2023 CVE Vulnerabilities

31,249 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-1393HIGH7.8A flaw was found in X.Org Server Overlay Window. A Use-After-Free may lead to local privilege escalation. If a client ex...
CVE-2023-28846HIGH7.5Unpoly is a JavaScript framework for server-side web applications. There is a possible Denial of Service (DoS) vulnerabi...
CVE-2023-27534HIGH8.8A path traversal vulnerability exists in curl <8.0.0 SFTP implementation causes the tilde (~) character to be wrongly re...
CVE-2023-27533HIGH8.8A vulnerability in input validation exists in curl <8.0 during communication using the TELNET protocol may allow an atta...
CVE-2023-1736HIGH8.8A vulnerability, which was classified as critical, has been found in SourceCodester Young Entrepreneur E-Negosyo System ...
CVE-2023-28835HIGH7.5Nextcloud server is an open source home cloud implementation. In affected versions the generated fallback password when ...
CVE-2023-28833HIGH8.8Nextcloud server is an open source home cloud implementation. In affected versions admins of a server were able to uploa...
CVE-2023-28644HIGH7.5Nextcloud server is an open source home cloud implementation. In releases of the 25.0.x branch before 25.0.3 an ineffici...
CVE-2023-28643HIGH8.8Nextcloud server is an open source home cloud implementation. In affected versions when a recipient receives 2 shares wi...
CVE-2023-26482HIGH8.8Nextcloud server is an open source home cloud implementation. In affected versions a missing scope validation allowed us...
CVE-2023-29059HIGH7.83CX DesktopApp through 18.12.416 has embedded malicious code, as exploited in the wild in March 2023. This affects versi...
CVE-2023-24473HIGH7.5An information disclosure vulnerability exists in the TGAInput::read_tga2_header functionality of OpenImageIO Project Op...
CVE-2023-24472HIGH7.5A denial of service vulnerability exists in the FitsOutput::close() functionality of OpenImageIO Project OpenImageIO v2....
CVE-2023-22845HIGH7.5An out-of-bounds read vulnerability exists in the TGAInput::decode_pixel() functionality of OpenImageIO Project OpenImag...
CVE-2023-28732HIGH7.5Missing access control in AnyMailing Joomla Plugin allows to list and access files containing sensitive information from...
CVE-2023-28935HIGH8.8** UNSUPPORTED WHEN ASSIGNED ** Improper Neutralization of Special Elements used in a Command ('Command Injection') vuln...
CVE-2023-1014HIGH7.5Improper Protection for Outbound Error Messages and Alert Signals vulnerability in Virames Vira-Investing allows Account...
CVE-2023-28509HIGH7.5Rocket Software UniData versions prior to 8.2.4 build 3003 and UniVerse versions prior to 11.3.5 build 1001 or 12.2.1 bu...
CVE-2023-28508HIGH8.8Rocket Software UniData versions prior to 8.2.4 build 3003 and UniVerse versions prior to 11.3.5 build 1001 or 12.2.1 bu...
CVE-2023-28506HIGH8.8Rocket Software UniData versions prior to 8.2.4 build 3003 and UniVerse versions prior to 11.3.5 build 1001 or 12.2.1 bu...
CVE-2023-28505HIGH8.8Rocket Software UniData versions prior to 8.2.4 build 3003 and UniVerse versions prior to 11.3.5 build 1001 or 12.2.1 bu...
CVE-2023-1652HIGH7.1A use-after-free flaw was found in nfsd4_ssc_setup_dul in fs/nfsd/nfs4proc.c in the NFS filesystem in the Linux Kernel. ...
CVE-2023-0836HIGH7.5An information leak vulnerability was discovered in HAProxy 2.1, 2.2 before 2.2.27, 2.3, 2.4 before 2.4.21, 2.5 before 2...
CVE-2023-1656HIGH7.5Cleartext Transmission of Sensitive Information vulnerability in ForgeRock Inc. OpenIDM and Java Remote Connector Server...
CVE-2023-0664HIGH7.8A flaw was found in the QEMU Guest Agent service for Windows. A local unprivileged user may be able to manipulate the QE...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now