elements used in an OS Command vulnerability in NEC Corporation Aterm WG2600HP2, WG26...
CVE-2023-25002HIGH7.8A maliciously crafted SKP file in Autodesk products is used to trigger use-after-free vulnerability. Exploitation of thi...
CVE-2023-25001HIGH7.8A maliciously crafted SKP file in Autodesk Navisworks 2023 and 2022 be used to trigger use-after-free vulnerability. Exp...
CVE-2023-30993HIGH7.5IBM Cloud Pak for Security (CP4S) 1.9.0.0 through 1.9.2.0 could allow an attacker with a valid API key for one tenant to...
CVE-2023-29068HIGH7.8A maliciously crafted file consumed through pskernel.dll file could lead to memory corruption vulnerabilities. These vul...
CVE-2023-25004HIGH7.8A maliciously crafted pskernel.dll file in Autodesk products is used to trigger integer overflow vulnerabilities. Exploi...
CVE-2023-22593HIGH7.8 IBM Robotic Process Automation for Cloud Pak 21.0.1 through 21.0.7.3 and 23.0.0 through 23.0.3 is vulnerable to securit...
CVE-2023-28857HIGH7.5Apereo CAS is an open source multilingual single sign-on solution for the web. Apereo CAS can be configured to use authe...
CVE-2023-26276HIGH7.5IBM QRadar SIEM 7.5.0 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly ...
CVE-2023-3405HIGH7.5Unchecked parameter value in M-Files Server in versions before 23.6.12695.3 (excluding 23.2 SR2 and newer) allows anonym...
CVE-2023-2996HIGH8.8The Jetpack WordPress plugin before 12.1.1 does not validate uploaded files, allowing users with author roles or above t...
CVE-2023-2877HIGH8.8The Formidable Forms WordPress plugin before 6.3.1 does not adequately authorize the user or validate the plugin URL in ...
CVE-2023-2842HIGH8.1The WP Inventory Manager WordPress plugin before 2.1.0.14 does not have CSRF checks, which could allow attackers to make...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now