2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-28523HIGH7.8 IBM Informix Dynamic Server 12.10 and 14.10 onsmsync is vulnerable to a heap buffer overflow, caused by improper bounds...
CVE-2023-6394CRITICAL9.1A flaw was found in Quarkus. This issue occurs when receiving a request over websocket with no role-based permission spe...
CVE-2023-49797HIGH7.8PyInstaller bundles a Python application and all its dependencies into a single package. A PyInstaller built application...
CVE-2023-6560MEDIUM5.5An out-of-bounds memory access flaw was found in the io_uring SQ/CQ rings functionality in the Linux kernel. This issue ...
CVE-2023-49800HIGH7.5`nuxt-api-party` is an open source module to proxy API requests. The library allows the user to send many options direct...
CVE-2023-49799HIGH7.5`nuxt-api-party` is an open source module to proxy API requests. nuxt-api-party attempts to check if the user has passed...
CVE-2023-49798HIGH7.5OpenZeppelin Contracts is a library for smart contract development. A merge issue when porting the 5.0.1 patch to the 4....
CVE-2023-6337HIGH7.5HashiCorp Vault and Vault Enterprise 1.12.0 and newer are vulnerable to a denial of service through memory exhaustion of...
CVE-2023-34320MEDIUM5.5Cortex-A77 cores (r0p0 and r1p0) are affected by erratum 1508412 where software, under certain circumstances, could dead...
CVE-2023-49788HIGH7.2Collabora Online is a collaborative online office suite based on LibreOffice technology. Unlike a standalone dedicated C...
CVE-2023-49782MEDIUM6.1Collabora Online is a collaborative online office suite based on LibreOffice technology. Users of Nextcloud with `Collab...
CVE-2023-48311MEDIUM4.3dockerspawner is a tool to spawn JupyterHub single user servers in Docker containers. Users of JupyterHub deployments ru...
CVE-2023-46499MEDIUM6.1Cross Site Scripting vulnerability in EverShop NPM versions before v.1.0.0-rc.5 allows a remote attacker to obtain sensi...
CVE-2023-46498CRITICAL9.8An issue in EverShop NPM versions before v.1.0.0-rc.8 allows a remote attacker to obtain sensitive information and execu...
CVE-2023-46497MEDIUM5.4Directory Traversal vulnerability in EverShop NPM versions before v.1.0.0-rc.8 allows a remote attacker to obtain sensit...
CVE-2023-46496HIGH8.3Directory Traversal vulnerability in EverShop NPM versions before v.1.0.0-rc.8 allows a remote attacker to obtain sensit...
CVE-2023-46495MEDIUM6.1Cross Site Scripting vulnerability in EverShop NPM versions before v.1.0.0-rc.8 allows a remote attacker to obtain sensi...
CVE-2023-46494MEDIUM6.1Cross Site Scripting vulnerability in EverShop NPM versions before v.1.0.0-rc.5 allows a remote attacker to obtain sensi...
CVE-2023-46493MEDIUM5.3Directory Traversal vulnerability in EverShop NPM versions before v.1.0.0-rc.8 allows a remote attacker to obtain sensit...
CVE-2023-6507MEDIUM4.9An issue was found in CPython 3.12.0 `subprocess` module on POSIX platforms. The issue was fixed in CPython 3.12.1 and d...
CVE-2023-6622MEDIUM5.5A null pointer dereference vulnerability was found in nft_dynset_init() in net/netfilter/nft_dynset.c in nf_tables in th...
CVE-2023-6619CRITICAL9.8A vulnerability was found in SourceCodester Simple Student Attendance System 1.0. It has been rated as critical. Affecte...
CVE-2023-6618HIGH8.8A vulnerability was found in SourceCodester Simple Student Attendance System 1.0. It has been declared as problematic. A...
CVE-2023-6617CRITICAL9.8A vulnerability was found in SourceCodester Simple Student Attendance System 1.0. It has been classified as critical. Af...
CVE-2023-6616MEDIUM6.1A vulnerability was found in SourceCodester Simple Student Attendance System 1.0 and classified as problematic. This iss...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now