2023 CVE Vulnerabilities

31,267 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-0930HIGH8.8Heap buffer overflow in Video in Google Chrome prior to 110.0.5481.177 allowed a remote attacker to potentially exploit ...
CVE-2023-0929HIGH8.8Use after free in Vulkan in Google Chrome prior to 110.0.5481.177 allowed a remote attacker to potentially exploit heap ...
CVE-2023-0928HIGH8.8Use after free in SwiftShader in Google Chrome prior to 110.0.5481.177 allowed a remote attacker to potentially exploit ...
CVE-2023-0927HIGH8.8Use after free in Web Payments API in Google Chrome on Android prior to 110.0.5481.177 allowed a remote attacker who had...
CVE-2023-25579HIGH7.5Nextcloud server is a self hosted home cloud product. In affected versions the `OC\Files\Node\Folder::getFullPath()` fun...
CVE-2023-0964HIGH8.1A vulnerability classified as critical has been found in SourceCodester Sales Tracker Management System 1.0. Affected is...
CVE-2023-0962HIGH8.8A vulnerability was found in SourceCodester Music Gallery Site 1.0. It has been declared as critical. This vulnerability...
CVE-2023-23040HIGH7.5TP-Link router TL-WR940N V6 3.19.1 Build 180119 uses a deprecated MD5 algorithm to hash the admin password used for basi...
CVE-2023-23063HIGH7.5Cellinx NVT v1.0.6.002b was discovered to contain a local file disclosure vulnerability via the component /cgi-bin/GetFi...
CVE-2023-26314HIGH8.8The mono package before 6.8.0.105+dfsg-3.3 for Debian allows arbitrary code execution because the application/x-ms-dos-e...
CVE-2023-20858HIGH7.2VMware Carbon Black App Control 8.7.x prior to 8.7.8, 8.8.x prior to 8.8.6, and 8.9.x.prior to 8.9.4 contain an injectio...
CVE-2023-20855HIGH8.8VMware vRealize Orchestrator contains an XML External Entity (XXE) vulnerability. A malicious actor, with non-administra...
CVE-2023-25812HIGH8.8Minio is a Multi-Cloud Object Storage framework. Affected versions do not correctly honor a `Deny` policy on ByPassGover...
CVE-2023-0943HIGH8.8A vulnerability, which was classified as problematic, has been found in SourceCodester Best POS Management System 1.0. T...
CVE-2023-24575HIGH7.8 Dell Multifunction Printer E525w Driver and Software Suite, versions prior to 1.047.2022, A05, contain a local privileg...
CVE-2023-26266HIGH7.3In AFL++ 4.05c, the CmpLog component uses the current working directory to resolve and execute unprefixed fuzzing target...
CVE-2023-26253HIGH7.5In Gluster GlusterFS 11.0, there is an xlators/mount/fuse/src/fuse-bridge.c notify stack-based buffer over-read.
CVE-2023-26249HIGH7.5Knot Resolver before 5.6.0 enables attackers to consume its resources, launching amplification attacks and potentially c...
CVE-2023-26242HIGH7.8afu_mmio_region_get_by_offset in drivers/fpga/dfl-afu-region.c in the Linux kernel through 6.1.12 has an integer overflo...
CVE-2023-25656HIGH7.5notation-go is a collection of libraries for supporting Notation sign, verify, push, and pull of oci artifacts. Prior to...
CVE-2023-25570HIGH7.5Apollo is a configuration management system. Prior to version 2.1.0, there are potential security issues if users expose...
CVE-2023-24998HIGH7.5Apache Commons FileUpload before 1.5 does not limit the number of request parts to be processed resulting in the possibi...
CVE-2023-26081HIGH7.5In Epiphany (aka GNOME Web) through 43.0, untrusted web content can trick users into exfiltrating passwords, because aut...
CVE-2023-0916HIGH8.8A vulnerability classified as critical was found in SourceCodester Auto Dealer Management System 1.0. Affected by this v...
CVE-2023-0915HIGH8.8A vulnerability classified as critical has been found in SourceCodester Auto Dealer Management System 1.0. Affected is a...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now