2023 CVE Vulnerabilities
31,397 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-5921 | HIGH | 7.1 | 0.2% | Nov 22, 2023 | Improper Enforcement of Behavioral Workflow vulnerability in DECE Software Geodi allows Functionality Bypass. This issu... |
| CVE-2023-2447 | MEDIUM | 6.1 | 0.2% | Nov 22, 2023 | The UserPro plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 5.1.1. Th... |
| CVE-2023-2446 | MEDIUM | 6.5 | 0.8% | Nov 22, 2023 | The UserPro plugin for WordPress is vulnerable to sensitive information disclosure via the 'userpro' shortcode in versio... |
| CVE-2023-47393 | MEDIUM | 5.3 | 0.5% | Nov 22, 2023 | An access control issue in Mercedes me IOS APP v1.34.0 and below allows attackers to view the maintenance orders of othe... |
| CVE-2023-47392 | MEDIUM | 5.3 | 0.5% | Nov 22, 2023 | An access control issue in Mercedes me IOS APP v1.34.0 and below allows attackers to view the carts of other users via s... |
| CVE-2023-47016 | HIGH | 7.5 | 1.2% | Nov 22, 2023 | radare2 5.8.9 has an out-of-bounds read in r_bin_object_set_items in libr/bin/bobj.c, causing a crash in r_read_le32 in ... |
| CVE-2023-41146 | MEDIUM | 4.3 | 0.5% | Nov 22, 2023 | Autodesk Customer Support Portal allows cases created by users under an account to see cases created by other users on t... |
| CVE-2023-41145 | MEDIUM | 5.3 | 0.5% | Nov 22, 2023 | Autodesk users who no longer have an active license for an account can still access cases for that account. |
| CVE-2023-29069 | HIGH | 7.8 | 0.3% | Nov 22, 2023 | A maliciously crafted DLL file can be forced to install onto a non-default location, and attacker can overwrite parts of... |
| CVE-2023-48161 | HIGH | 7.1 | 0.4% | Nov 22, 2023 | Buffer Overflow vulnerability in GifLib Project GifLib v.5.2.1 allows a local attacker to obtain sensitive information v... |
| CVE-2023-46814 | HIGH | 7.8 | 0.3% | Nov 22, 2023 | A binary hijacking vulnerability exists within the VideoLAN VLC media player before 3.0.19 on Windows. The uninstaller a... |
| CVE-2023-5299 | HIGH | 8.8 | 0.5% | Nov 22, 2023 | A user with a standard account in Fuji Electric Tellus Lite may overwrite files in the system. |
| CVE-2023-40152 | HIGH | 7.8 | 0.3% | Nov 22, 2023 | When Fuji Electric Tellus Lite V-Simulator parses a specially-crafted input file an out of bounds write may occur. |
| CVE-2023-35127 | HIGH | 7.8 | 0.3% | Nov 22, 2023 | Stack-based buffer overflow may occur when Fuji Electric Tellus Lite V-Simulator parses a specially-crafted input file. |
| CVE-2023-48701 | MEDIUM | 6.1 | 0.7% | Nov 21, 2023 | Statamic CMS is a Laravel and Git powered content management system (CMS). Prior to versions 3.4.15 an 4.36.0, HTML file... |
| CVE-2023-48700 | MEDIUM | 6.5 | 0.4% | Nov 21, 2023 | The Nautobot Device Onboarding plugin uses the netmiko and NAPALM libraries to simplify the onboarding process of a new ... |
| CVE-2023-48699 | CRITICAL | 9.8 | 0.7% | Nov 21, 2023 | fastbots is a library for fast bot and scraper development using selenium and the Page Object Model (POM) design. Prior ... |
| CVE-2023-48307 | CRITICAL | 9.8 | 0.9% | Nov 21, 2023 | Nextcloud Mail is the mail app for Nextcloud, a self-hosted productivity platform. Starting in version 1.13.0 and prior ... |
| CVE-2023-48306 | CRITICAL | 9.8 | 0.8% | Nov 21, 2023 | Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 25.0.0 and prio... |
| CVE-2023-48305 | MEDIUM | 4.4 | 0.2% | Nov 21, 2023 | Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 25.0.0 and prio... |
| CVE-2023-6248 | CRITICAL | 9.8 | 1.2% | Nov 21, 2023 | The Syrus4 IoT gateway utilizes an unsecured MQTT server to download and execute arbitrary commands, allowing a remote u... |
| CVE-2023-49105 | CRITICAL | 9.8 | 11.1% | Nov 21, 2023 | An issue was discovered in ownCloud owncloud/core before 10.13.1. An attacker can access, modify, or delete any file wit... |
| CVE-2023-49104 | MEDIUM | 6.1 | 0.6% | Nov 21, 2023 | An issue was discovered in ownCloud owncloud/oauth2 before 0.6.1, when Allow Subdomains is enabled. An attacker is able ... |
| CVE-2023-49103 | HIGH | 7.5 | 78.4% | Nov 21, 2023 | An issue was discovered in ownCloud owncloud/graphapi 0.2.x before 0.2.1 and 0.3.x before 0.3.1. The graphapi app relies... |
| CVE-2023-48304 | MEDIUM | 4.3 | 0.6% | Nov 21, 2023 | Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 25.0.0 and prio... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now