2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-2617HIGH7.5A vulnerability classified as problematic was found in OpenCV wechat_qrcode Module up to 4.7.0. Affected by this vulnera...
CVE-2023-27889HIGH8.8Cross-site request forgery (CSRF) vulnerability in LIQUID SPEECH BALLOON versions prior to 1.2 allows a remote unauthent...
CVE-2023-27527HIGH7.5Shinseiyo Sogo Soft (7.9A) and earlier improperly restricts XML external entity references (XXE). By processing a specia...
CVE-2023-27510HIGH7.5JB Inquiry form contains an exposure of private personal information to an unauthorized actor vulnerability, which may a...
CVE-2023-27385HIGH7.8Heap-based buffer overflow vulnerability exists in CX-Drive All models all versions. By having a user open a specially c...
CVE-2023-25184HIGH7.5Use of weak credentials exists in Seiko Solutions SkyBridge and SkySpider series, which may allow a remote unauthenticat...
CVE-2023-25072HIGH7.5Use of weak credentials exists in SkyBridge MB-A100/110 firmware Ver. 4.2.0 and earlier, which may allow a remote unauth...
CVE-2023-23906HIGH7.5Missing authentication for critical function exists in SkyBridge MB-A100/110 firmware Ver. 4.2.0 and earlier, which may ...
CVE-2023-23578HIGH7.5Improper access control vulnerability in SkyBridge MB-A200 firmware Ver. 01.00.05 and earlier allows a remote unauthenti...
CVE-2023-22441HIGH8.6Missing authentication for critical function exists in Seiko Solutions SkyBridge series, which may allow a remote attack...
CVE-2023-32568HIGH7.2An issue was discovered in Veritas InfoScale Operations Manager (VIOM) before 7.4.2.800 and 8.x before 8.0.410. The VIOM...
CVE-2023-31478HIGH7.5An issue was discovered on GL.iNet devices before 3.216. An API endpoint reveals information about the Wi-Fi configurati...
CVE-2023-2610HIGH7.8Integer Overflow or Wraparound in GitHub repository vim/vim prior to 9.0.1532.
CVE-2023-2156HIGH7.5A flaw was found in the networking subsystem of the Linux kernel within the handling of the RPL protocol. This issue res...
CVE-2023-28128HIGH7.2An unrestricted upload of file with dangerous type vulnerability exists in Avalanche versions 6.3.x and below that could...
CVE-2023-28127HIGH7.5A path traversal vulnerability exists in Avalanche version 6.3.x and below that when exploited could result in possible ...
CVE-2023-30056HIGH7.5A session takeover vulnerability exists in FICO Origination Manager Decision Module 4.8.1 due to insufficient protection...
CVE-2023-25832HIGH8.8There is a cross-site-request forgery vulnerability in Esri Portal for ArcGIS Versions 11.0 and below that may allow an ...
CVE-2023-20524HIGH7.5An attacker with a compromised ASP could possibly send malformed commands to an ASP on another CPU, resulting in an out ...
CVE-2023-31474HIGH7.5An issue was discovered on GL.iNet devices before 3.216. Through the software installation feature, it is possible to in...
CVE-2023-31472HIGH7.5An issue was discovered on GL.iNet devices before 3.216. There is an arbitrary file write in which an empty file can be ...
CVE-2023-29343HIGH7.8SysInternals Sysmon for Windows Elevation of Privilege Vulnerability
CVE-2023-29341HIGH7.8AV1 Video Extension Remote Code Execution Vulnerability
CVE-2023-29340HIGH7.8AV1 Video Extension Remote Code Execution Vulnerability
CVE-2023-29336HIGH7.8Win32k Elevation of Privilege Vulnerability

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now