2023 CVE Vulnerabilities

31,397 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-46326HIGH8.8ZStack Cloud version 3.10.38 and before allows unauthenticated API access to the list of active job UUIDs and the sessio...
CVE-2023-42917HIGH8.8A memory corruption vulnerability was addressed with improved locking. This issue is fixed in iOS 17.1.2 and iPadOS 17.1...
CVE-2023-42916MEDIUM6.5An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 17.1.2 and iPadOS 17.1.2,...
CVE-2023-5909HIGH7.5 KEPServerEX does not properly validate certificates from clients which may allow unauthenticated users to conne...
CVE-2023-5908CRITICAL9.1 KEPServerEX is vulnerable to a buffer overflow which may allow an attacker to crash the product being accessed or l...
CVE-2023-49735HIGH7.5** UNSUPPORTED WHEN ASSIGNED ** The value set as the DefaultLocaleResolver.LOCALE_KEY attribute on the session was not ...
CVE-2023-48894MEDIUM6.5Incorrect Access Control vulnerability in jshERP V3.3 allows attackers to obtain sensitive information via the doFilter ...
CVE-2023-47207CRITICAL9.8In Delta Electronics InfraSuite Device Master v.1.0.7, a vulnerability exists that allows an unauthenticated attacker to...
CVE-2023-46690HIGH8.8In Delta Electronics InfraSuite Device Master v.1.0.7, a vulnerability exists that allows an attacker to write to any fi...
CVE-2023-39226CRITICAL9.8In Delta Electronics InfraSuite Device Master v.1.0.7, a vulnerability exists that allows an unauthenticated attacker to...
CVE-2023-6442MEDIUM5.4A vulnerability was found in PHPGurukul Nipah Virus Testing Management System 1.0. It has been declared as problematic. ...
CVE-2023-6440MEDIUM5.4A vulnerability was found in SourceCodester Book Borrower System 1.0 and classified as problematic. This issue affects s...
CVE-2023-47454HIGH7.8An Untrusted search path vulnerability in NetEase CloudMusic 2.10.4 for Windows allows local users to gain escalated pri...
CVE-2023-47453HIGH7.8An Untrusted search path vulnerability in Sohu Video Player 7.0.15.0 allows local users to gain escalated privileges thr...
CVE-2023-47452HIGH7.8An Untrusted search path vulnerability in notepad++ 6.5 allows local users to gain escalated privileges through the msim...
CVE-2023-6439MEDIUM6.1A vulnerability classified as problematic was found in ZenTao PMS 18.8. Affected by this vulnerability is an unknown fun...
CVE-2023-6376HIGH7.5Henschen & Associates court document management software does not sufficiently randomize file names of cached documents,...
CVE-2023-6375HIGH7.5Tyler Technologies Court Case Management Plus may store backups in a location that can be accessed by a remote, unauthen...
CVE-2023-6354CRITICAL9.4Tyler Technologies Magistrate Court Case Management Plus allows an unauthenticated, remote attacker to upload, delete, a...
CVE-2023-6353CRITICAL9.4Tyler Technologies Civil and Criminal Electronic Filing allows an unauthenticated, remote attacker to upload, delete, an...
CVE-2023-6352MEDIUM5.3The default configuration of Aquaforest TIFF Server allows access to arbitrary file paths, subject to any restrictions i...
CVE-2023-6344MEDIUM5.3Tyler Technologies Court Case Management Plus allows a remote, unauthenticated attacker to enumerate directories using t...
CVE-2023-6343MEDIUM5.3Tyler Technologies Court Case Management Plus allows a remote, unauthenticated attacker to enumerate and access sensitiv...
CVE-2023-6342CRITICAL9.8Tyler Technologies Court Case Management Plus allows a remote attacker to authenticate as any user by manipulating at le...
CVE-2023-6341MEDIUM5.3Catalis (previously Icon Software) CMS360 allows a remote, unauthenticated attacker to view sensitive court documents by...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now