2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-5764 | HIGH | 7.8 | 0.5% | Dec 12, 2023 | A template injection flaw was found in Ansible where a user's controller internal templating operations may remove the u... |
| CVE-2023-5379 | HIGH | 7.5 | 1.0% | Dec 12, 2023 | A flaw was found in Undertow. When an AJP request is sent that exceeds the max-header-size attribute in ajp-listener, JB... |
| CVE-2023-50252 | CRITICAL | 9.8 | 23.9% | Dec 12, 2023 | php-svg-lib is an SVG file parsing / rendering library. Prior to version 0.5.1, when handling `<use>` tag that reference... |
| CVE-2023-50251 | HIGH | 7.5 | 0.9% | Dec 12, 2023 | php-svg-lib is an SVG file parsing / rendering library. Prior to version 0.5.1, when parsing the attributes passed to a ... |
| CVE-2023-48225 | CRITICAL | 9.1 | 0.8% | Dec 12, 2023 | Laf is a cloud development platform. Prior to version 1.0.0-beta.13, the control of LAF app enV is not strict enough, an... |
| CVE-2023-50247 | HIGH | 7.5 | 0.9% | Dec 12, 2023 | h2o is an HTTP server with support for HTTP/1.x, HTTP/2 and HTTP/3. The QUIC stack (quicly), as used by H2O up to commit... |
| CVE-2023-49279 | MEDIUM | 5.4 | 0.4% | Dec 12, 2023 | Umbraco is an ASP.NET content management system (CMS). Starting in version 7.0.0 and prior to versions 7.15.11, 8.18.9, ... |
| CVE-2023-49278 | MEDIUM | 5.3 | 0.5% | Dec 12, 2023 | Umbraco is an ASP.NET content management system (CMS). Starting in version 8.0.0 and prior to versions 8.18.10, 10.8.1, ... |
| CVE-2023-49274 | MEDIUM | 5.3 | 0.5% | Dec 12, 2023 | Umbraco is an ASP.NET content management system (CMS). Starting in version 8.0.0 and prior to versions 8.18.10, 10.8.1, ... |
| CVE-2023-41337 | MEDIUM | 6.7 | 0.2% | Dec 12, 2023 | h2o is an HTTP server with support for HTTP/1.x, HTTP/2 and HTTP/3. In version 2.3.0-beta2 and prior, when h2o is config... |
| CVE-2023-34064 | MEDIUM | 4.6 | 0.4% | Dec 12, 2023 | Workspace ONE Launcher contains a Privilege Escalation Vulnerability. A malicious actor with physical access to Workspac... |
| CVE-2023-6687 | MEDIUM | 6.5 | 0.6% | Dec 12, 2023 | An issue was discovered by Elastic whereby Elastic Agent would log a raw event in its own logs at the WARN or ERROR leve... |
| CVE-2023-49922 | MEDIUM | 6.5 | 0.6% | Dec 12, 2023 | An issue was discovered by Elastic whereby Beats and Elastic Agent would log a raw event in its own logs at the WARN or ... |
| CVE-2023-49273 | MEDIUM | 5.4 | 0.4% | Dec 12, 2023 | Umbraco is an ASP.NET content management system (CMS). Starting in version 8.0.0 and prior to versions 8.18.10, 10.8.1, ... |
| CVE-2023-49089 | MEDIUM | 6.5 | 0.6% | Dec 12, 2023 | Umbraco is an ASP.NET content management system (CMS). Starting in version 8.0.0 and prior to versions 8.18.10, 10.8.1, ... |
| CVE-2023-49923 | MEDIUM | 6.5 | 0.6% | Dec 12, 2023 | An issue was discovered by Elastic whereby the Documents API of App Search logged the raw contents of indexed documents... |
| CVE-2023-48313 | MEDIUM | 6.1 | 0.4% | Dec 12, 2023 | Umbraco is an ASP.NET content management system (CMS). Starting in 10.0.0 and prior to versions 10.8.1 and 12.3.4, Umbr... |
| CVE-2023-43364 | CRITICAL | 9.8 | 2.6% | Dec 12, 2023 | main.py in Searchor before 2.4.2 uses eval on CLI input, which may cause unexpected code execution. |
| CVE-2023-36696 | HIGH | 7.8 | 0.9% | Dec 12, 2023 | Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability |
| CVE-2023-36391 | HIGH | 7.8 | 7.2% | Dec 12, 2023 | Local Security Authority Subsystem Service Elevation of Privilege Vulnerability |
| CVE-2023-36020 | MEDIUM | 5.4 | 1.0% | Dec 12, 2023 | Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability |
| CVE-2023-36019 | HIGH | 7.4 | 16.2% | Dec 12, 2023 | Microsoft Power Platform Connector Spoofing Vulnerability |
| CVE-2023-36012 | MEDIUM | 5.3 | 2.0% | Dec 12, 2023 | DHCP Server Service Information Disclosure Vulnerability |
| CVE-2023-36011 | HIGH | 7.8 | 0.7% | Dec 12, 2023 | Win32k Elevation of Privilege Vulnerability |
| CVE-2023-36010 | HIGH | 7.5 | 2.6% | Dec 12, 2023 | Microsoft Defender Denial of Service Vulnerability |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now