2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-20703 | MEDIUM | 5.5 | 0.1% | May 15, 2023 | In apu, there is a possible out of bounds read due to a missing bounds check. This could lead to local information discl... |
| CVE-2023-20701 | MEDIUM | 6.7 | 0.1% | May 15, 2023 | In widevine, there is a possible out of bounds write due to a logic error. This could lead to local escalation of privil... |
| CVE-2023-20700 | MEDIUM | 6.7 | 0.1% | May 15, 2023 | In widevine, there is a possible out of bounds write due to a logic error. This could lead to local escalation of privil... |
| CVE-2023-20699 | MEDIUM | 6.7 | 0.1% | May 15, 2023 | In adsp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of p... |
| CVE-2023-20698 | MEDIUM | 4.4 | 0.1% | May 15, 2023 | In keyinstall, there is a possible out of bounds read due to a missing bounds check. This could lead to local informatio... |
| CVE-2023-20697 | MEDIUM | 4.4 | 0.1% | May 15, 2023 | In keyinstall, there is a possible out of bounds read due to a missing bounds check. This could lead to local informatio... |
| CVE-2023-20696 | MEDIUM | 6.7 | 0.1% | May 15, 2023 | In preloader, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation... |
| CVE-2023-20695 | MEDIUM | 6.7 | 0.1% | May 15, 2023 | In preloader, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation... |
| CVE-2023-20694 | MEDIUM | 6.7 | 0.1% | May 15, 2023 | In preloader, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation... |
| CVE-2023-20673 | MEDIUM | 6.7 | 0.1% | May 15, 2023 | In vcu, there is a possible memory corruption due to type confusion. This could lead to local escalation of privilege wi... |
| CVE-2023-1729 | MEDIUM | 6.5 | 1.3% | May 15, 2023 | A flaw was found in LibRaw. A heap-buffer-overflow in raw2image_ex() caused by a maliciously crafted file may lead to an... |
| CVE-2023-32068 | MEDIUM | 6.1 | 55.1% | May 15, 2023 | XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. In versions pri... |
| CVE-2023-31145 | MEDIUM | 6.1 | 0.4% | May 15, 2023 | Collabora Online is a collaborative online office suite based on LibreOffice technology. This vulnerability report descr... |
| CVE-2023-32313 | MEDIUM | 5.3 | 0.8% | May 15, 2023 | vm2 is a sandbox that can run untrusted code with Node's built-in modules. In versions 3.9.17 and lower of vm2 it was po... |
| CVE-2023-2179 | MEDIUM | 6.5 | 0.3% | May 15, 2023 | The WooCommerce Order Status Change Notifier WordPress plugin through 1.1.0 does not have authorisation and CSRF when up... |
| CVE-2023-2009 | MEDIUM | 4.8 | 0.8% | May 15, 2023 | Plugin does not sanitize and escape the URL field in the Pretty Url WordPress plugin through 1.5.4 settings, which could... |
| CVE-2023-23682 | MEDIUM | 4.8 | 0.5% | May 15, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Snap Creek Software EZP Maintenance Mode plugin <= 1.0... |
| CVE-2023-1915 | MEDIUM | 6.1 | 0.5% | May 15, 2023 | The Thumbnail carousel slider WordPress plugin before 1.1.10 does not sanitise and escape some parameters before outputt... |
| CVE-2023-1890 | MEDIUM | 6.1 | 1.1% | May 15, 2023 | The Tablesome WordPress plugin before 1.0.9 does not escape various generated URLs, before outputting them in attributes... |
| CVE-2023-1839 | MEDIUM | 4.8 | 0.5% | May 15, 2023 | The Product Addons & Fields for WooCommerce WordPress plugin before 32.0.6 does not sanitize and escape some of its sett... |
| CVE-2023-1835 | MEDIUM | 6.1 | 0.9% | May 15, 2023 | The Ninja Forms Contact Form WordPress plugin before 3.6.22 does not properly escape user input before outputting it bac... |
| CVE-2023-1596 | MEDIUM | 6.1 | 0.5% | May 15, 2023 | The tagDiv Composer WordPress plugin before 4.0 does not sanitise and escape a parameter before outputting it back in th... |
| CVE-2023-1019 | MEDIUM | 5.4 | 0.5% | May 15, 2023 | The Help Desk WP WordPress plugin through 1.2.0 does not sanitise and escape some parameters, which could allow users wi... |
| CVE-2023-0892 | MEDIUM | 4.8 | 0.5% | May 15, 2023 | The BizLibrary WordPress plugin through 1.1 does not sanitise and escape some of its settings, which could allow high pr... |
| CVE-2023-0763 | MEDIUM | 4.3 | 0.3% | May 15, 2023 | The Clock In Portal- Staff & Attendance Management WordPress plugin through 2.1 does not have CSRF check when deleting H... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now