2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-28175 | HIGH | 7.7 | 0.5% | Jun 15, 2023 | Improper Authorization in SSH server in Bosch VMS 11.0, 11.1.0, and 11.1.1 allows a remote authenticated user to access ... |
| CVE-2023-2847 | HIGH | 7.8 | 0.1% | Jun 15, 2023 | During internal security analysis, a local privilege escalation vulnerability has been identified. On a machine with th... |
| CVE-2023-35030 | HIGH | 8.8 | 0.4% | Jun 15, 2023 | Cross-site request forgery (CSRF) vulnerability in the Layout module's SEO configuration in Liferay Portal 7.4.3.70 thro... |
| CVE-2023-2270 | HIGH | 7.8 | 0.3% | Jun 15, 2023 | The Netskope client service running with NT\SYSTEM privileges accepts network connections from localhost to start variou... |
| CVE-2023-25683 | HIGH | 7.5 | 0.6% | Jun 15, 2023 | IBM PowerVM Hypervisor FW950.00 through FW950.71, FW1010.00 through FW1010.40, FW1020.00 through FW1020.20, and FW1030.0... |
| CVE-2023-34448 | HIGH | 7.2 | 4.5% | Jun 14, 2023 | Grav is a flat-file content management system. Prior to version 1.7.42, the patch for CVE-2022-2073, a server-side templ... |
| CVE-2023-34253 | HIGH | 7.2 | 2.1% | Jun 14, 2023 | Grav is a flat-file content management system. Prior to version 1.7.42, the denylist introduced in commit 9d6a2d to prev... |
| CVE-2023-34252 | HIGH | 7.2 | 2.1% | Jun 14, 2023 | Grav is a flat-file content management system. Prior to version 1.7.42, there is a logic flaw in the `GravExtension.filt... |
| CVE-2023-34251 | HIGH | 7.2 | 2.3% | Jun 14, 2023 | Grav is a flat-file content management system. Versions prior to 1.7.42 are vulnerable to server side template injection... |
| CVE-2023-30082 | HIGH | 7.5 | 1.0% | Jun 14, 2023 | A denial of service attack might be launched against the server if an unusually lengthy password (more than 10000000 cha... |
| CVE-2023-26062 | HIGH | 7.8 | 0.2% | Jun 14, 2023 | A mobile network solution internal fault is found in Nokia Web Element Manager before 22 R1, in which an authenticated, ... |
| CVE-2023-25434 | HIGH | 8.8 | 0.8% | Jun 14, 2023 | libtiff 4.5.0 is vulnerable to Buffer Overflow via extractContigSamplesBytes() at /libtiff/tools/tiffcrop.c:3215. |
| CVE-2023-25369 | HIGH | 7.5 | 0.8% | Jun 14, 2023 | Siglent SDS 1104X-E SDS1xx4X-E_V6.1.37R9.ADS is vulnerable to Denial of Service on the user interface triggered by malfo... |
| CVE-2023-25368 | HIGH | 7.5 | 0.8% | Jun 14, 2023 | Siglent SDS 1104X-E SDS1xx4X-E_V6.1.37R9.ADS is vulnerable to Incorrect Access Control. An unauthenticated attacker can ... |
| CVE-2023-2976 | HIGH | 7.1 | 0.2% | Jun 14, 2023 | Use of Java's default temporary directory for file creation in `FileBackedOutputStream` in Google Guava versions 1.0 to ... |
| CVE-2023-0009 | HIGH | 7.8 | 0.2% | Jun 14, 2023 | A local privilege escalation (PE) vulnerability in the Palo Alto Networks GlobalProtect app on Windows enables a local u... |
| CVE-2023-34868 | HIGH | 7.5 | 0.7% | Jun 14, 2023 | Jerryscript 3.0 (commit 05dbbd1) was discovered to contain an Assertion Failure via the parser_parse_for_statement_start... |
| CVE-2023-34867 | HIGH | 7.5 | 0.7% | Jun 14, 2023 | Jerryscript 3.0 (commit 05dbbd1) was discovered to contain an Assertion Failure via the ecma_property_hashmap_create at ... |
| CVE-2023-32031 | HIGH | 8.8 | 81.8% | Jun 14, 2023 | Microsoft Exchange Server Remote Code Execution Vulnerability |
| CVE-2023-32030 | HIGH | 7.5 | 2.2% | Jun 14, 2023 | .NET and Visual Studio Denial of Service Vulnerability |
| CVE-2023-29337 | HIGH | 7.1 | 1.1% | Jun 14, 2023 | NuGet Client Remote Code Execution Vulnerability |
| CVE-2023-29331 | HIGH | 7.5 | 2.6% | Jun 14, 2023 | .NET, .NET Framework, and Visual Studio Denial of Service Vulnerability |
| CVE-2023-29326 | HIGH | 7.8 | 0.9% | Jun 14, 2023 | .NET Framework Remote Code Execution Vulnerability |
| CVE-2023-28310 | HIGH | 8 | 25.0% | Jun 14, 2023 | Microsoft Exchange Server Remote Code Execution Vulnerability |
| CVE-2023-24936 | HIGH | 7.5 | 1.6% | Jun 14, 2023 | .NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now