2023 CVE Vulnerabilities

31,267 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-42682MEDIUM4.4In gsp driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of...
CVE-2023-42681HIGH7.8In ion service, there is a possible missing permission check. This could lead to local escalation of privilege with no a...
CVE-2023-42680MEDIUM4.4In gpu driver, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of ...
CVE-2023-42679MEDIUM4.4In gpu driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of...
CVE-2023-42678MEDIUM5.5In imsservice, there is a possible way to write permission usage records of an app due to a missing permission check. Th...
CVE-2023-42677MEDIUM5.5In imsservice, there is a possible way to write permission usage records of an app due to a missing permission check. Th...
CVE-2023-42676MEDIUM5.5In imsservice, there is a possible way to write permission usage records of an app due to a missing permission check. Th...
CVE-2023-42675MEDIUM5.5In imsservice, there is a possible way to write permission usage records of an app due to a missing permission check. Th...
CVE-2023-42674MEDIUM5.5In imsservice, there is a possible way to write permission usage records of an app due to a missing permission check. Th...
CVE-2023-42673MEDIUM5.5In imsservice, there is a possible way to write permission usage records of an app due to a missing permission check. Th...
CVE-2023-42672MEDIUM5.5In imsservice, there is a possible way to write permission usage records of an app due to a missing permission check. Th...
CVE-2023-42671MEDIUM5.5In imsservice, there is a possible way to write permission usage records of an app due to a missing permission check. Th...
CVE-2023-38003HIGH7.2IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 could allow a user with DATAACCES...
CVE-2023-40692HIGH7.5IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, 11.5 is vulnerable to denial of service un...
CVE-2023-49948MEDIUM5.3Forgejo before 1.20.5-1 allows remote attackers to test for the existence of private user accounts by appending .rss (or...
CVE-2023-49947HIGH7.5Forgejo before 1.20.5-1 allows 2FA bypass when docker login uses Basic Authentication.
CVE-2023-49946CRITICAL9.1In Forgejo before 1.20.5-1, certain endpoints do not check whether an object belongs to a repository for which permissio...
CVE-2023-45178HIGH7.5IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.5 CLI is vulnerable to a denial of service when a s...
CVE-2023-49926MEDIUM6.1app/Lib/Tools/EventTimelineTool.php in MISP before 2.4.179 allows XSS in the event timeline widget.
CVE-2023-6474MEDIUM6.5A vulnerability has been found in PHPGurukul Nipah Virus Testing Management System 1.0 and classified as problematic. Th...
CVE-2023-47100Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: CVE-2023-47038. Reason: This record is a duplicate of CVE-2023-...
CVE-2023-6473MEDIUM5.4A vulnerability, which was classified as problematic, was found in SourceCodester Online Quiz System 1.0. This affects a...
CVE-2023-6472MEDIUM4.8A vulnerability, which was classified as problematic, has been found in PHPEMS 7.0. This issue affects some unknown proc...
CVE-2023-6467LOW3.7A vulnerability was found in Thecosy IceCMS 2.0.1. It has been rated as problematic. This issue affects some unknown pro...
CVE-2023-6466MEDIUM6.1A vulnerability was found in Thecosy IceCMS 2.0.1. It has been declared as problematic. This vulnerability affects unkno...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now