2023 CVE Vulnerabilities

31,267 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-22760HIGH7.2Authenticated remote command injection vulnerabilities exist in the ArubaOS web-based management interface. Successful e...
CVE-2023-22759HIGH7.2Authenticated remote command injection vulnerabilities exist in the ArubaOS web-based management interface. Successful e...
CVE-2023-22758HIGH7.2Authenticated remote command injection vulnerabilities exist in the ArubaOS web-based management interface. Successful e...
CVE-2023-20014HIGH7.5A vulnerability in the DNS functionality of Cisco Nexus Dashboard Software could allow an unauthenticated, remote attack...
CVE-2023-20009HIGH7.2A vulnerability in the Web UI and administrative CLI of the Cisco Secure Email Gateway (ESA) and Cisco Secure Email and ...
CVE-2023-0953HIGH8.8Insufficient input sanitization in the documentation feature of Devolutions Server 2022.3.12 and earlier allows an authe...
CVE-2023-0951HIGH8.8Improper access controls on some API endpoints in Devolutions Server 2022.3.12 and earlier could allow a standard privi...
CVE-2023-1105HIGH8.1External Control of File Name or Path in GitHub repository flatpressblog/flatpress prior to 1.3.
CVE-2023-0847HIGH8.1 The Sub-IoT implementation of the DASH 7 Alliance protocol has a vulnerability that can lead to an out-of-bounds write ...
CVE-2023-1017HIGH7.8An out-of-bounds write vulnerability exists in TPM2.0's Module Library allowing writing of a 2-byte data past the end of...
CVE-2023-27320HIGH7.2Sudo before 1.9.13p2 has a double free in the per-command chroot feature.
CVE-2023-25432HIGH7.2An issue was discovered in Online Reviewer Management System v1.0. There is a SQL injection that can directly issue inst...
CVE-2023-25540HIGH7.1 Dell PowerScale OneFS 9.4.0.x contains an incorrect default permissions vulnerability. A local malicious user could pot...
CVE-2023-23689HIGH7.5 Dell PowerScale nodes A200, A2000, H400, H500, H600, H5600, F800, F810 integrated hardware management software contains...
CVE-2023-20948HIGH7.5In dropFramesUntilIframe of AAVCAssembler.cpp, there is a possible out of bounds read due to a heap buffer overflow. Thi...
CVE-2023-20945HIGH7.8In phNciNfc_MfCreateXchgDataHdr of phNxpExtns_MifareStd.cpp, there is a possible out of bounds write due to a missing bo...
CVE-2023-20944HIGH7.8In run of ChooseTypeAndAccountActivity.java, there is a possible escalation of privilege due to unsafe deserialization. ...
CVE-2023-20943HIGH7.8In clearApplicationUserData of ActivityManagerService.java, there is a possible way to remove system files due to a path...
CVE-2023-20940HIGH7.8In the Android operating system, there is a possible way to replace a boot partition due to improperly used crypto. This...
CVE-2023-20939HIGH7.8In multiple functions of looper_backed_event_loop.cpp, there is a possible way to corrupt memory due to improper locking...
CVE-2023-20938HIGH7.8In binder_transaction_buffer_release of binder.c, there is a possible use after free due to improper input validation. T...
CVE-2023-20937HIGH7.8In several functions of the Android Linux kernel, there is a possible way to corrupt memory due to a use after free. Thi...
CVE-2023-20934HIGH7.8In resolveAttributionSource of ServiceUtilities.cpp, there is a possible way to disable the microphone privacy indicator...
CVE-2023-20933HIGH7.8In several functions of MediaCodec.cpp, there is a possible way to corrupt memory due to a use after free. This could le...
CVE-2023-26256HIGH7.5An unauthenticated path traversal vulnerability affects the "STAGIL Navigation for Jira - Menu & Themes" plugin before 2...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now