2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-1731 | HIGH | 7.2 | 1.0% | Apr 24, 2023 | In Meinbergs LTOS versions prior to V7.06.013, the configuration file upload function would not correctly validate the i... |
| CVE-2023-29578 | HIGH | 8.8 | 0.8% | Apr 24, 2023 | mp4v2 v2.0.0 was discovered to contain a heap buffer overflow via the mp4v2::impl::MP4StringProperty::~MP4StringProperty... |
| CVE-2023-22577 | HIGH | 7.5 | 0.7% | Apr 24, 2023 | Within White Rabbit Switch it's possible as an unauthenticated user to retrieve sensitive information such as password h... |
| CVE-2023-30533 | HIGH | 7.8 | 1.0% | Apr 24, 2023 | SheetJS Community Edition before 0.19.3 allows Prototype Pollution via a crafted file. In other words. 0.19.2 and earlie... |
| CVE-2023-31061 | HIGH | 8.8 | 0.5% | Apr 24, 2023 | Repetier Server through 1.4.10 does not have CSRF protection. |
| CVE-2023-31059 | HIGH | 7.5 | 5.6% | Apr 24, 2023 | Repetier Server through 1.4.10 allows ..%5c directory traversal for reading files that contain credentials, as demonstra... |
| CVE-2023-31043 | HIGH | 7.5 | 0.4% | Apr 23, 2023 | EnterpriseDB EDB Postgres Advanced Server (EPAS) before 14.6.0 logs unredacted passwords in situations where optional pa... |
| CVE-2023-23879 | HIGH | 8.8 | 0.3% | Apr 23, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Nicolas Zeh PHP Execution plugin <= 1.0.0 versions. |
| CVE-2023-22686 | HIGH | 8.8 | 0.3% | Apr 23, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in TriniTronic Nice PayPal Button Lite plugin <= 1.3.5 versions. |
| CVE-2023-2243 | HIGH | 8.8 | 0.7% | Apr 22, 2023 | A vulnerability was found in SourceCodester Complaint Management System 1.0 and classified as critical. Affected by this... |
| CVE-2023-2242 | HIGH | 8.8 | 0.7% | Apr 22, 2023 | A vulnerability has been found in SourceCodester Online Computer and Laptop Store 1.0 and classified as critical. Affect... |
| CVE-2023-25509 | HIGH | 7.8 | 0.2% | Apr 22, 2023 | NVIDIA DGX-1 SBIOS contains a vulnerability in Bds, which may lead to code execution, denial of service, and escalation ... |
| CVE-2023-25508 | HIGH | 7.8 | 0.2% | Apr 22, 2023 | NVIDIA DGX-1 BMC contains a vulnerability in the IPMI handler, where an attacker with the appropriate level of authoriza... |
| CVE-2023-25507 | HIGH | 8.8 | 0.9% | Apr 22, 2023 | NVIDIA DGX-1 BMC contains a vulnerability in the SPX REST API, where an attacker with the appropriate level of authoriza... |
| CVE-2023-25506 | HIGH | 8.2 | 0.2% | Apr 22, 2023 | NVIDIA DGX-1 contains a vulnerability in Ofbd in AMI SBIOS, where a preconditioned heap can allow a user with elevated p... |
| CVE-2023-25505 | HIGH | 7.8 | 0.2% | Apr 22, 2023 | NVIDIA DGX-1 BMC contains a vulnerability in the IPMI handler of the AMI MegaRAC BMC , where an attacker with the approp... |
| CVE-2023-0209 | HIGH | 7.8 | 0.2% | Apr 22, 2023 | NVIDIA DGX-1 SBIOS contains a vulnerability in the Uncore PEI module, where authentication of the code executed by SSA i... |
| CVE-2023-0206 | HIGH | 7.8 | 0.2% | Apr 22, 2023 | NVIDIA DGX A100 SBIOS contains a vulnerability where an attacker may modify arbitrary memory of SMRAM by exploiting the ... |
| CVE-2023-0205 | HIGH | 7.7 | 0.5% | Apr 22, 2023 | NVIDIA ConnectX-5, ConnectX-6, and ConnectX6-DX contain a vulnerability in the NIC firmware, where an unprivileged user ... |
| CVE-2023-0204 | HIGH | 7.7 | 0.4% | Apr 22, 2023 | NVIDIA ConnectX-5, ConnectX-6, and ConnectX6-DX contain a vulnerability in the NIC firmware, where an unprivileged user ... |
| CVE-2023-0203 | HIGH | 7.7 | 0.5% | Apr 22, 2023 | NVIDIA ConnectX-5, ConnectX-6, and ConnectX6-DX contain a vulnerability in the NIC firmware, where an unprivileged user ... |
| CVE-2023-0202 | HIGH | 7.8 | 0.2% | Apr 22, 2023 | NVIDIA DGX A100 SBIOS contains a vulnerability where an attacker may modify arbitrary memory of SMRAM by exploiting the ... |
| CVE-2023-0184 | HIGH | 7.8 | 0.3% | Apr 22, 2023 | NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer handler which may lead... |
| CVE-2023-2240 | HIGH | 8.8 | 0.7% | Apr 22, 2023 | Improper Privilege Management in GitHub repository microweber/microweber prior to 1.3.4. |
| CVE-2023-29019 | HIGH | 8.1 | 0.8% | Apr 21, 2023 | @fastify/passport is a port of passport authentication library for the Fastify ecosystem. Applications using `@fastify/p... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now