2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-46713MEDIUM5.3An improper output neutralization for logs in Fortinet FortiWeb 6.2.0 - 6.2.8, 6.3.0 - 6.3.23, 7.0.0 - 7.0.9, 7.2.0 - 7....
CVE-2023-46675MEDIUM6.5An issue was discovered by Elastic whereby sensitive information may be recorded in Kibana logs in the event of an error...
CVE-2023-46671MEDIUM6.5An issue was discovered by Elastic whereby sensitive information may be recorded in Kibana logs in the event of an error...
CVE-2023-45587MEDIUM5.4An improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Fortinet FortiS...
CVE-2023-41844MEDIUM5.4A improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Fortinet FortiSa...
CVE-2023-41678HIGH8.8A double free in Fortinet FortiOS versions 7.0.0 through 7.0.5, FortiPAM version 1.0.0 through 1.0.3, 1.1.0 through 1.1....
CVE-2023-41673MEDIUM5.4An improper authorization vulnerability [CWE-285] in Fortinet FortiADC version 7.4.0 and before 7.2.2 may allow a low pr...
CVE-2023-40716HIGH7.8An improper neutralization of special elements used in an OS command vulnerability [CWE-78]  in the command line interpr...
CVE-2023-36639HIGH8.8A use of externally-controlled format string in Fortinet FortiProxy versions 7.2.0 through 7.2.4, 7.0.0 through 7.0.10, ...
CVE-2023-45801HIGH7.5Improper Authentication vulnerability in Nadatel DVR allows Information Elicitation.This issue affects DVR: from 3.0.0 b...
CVE-2023-47579HIGH7.5Relyum RELY-PCIe 22.2.1 devices suffer from a system group misconfiguration, allowing read access to the central passwor...
CVE-2023-47578HIGH8.8Relyum RELY-PCIe 22.2.1 and RELY-REC 23.1.0 devices are susceptible to Cross Site Request Forgery (CSRF) attacks due to ...
CVE-2023-47577CRITICAL9.8An issue discovered in Relyum RELY-PCIe 22.2.1 and RELY-REC 23.1.0 allows for unauthorized password changes due to no ch...
CVE-2023-47576HIGH8.8An issue was discovered in Relyum RELY-PCIe 22.2.1 and RELY-REC 23.1.0 devices, allowing authenticated command injection...
CVE-2023-47575MEDIUM6.1An issue was discovered on Relyum RELY-PCIe 22.2.1 and RELY-REC 23.1.0 devices. The web interfaces of the Relyum devices...
CVE-2023-47574MEDIUM5.9An issue was discovered on Relyum RELY-PCIe 22.2.1 and RELY-REC 23.1.0 devices. There is a Weak SMB configuration with s...
CVE-2023-47573HIGH8.8An issue discovered in Relyum RELY-PCIe 22.2.1 devices. The authorization mechanism is not enforced in the web interface...
CVE-2023-45800HIGH7.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Hanbiro Hanbiro gr...
CVE-2023-45864MEDIUM4.7A race condition issue discovered in Samsung Mobile Processor Exynos 9820, 980, 1080, 2100, 2200, 1280, and 1380 allows ...
CVE-2023-43122MEDIUM4.6Samsung Mobile Processor and Wearable Processor (Exynos 980, 850, 1080, 2100, 2200, 1280, 1380, 1330, and W920) allow In...
CVE-2023-42483MEDIUM4.7A TOCTOU race condition in Samsung Mobile Processor Exynos 9820, Exynos 980, Exynos 1080, Exynos 2100, Exynos 2200, Exyn...
CVE-2023-6753HIGH8.8Path Traversal in GitHub repository mlflow/mlflow prior to 2.9.2.
CVE-2023-50263MEDIUM5.3Nautobot is a Network Source of Truth and Network Automation Platform built as a web application atop the Django Python ...
CVE-2023-3517HIGH8.8 Hitachi Vantara Pentaho Data Integration & Analytics versions before 9.5.0.1 and 9.3.0.5, including 8.3.x does not res...
CVE-2023-6710MEDIUM5.4A flaw was found in the mod_proxy_cluster in the Apache server. This issue may allow a malicious user to add a script in...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now