2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-35846HIGH7.5VirtualSquare picoTCP (aka PicoTCP-NG) through 2.1 does not check the transport layer length in a frame before performin...
CVE-2023-35844HIGH7.5packages/backend/src/routers in Lightdash before 0.510.3 has insecure file endpoints, e.g., they allow .. directory trav...
CVE-2023-35829HIGH7An issue was discovered in the Linux kernel before 6.3.2. A use-after-free was found in rkvdec_remove in drivers/staging...
CVE-2023-35828HIGH7An issue was discovered in the Linux kernel before 6.3.2. A use-after-free was found in renesas_usb3_remove in drivers/u...
CVE-2023-35827HIGH7An issue was discovered in the Linux kernel through 6.3.8. A use-after-free was found in ravb_remove in drivers/net/ethe...
CVE-2023-35826HIGH7An issue was discovered in the Linux kernel before 6.3.2. A use-after-free was found in cedrus_remove in drivers/staging...
CVE-2023-35824HIGH7An issue was discovered in the Linux kernel before 6.3.2. A use-after-free was found in dm1105_remove in drivers/media/p...
CVE-2023-35823HIGH7An issue was discovered in the Linux kernel before 6.3.2. A use-after-free was found in saa7134_finidev in drivers/media...
CVE-2023-3310HIGH8.8A vulnerability, which was classified as critical, has been found in code-projects Agro-School Management System 1.0. Af...
CVE-2023-3308HIGH8.8A vulnerability classified as problematic has been found in whaleal IceFrog 1.1.8. Affected is an unknown function of th...
CVE-2023-3307HIGH8.8A vulnerability was found in miniCal 1.0.0. It has been rated as critical. This issue affects some unknown processing of...
CVE-2023-3305HIGH7.5A vulnerability was found in C-DATA Web Management System up to 20230607. It has been classified as critical. This affec...
CVE-2023-35811HIGH8.8An issue was discovered in SugarCRM Enterprise before 11.0.6 and 12.x before 12.0.3. Two SQL Injection vectors have been...
CVE-2023-35810HIGH7.2An issue was discovered in SugarCRM Enterprise before 11.0.6 and 12.x before 12.0.3. A Second-Order PHP Object Injection...
CVE-2023-35809HIGH8.8An issue was discovered in SugarCRM Enterprise before 11.0.6 and 12.x before 12.0.3. A Bean Manipulation vulnerability h...
CVE-2023-35808HIGH8.8An issue was discovered in SugarCRM Enterprise before 11.0.6 and 12.x before 12.0.3. An Unrestricted File Upload vulnera...
CVE-2023-3295HIGH8.8The Unlimited Elements For Elementor (Free Widgets, Addons, Templates) for WordPress is vulnerable to arbitrary file upl...
CVE-2023-28295HIGH7.8Microsoft Publisher Remote Code Execution Vulnerability
CVE-2023-28287HIGH7.8Microsoft Publisher Remote Code Execution Vulnerability
CVE-2023-35790HIGH7.5An issue was discovered in dec_patch_dictionary.cc in libjxl before 0.8.2. An integer underflow in patch decoding can le...
CVE-2023-35788HIGH7.8An issue was discovered in fl_set_geneve_opt in net/sched/cls_flower.c in the Linux kernel before 6.3.7. It allows an ou...
CVE-2023-30905HIGH7.8The MC990 X and UV300 RMC component has and inadequate default configuration that could be exploited to obtain enhanced ...
CVE-2023-25187HIGH7An issue was discovered on NOKIA Airscale ASIKA Single RAN devices before 21B. Nokia Single RAN commissioning procedures...
CVE-2023-3268HIGH7.1An out of bounds (OOB) memory access flaw was found in the Linux kernel in relay_file_read_start_pos in kernel/relay.c i...
CVE-2023-25645HIGH7.7There is a permission and access control vulnerability in some ZTE AndroidTV STBs. Due to improper permission settings, ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now