2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-3096HIGH7.8A vulnerability was found in KylinSoft kylin-software-properties on KylinOS. It has been declared as critical. This vuln...
CVE-2023-34411HIGH7.5The xml-rs crate before 0.8.14 for Rust and Crab allows a denial of service (panic) via an invalid <! token (such as <!D...
CVE-2023-32217HIGH8.8IdentityIQ 8.3 and all 8.3 patch levels prior to 8.3p3, IdentityIQ 8.2 and all 8.2 patch levels prior to 8.2p6, Identity...
CVE-2023-34407HIGH7.5OfflinePlayerService.exe in Harbinger Offline Player 4.0.6.0.2 allows directory traversal as LocalSystem via ..\ in a UR...
CVE-2023-0041HIGH8.8IBM Security Guardium 11.5 could allow a user to take over another user's session due to insufficient session expiration...
CVE-2023-27285HIGH7.8IBM Aspera Connect 4.2.5 and IBM Aspera Cargo 4.2.5 is vulnerable to a buffer overflow, caused by improper bounds checki...
CVE-2023-22862HIGH7.5IBM Aspera Connect 4.2.5 and IBM Aspera Cargo 4.2.5 transmits authentication credentials, but it uses an insecure method...
CVE-2023-3091HIGH7.8** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in Captura up to 8.0.0. It has been declared as critical. This...
CVE-2023-3084HIGH8.1Cross-site Scripting (XSS) - Stored in GitHub repository nilsteampassnet/teampass prior to 3.0.9.
CVE-2023-3083HIGH8.7Cross-site Scripting (XSS) - Stored in GitHub repository nilsteampassnet/teampass prior to 3.0.9.
CVE-2023-33143HIGH7.5Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
CVE-2023-3052HIGH8.8The Page Builder by AZEXO plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includ...
CVE-2023-1297HIGH7.5Consul and Consul Enterprise's cluster peering implementation contained a flaw whereby a peer cluster with service of th...
CVE-2023-33672HIGH7.5Tenda AC8V4.0-V16.03.34.06 was discovered to contain a stack overflow via the shareSpeed parameter in the fromSetWifiGus...
CVE-2023-32215HIGH8.8Mozilla developers and community members Gabriele Svelto, Andrew Osmond, Emily McDonough, Sebastian Hengst, Andrew McCre...
CVE-2023-32213HIGH8.8When reading a file, an uninitialized value could have been used as read limit. This vulnerability affects Firefox < 113...
CVE-2023-32207HIGH8.8A missing delay in popup notifications could have made it possible for an attacker to trick a user into granting permiss...
CVE-2023-29551HIGH8.8Memory safety bugs present in Firefox 111. Some of these bugs showed evidence of memory corruption and we presume that w...
CVE-2023-29550HIGH8.8Memory safety bugs present in Firefox 111 and Firefox ESR 102.9. Some of these bugs showed evidence of memory corruption...
CVE-2023-29543HIGH8.8An attacker could have caused memory corruption and a potentially exploitable use-after-free of a pointer in a global ob...
CVE-2023-29541HIGH8.8Firefox did not properly handle downloads of files ending in <code>.desktop</code>, which can be interpreted to run atta...
CVE-2023-29539HIGH8.8When handling the filename directive in the Content-Disposition header, the filename would be truncated if the filename ...
CVE-2023-29537HIGH7.5Multiple race conditions in the font initialization could have led to memory corruption and execution of attacker-contro...
CVE-2023-29536HIGH8.8An attacker could cause the memory manager to incorrectly free a pointer that addresses attacker-controlled memory, resu...
CVE-2023-28177HIGH8.8Memory safety bugs present in Firefox 110. Some of these bugs showed evidence of memory corruption and we presume that w...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now