2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-3096 | HIGH | 7.8 | 0.3% | Jun 5, 2023 | A vulnerability was found in KylinSoft kylin-software-properties on KylinOS. It has been declared as critical. This vuln... |
| CVE-2023-34411 | HIGH | 7.5 | 1.2% | Jun 5, 2023 | The xml-rs crate before 0.8.14 for Rust and Crab allows a denial of service (panic) via an invalid <! token (such as <!D... |
| CVE-2023-32217 | HIGH | 8.8 | 0.6% | Jun 5, 2023 | IdentityIQ 8.3 and all 8.3 patch levels prior to 8.3p3, IdentityIQ 8.2 and all 8.2 patch levels prior to 8.2p6, Identity... |
| CVE-2023-34407 | HIGH | 7.5 | 1.2% | Jun 5, 2023 | OfflinePlayerService.exe in Harbinger Offline Player 4.0.6.0.2 allows directory traversal as LocalSystem via ..\ in a UR... |
| CVE-2023-0041 | HIGH | 8.8 | 0.5% | Jun 5, 2023 | IBM Security Guardium 11.5 could allow a user to take over another user's session due to insufficient session expiration... |
| CVE-2023-27285 | HIGH | 7.8 | 0.2% | Jun 5, 2023 | IBM Aspera Connect 4.2.5 and IBM Aspera Cargo 4.2.5 is vulnerable to a buffer overflow, caused by improper bounds checki... |
| CVE-2023-22862 | HIGH | 7.5 | 0.5% | Jun 5, 2023 | IBM Aspera Connect 4.2.5 and IBM Aspera Cargo 4.2.5 transmits authentication credentials, but it uses an insecure method... |
| CVE-2023-3091 | HIGH | 7.8 | 0.2% | Jun 4, 2023 | ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in Captura up to 8.0.0. It has been declared as critical. This... |
| CVE-2023-3084 | HIGH | 8.1 | 0.8% | Jun 3, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository nilsteampassnet/teampass prior to 3.0.9. |
| CVE-2023-3083 | HIGH | 8.7 | 0.7% | Jun 3, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository nilsteampassnet/teampass prior to 3.0.9. |
| CVE-2023-33143 | HIGH | 7.5 | 1.5% | Jun 3, 2023 | Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability |
| CVE-2023-3052 | HIGH | 8.8 | 0.3% | Jun 3, 2023 | The Page Builder by AZEXO plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includ... |
| CVE-2023-1297 | HIGH | 7.5 | 0.8% | Jun 2, 2023 | Consul and Consul Enterprise's cluster peering implementation contained a flaw whereby a peer cluster with service of th... |
| CVE-2023-33672 | HIGH | 7.5 | 0.9% | Jun 2, 2023 | Tenda AC8V4.0-V16.03.34.06 was discovered to contain a stack overflow via the shareSpeed parameter in the fromSetWifiGus... |
| CVE-2023-32215 | HIGH | 8.8 | 0.8% | Jun 2, 2023 | Mozilla developers and community members Gabriele Svelto, Andrew Osmond, Emily McDonough, Sebastian Hengst, Andrew McCre... |
| CVE-2023-32213 | HIGH | 8.8 | 0.8% | Jun 2, 2023 | When reading a file, an uninitialized value could have been used as read limit. This vulnerability affects Firefox < 113... |
| CVE-2023-32207 | HIGH | 8.8 | 0.7% | Jun 2, 2023 | A missing delay in popup notifications could have made it possible for an attacker to trick a user into granting permiss... |
| CVE-2023-29551 | HIGH | 8.8 | 0.5% | Jun 2, 2023 | Memory safety bugs present in Firefox 111. Some of these bugs showed evidence of memory corruption and we presume that w... |
| CVE-2023-29550 | HIGH | 8.8 | 0.7% | Jun 2, 2023 | Memory safety bugs present in Firefox 111 and Firefox ESR 102.9. Some of these bugs showed evidence of memory corruption... |
| CVE-2023-29543 | HIGH | 8.8 | 0.5% | Jun 2, 2023 | An attacker could have caused memory corruption and a potentially exploitable use-after-free of a pointer in a global ob... |
| CVE-2023-29541 | HIGH | 8.8 | 0.7% | Jun 2, 2023 | Firefox did not properly handle downloads of files ending in <code>.desktop</code>, which can be interpreted to run atta... |
| CVE-2023-29539 | HIGH | 8.8 | 0.7% | Jun 2, 2023 | When handling the filename directive in the Content-Disposition header, the filename would be truncated if the filename ... |
| CVE-2023-29537 | HIGH | 7.5 | 0.6% | Jun 2, 2023 | Multiple race conditions in the font initialization could have led to memory corruption and execution of attacker-contro... |
| CVE-2023-29536 | HIGH | 8.8 | 0.7% | Jun 2, 2023 | An attacker could cause the memory manager to incorrectly free a pointer that addresses attacker-controlled memory, resu... |
| CVE-2023-28177 | HIGH | 8.8 | 0.5% | Jun 2, 2023 | Memory safety bugs present in Firefox 110. Some of these bugs showed evidence of memory corruption and we presume that w... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now