2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-35932HIGH8.8jcvi is a Python library to facilitate genome assembly, annotation, and comparative genomics. A configuration injection ...
CVE-2023-1783HIGH7.6OrangeScrum version 2.0.11 allows an external attacker to remotely obtain AWS instance credentials. This is possible bec...
CVE-2023-35928HIGH8.8Nextcloud Server is a space for data storage on Nextcloud, a self-hosted productivity playform. In NextCloud Server vers...
CVE-2023-35927HIGH8.1NextCloud Server and NextCloud Enterprise Server provide file storage for Nextcloud, a self-hosted productivity platform...
CVE-2023-35165HIGH8.8AWS Cloud Development Kit (AWS CDK) is an open-source software development framework to define cloud infrastructure in c...
CVE-2023-34254HIGH7.2The GLPI Agent is a generic management agent. Prior to version 1.5, if glpi-agent is running remoteinventory task agains...
CVE-2023-36348HIGH8.8POS Codekop v2.0 was discovered to contain an authenticated remote code execution (RCE) vulnerability via the filename p...
CVE-2023-36345HIGH8.8A Cross-Site Request Forgery (CSRF) in POS Codekop v2.0 allows attackers to escalate privileges.
CVE-2023-34203HIGH8.8In Progress OpenEdge OEM (OpenEdge Management) and OEE (OpenEdge Explorer) before 12.7, a remote user (who has any OEM o...
CVE-2023-34188HIGH7.5The HTTP server in Mongoose before 7.10 accepts requests containing negative Content-Length headers. By sending a single...
CVE-2023-27908HIGH7.8A maliciously crafted DLL file can be forced to write beyond allocated boundaries in the Autodesk installer when parsing...
CVE-2023-3393HIGH7.2 Code Injection in GitHub repository fossbilling/fossbilling prior to 0.5.1.
CVE-2023-34672HIGH8.8Improper Access Control leads to adding a high-privilege user affecting Elenos ETG150 FM transmitter running on version ...
CVE-2023-25003HIGH7.8A maliciously crafted pskernel.dll file in Autodesk AutoCAD 2023 and Maya 2022 may be used to trigger out-of-bound read ...
CVE-2023-3317HIGH7.1A use-after-free flaw was found in mt7921_check_offload_capability in drivers/net/wireless/mediatek/mt76/mt7921/init.c i...
CVE-2023-34671HIGH8.8Improper Access Control leads to privilege escalation affecting Elenos ETG150 FM transmitter running on version 3.12 by ...
CVE-2023-32439HIGH8.8A type confusion issue was addressed with improved checks. This issue is fixed in iOS 16.5.1 and iPadOS 16.5.1, iOS 15.7...
CVE-2023-32435HIGH8.8A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Ventura 13.3, Safar...
CVE-2023-32434HIGH7.8An integer overflow was addressed with improved input validation. This issue is fixed in watchOS 9.5.2, macOS Big Sur 11...
CVE-2023-32420HIGH7.1An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 16.5 and iPadOS 16.5, wat...
CVE-2023-32414HIGH8.6The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.4. An app may be able to break out...
CVE-2023-32413HIGH7A race condition was addressed with improved state handling. This issue is fixed in watchOS 9.5, tvOS 16.5, macOS Ventur...
CVE-2023-32409HIGH8.6The issue was addressed with improved bounds checks. This issue is fixed in watchOS 9.5, tvOS 16.5, macOS Ventura 13.4, ...
CVE-2023-32405HIGH7.8A logic issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.7.7, macOS Monterey 12.6.6, ma...
CVE-2023-32398HIGH7.8A use-after-free issue was addressed with improved memory management. This issue is fixed in watchOS 9.5, tvOS 16.5, mac...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now