2023 CVE Vulnerabilities
31,267 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-22760 | HIGH | 7.2 | 1.6% | Mar 1, 2023 | Authenticated remote command injection vulnerabilities exist in the ArubaOS web-based management interface. Successful e... |
| CVE-2023-22759 | HIGH | 7.2 | 1.6% | Mar 1, 2023 | Authenticated remote command injection vulnerabilities exist in the ArubaOS web-based management interface. Successful e... |
| CVE-2023-22758 | HIGH | 7.2 | 1.6% | Mar 1, 2023 | Authenticated remote command injection vulnerabilities exist in the ArubaOS web-based management interface. Successful e... |
| CVE-2023-20014 | HIGH | 7.5 | 1.0% | Mar 1, 2023 | A vulnerability in the DNS functionality of Cisco Nexus Dashboard Software could allow an unauthenticated, remote attack... |
| CVE-2023-20009 | HIGH | 7.2 | 1.3% | Mar 1, 2023 | A vulnerability in the Web UI and administrative CLI of the Cisco Secure Email Gateway (ESA) and Cisco Secure Email and ... |
| CVE-2023-0953 | HIGH | 8.8 | 1.0% | Mar 1, 2023 | Insufficient input sanitization in the documentation feature of Devolutions Server 2022.3.12 and earlier allows an authe... |
| CVE-2023-0951 | HIGH | 8.8 | 1.0% | Mar 1, 2023 | Improper access controls on some API endpoints in Devolutions Server 2022.3.12 and earlier could allow a standard privi... |
| CVE-2023-1105 | HIGH | 8.1 | 0.7% | Mar 1, 2023 | External Control of File Name or Path in GitHub repository flatpressblog/flatpress prior to 1.3. |
| CVE-2023-0847 | HIGH | 8.1 | 0.8% | Mar 1, 2023 | The Sub-IoT implementation of the DASH 7 Alliance protocol has a vulnerability that can lead to an out-of-bounds write ... |
| CVE-2023-1017 | HIGH | 7.8 | 1.3% | Feb 28, 2023 | An out-of-bounds write vulnerability exists in TPM2.0's Module Library allowing writing of a 2-byte data past the end of... |
| CVE-2023-27320 | HIGH | 7.2 | 1.7% | Feb 28, 2023 | Sudo before 1.9.13p2 has a double free in the per-command chroot feature. |
| CVE-2023-25432 | HIGH | 7.2 | 0.7% | Feb 28, 2023 | An issue was discovered in Online Reviewer Management System v1.0. There is a SQL injection that can directly issue inst... |
| CVE-2023-25540 | HIGH | 7.1 | 0.2% | Feb 28, 2023 | Dell PowerScale OneFS 9.4.0.x contains an incorrect default permissions vulnerability. A local malicious user could pot... |
| CVE-2023-23689 | HIGH | 7.5 | 0.6% | Feb 28, 2023 | Dell PowerScale nodes A200, A2000, H400, H500, H600, H5600, F800, F810 integrated hardware management software contains... |
| CVE-2023-20948 | HIGH | 7.5 | 0.4% | Feb 28, 2023 | In dropFramesUntilIframe of AAVCAssembler.cpp, there is a possible out of bounds read due to a heap buffer overflow. Thi... |
| CVE-2023-20945 | HIGH | 7.8 | 0.2% | Feb 28, 2023 | In phNciNfc_MfCreateXchgDataHdr of phNxpExtns_MifareStd.cpp, there is a possible out of bounds write due to a missing bo... |
| CVE-2023-20944 | HIGH | 7.8 | 0.2% | Feb 28, 2023 | In run of ChooseTypeAndAccountActivity.java, there is a possible escalation of privilege due to unsafe deserialization. ... |
| CVE-2023-20943 | HIGH | 7.8 | 0.2% | Feb 28, 2023 | In clearApplicationUserData of ActivityManagerService.java, there is a possible way to remove system files due to a path... |
| CVE-2023-20940 | HIGH | 7.8 | 0.1% | Feb 28, 2023 | In the Android operating system, there is a possible way to replace a boot partition due to improperly used crypto. This... |
| CVE-2023-20939 | HIGH | 7.8 | 0.1% | Feb 28, 2023 | In multiple functions of looper_backed_event_loop.cpp, there is a possible way to corrupt memory due to improper locking... |
| CVE-2023-20938 | HIGH | 7.8 | 0.3% | Feb 28, 2023 | In binder_transaction_buffer_release of binder.c, there is a possible use after free due to improper input validation. T... |
| CVE-2023-20937 | HIGH | 7.8 | 0.2% | Feb 28, 2023 | In several functions of the Android Linux kernel, there is a possible way to corrupt memory due to a use after free. Thi... |
| CVE-2023-20934 | HIGH | 7.8 | 0.1% | Feb 28, 2023 | In resolveAttributionSource of ServiceUtilities.cpp, there is a possible way to disable the microphone privacy indicator... |
| CVE-2023-20933 | HIGH | 7.8 | 0.2% | Feb 28, 2023 | In several functions of MediaCodec.cpp, there is a possible way to corrupt memory due to a use after free. This could le... |
| CVE-2023-26256 | HIGH | 7.5 | 11.6% | Feb 28, 2023 | An unauthenticated path traversal vulnerability affects the "STAGIL Navigation for Jira - Menu & Themes" plugin before 2... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now