2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-2690 | HIGH | 8.8 | 0.8% | May 14, 2023 | A vulnerability, which was classified as critical, has been found in SourceCodester Personnel Property Equipment System ... |
| CVE-2023-2689 | HIGH | 8.8 | 0.8% | May 14, 2023 | A vulnerability classified as critical was found in SourceCodester Billing Management System 1.0. This vulnerability aff... |
| CVE-2023-25009 | HIGH | 7.8 | 0.2% | May 12, 2023 | A malicious actor may convince a user to open a malicious USD file that may trigger an out-of-bounds write vulnerability... |
| CVE-2023-25008 | HIGH | 7.8 | 0.2% | May 12, 2023 | A malicious actor may convince a user to open a malicious USD file that may trigger an out-of-bounds read vulnerability ... |
| CVE-2023-25007 | HIGH | 7.8 | 0.2% | May 12, 2023 | A malicious actor may convince a user to open a malicious USD file that may trigger an uninitialized pointer which could... |
| CVE-2023-25006 | HIGH | 7.8 | 0.2% | May 12, 2023 | A malicious actor may convince a user to open a malicious USD file that may trigger a use-after-free vulnerability which... |
| CVE-2023-25005 | HIGH | 7.8 | 0.2% | May 12, 2023 | A maliciously crafted DLL file can be forced to read beyond allocated boundaries in Autodesk InfraWorks 2023, and 2021 w... |
| CVE-2023-20878 | HIGH | 7.2 | 1.0% | May 12, 2023 | VMware Aria Operations contains a deserialization vulnerability. A malicious actor with administrative privileges can ex... |
| CVE-2023-20877 | HIGH | 8.8 | 0.7% | May 12, 2023 | VMware Aria Operations contains a privilege escalation vulnerability. An authenticated malicious user with ReadOnly priv... |
| CVE-2023-32305 | HIGH | 8.8 | 0.7% | May 12, 2023 | aiven-extras is a PostgreSQL extension. Versions prior to 1.1.9 contain a privilege escalation vulnerability, allowing e... |
| CVE-2023-2458 | HIGH | 8.8 | 0.5% | May 12, 2023 | Use after free in ChromeOS Camera in Google Chrome on ChromeOS prior to 113.0.5672.114 allowed a remote attacker who con... |
| CVE-2023-2457 | HIGH | 8.8 | 0.4% | May 12, 2023 | Out of bounds write in ChromeOS Audio Server in Google Chrome on ChromeOS prior to 113.0.5672.114 allowed a remote attac... |
| CVE-2023-25927 | HIGH | 7.5 | 1.5% | May 12, 2023 | IBM Security Verify Access 10.0.0, 10.0.1, 10.0.2, 10.0.3, 10.0.4, and 10.0.5 could allow an attacker to crash the webse... |
| CVE-2023-25428 | HIGH | 7.8 | 0.5% | May 12, 2023 | A DLL Hijacking issue discovered in Soft-o Free Password Manager 1.1.20 allows attackers to create arbitrary DLLs leadin... |
| CVE-2023-31197 | HIGH | 7.8 | 0.2% | May 12, 2023 | Uncontrolled search path in the Intel(R) Trace Analyzer and Collector before version 2020 update 3 may allow an authenti... |
| CVE-2023-29242 | HIGH | 7.8 | 0.1% | May 12, 2023 | Improper access control for Intel(R) oneAPI Toolkits before version 2021.1 Beta 10 may allow an authenticated user to po... |
| CVE-2023-32073 | HIGH | 8.8 | 6.5% | May 12, 2023 | WWBN AVideo is an open source video platform. In versions 12.4 and prior, a command injection vulnerability exists at `p... |
| CVE-2023-31922 | HIGH | 7.5 | 0.7% | May 12, 2023 | QuickJS commit 2788d71 was discovered to contain a stack-overflow via the component js_proxy_isArray at quickjs.c. |
| CVE-2023-1934 | HIGH | 7.5 | 8.1% | May 12, 2023 | The PnPSCADA system, a product of SDG Technologies CC, is afflicted by a critical unauthenticated error-based PostgreSQL... |
| CVE-2023-23444 | HIGH | 8.2 | 1.2% | May 12, 2023 | Missing Authentication for Critical Function in SICK Flexi Classic and Flexi Soft Gateways with Partnumbers 1042193, 104... |
| CVE-2023-30130 | HIGH | 8.8 | 1.4% | May 12, 2023 | An issue found in CraftCMS v.3.8.1 allows a remote attacker to execute arbitrary code via a crafted script to the Sectio... |
| CVE-2023-2512 | HIGH | 8.1 | 0.6% | May 12, 2023 | Prior to version v1.20230419.0, the FormData API implementation was subject to an integer overflow. If a FormData instan... |
| CVE-2023-29657 | HIGH | 8.8 | 1.1% | May 12, 2023 | eXtplorer 2.1.15 is vulnerable to Insecure Permissions. File upload in file manager allows uploading zip file containing... |
| CVE-2023-2677 | HIGH | 8.8 | 0.8% | May 12, 2023 | A vulnerability, which was classified as critical, was found in SourceCodester Covid-19 Contact Tracing System 1.0. This... |
| CVE-2023-2515 | HIGH | 8.8 | 0.5% | May 12, 2023 | Mattermost fails to restrict a user with permissions to edit other users and to create personal access tokens from eleva... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now