2023 CVE Vulnerabilities
31,267 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-0930 | HIGH | 8.8 | 0.7% | Feb 22, 2023 | Heap buffer overflow in Video in Google Chrome prior to 110.0.5481.177 allowed a remote attacker to potentially exploit ... |
| CVE-2023-0929 | HIGH | 8.8 | 0.6% | Feb 22, 2023 | Use after free in Vulkan in Google Chrome prior to 110.0.5481.177 allowed a remote attacker to potentially exploit heap ... |
| CVE-2023-0928 | HIGH | 8.8 | 0.6% | Feb 22, 2023 | Use after free in SwiftShader in Google Chrome prior to 110.0.5481.177 allowed a remote attacker to potentially exploit ... |
| CVE-2023-0927 | HIGH | 8.8 | 0.6% | Feb 22, 2023 | Use after free in Web Payments API in Google Chrome on Android prior to 110.0.5481.177 allowed a remote attacker who had... |
| CVE-2023-25579 | HIGH | 7.5 | 0.5% | Feb 22, 2023 | Nextcloud server is a self hosted home cloud product. In affected versions the `OC\Files\Node\Folder::getFullPath()` fun... |
| CVE-2023-0964 | HIGH | 8.1 | 0.5% | Feb 22, 2023 | A vulnerability classified as critical has been found in SourceCodester Sales Tracker Management System 1.0. Affected is... |
| CVE-2023-0962 | HIGH | 8.8 | 1.7% | Feb 22, 2023 | A vulnerability was found in SourceCodester Music Gallery Site 1.0. It has been declared as critical. This vulnerability... |
| CVE-2023-23040 | HIGH | 7.5 | 0.4% | Feb 22, 2023 | TP-Link router TL-WR940N V6 3.19.1 Build 180119 uses a deprecated MD5 algorithm to hash the admin password used for basi... |
| CVE-2023-23063 | HIGH | 7.5 | 2.4% | Feb 22, 2023 | Cellinx NVT v1.0.6.002b was discovered to contain a local file disclosure vulnerability via the component /cgi-bin/GetFi... |
| CVE-2023-26314 | HIGH | 8.8 | 1.0% | Feb 22, 2023 | The mono package before 6.8.0.105+dfsg-3.3 for Debian allows arbitrary code execution because the application/x-ms-dos-e... |
| CVE-2023-20858 | HIGH | 7.2 | 16.9% | Feb 22, 2023 | VMware Carbon Black App Control 8.7.x prior to 8.7.8, 8.8.x prior to 8.8.6, and 8.9.x.prior to 8.9.4 contain an injectio... |
| CVE-2023-20855 | HIGH | 8.8 | 1.3% | Feb 22, 2023 | VMware vRealize Orchestrator contains an XML External Entity (XXE) vulnerability. A malicious actor, with non-administra... |
| CVE-2023-25812 | HIGH | 8.8 | 1.0% | Feb 21, 2023 | Minio is a Multi-Cloud Object Storage framework. Affected versions do not correctly honor a `Deny` policy on ByPassGover... |
| CVE-2023-0943 | HIGH | 8.8 | 2.3% | Feb 21, 2023 | A vulnerability, which was classified as problematic, has been found in SourceCodester Best POS Management System 1.0. T... |
| CVE-2023-24575 | HIGH | 7.8 | 0.2% | Feb 21, 2023 | Dell Multifunction Printer E525w Driver and Software Suite, versions prior to 1.047.2022, A05, contain a local privileg... |
| CVE-2023-26266 | HIGH | 7.3 | 0.4% | Feb 21, 2023 | In AFL++ 4.05c, the CmpLog component uses the current working directory to resolve and execute unprefixed fuzzing target... |
| CVE-2023-26253 | HIGH | 7.5 | 0.9% | Feb 21, 2023 | In Gluster GlusterFS 11.0, there is an xlators/mount/fuse/src/fuse-bridge.c notify stack-based buffer over-read. |
| CVE-2023-26249 | HIGH | 7.5 | 0.7% | Feb 21, 2023 | Knot Resolver before 5.6.0 enables attackers to consume its resources, launching amplification attacks and potentially c... |
| CVE-2023-26242 | HIGH | 7.8 | 0.2% | Feb 21, 2023 | afu_mmio_region_get_by_offset in drivers/fpga/dfl-afu-region.c in the Linux kernel through 6.1.12 has an integer overflo... |
| CVE-2023-25656 | HIGH | 7.5 | 0.4% | Feb 20, 2023 | notation-go is a collection of libraries for supporting Notation sign, verify, push, and pull of oci artifacts. Prior to... |
| CVE-2023-25570 | HIGH | 7.5 | 0.8% | Feb 20, 2023 | Apollo is a configuration management system. Prior to version 2.1.0, there are potential security issues if users expose... |
| CVE-2023-24998 | HIGH | 7.5 | 46.8% | Feb 20, 2023 | Apache Commons FileUpload before 1.5 does not limit the number of request parts to be processed resulting in the possibi... |
| CVE-2023-26081 | HIGH | 7.5 | 1.2% | Feb 20, 2023 | In Epiphany (aka GNOME Web) through 43.0, untrusted web content can trick users into exfiltrating passwords, because aut... |
| CVE-2023-0916 | HIGH | 8.8 | 3.1% | Feb 19, 2023 | A vulnerability classified as critical was found in SourceCodester Auto Dealer Management System 1.0. Affected by this v... |
| CVE-2023-0915 | HIGH | 8.8 | 1.7% | Feb 19, 2023 | A vulnerability classified as critical has been found in SourceCodester Auto Dealer Management System 1.0. Affected is a... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now