2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-46773 | CRITICAL | 9.8 | 0.5% | Dec 6, 2023 | Permission management vulnerability in the PMS module. Successful exploitation of this vulnerability may cause privilege... |
| CVE-2023-48849 | CRITICAL | 9.8 | 1.3% | Dec 6, 2023 | Ruijie EG Series Routers version EG_3.0(1)B11P216 and before allows unauthenticated attackers to remotely execute arbitr... |
| CVE-2023-22524 | CRITICAL | 9.8 | 24.7% | Dec 6, 2023 | Certain versions of the Atlassian Companion App for MacOS were affected by a remote code execution vulnerability. An att... |
| CVE-2023-41268 | CRITICAL | 9.8 | 0.7% | Dec 6, 2023 | Improper input validation vulnerability in Samsung Open Source Escargot allows stack overflow and segmentation fault. Th... |
| CVE-2023-48930 | CRITICAL | 9.8 | 1.2% | Dec 6, 2023 | xinhu xinhuoa 2.2.1 contains a File upload vulnerability. |
| CVE-2023-6448 | CRITICAL | 9.8 | 2.1% | Dec 5, 2023 | Unitronics VisiLogic before version 9.9.00, used in Vision and Samba PLCs and HMIs, uses a default administrative passwo... |
| CVE-2023-6269 | CRITICAL | 9.8 | 1.9% | Dec 5, 2023 | An argument injection vulnerability has been identified in the administrative web interface of the Atos Unify OpenScape... |
| CVE-2023-49070 | CRITICAL | 9.8 | 95.4% | Dec 5, 2023 | Pre-auth RCE in Apache Ofbiz 18.12.09. It's due to XML-RPC no longer maintained still present. This issue affects Apach... |
| CVE-2023-42580 | CRITICAL | 9.8 | 1.0% | Dec 5, 2023 | Improper URL validation from MCSLaunch deeplink in Galaxy Store prior to version 4.5.64.4 allows attackers to execute Ja... |
| CVE-2023-33083 | CRITICAL | 9.8 | 0.5% | Dec 5, 2023 | Memory corruption in WLAN Host while processing RRM beacon on the AP. |
| CVE-2023-33082 | CRITICAL | 9.8 | 0.5% | Dec 5, 2023 | Memory corruption while sending an Assoc Request having BTM Query or BTM Response containing MBO IE. |
| CVE-2023-33054 | CRITICAL | 9.1 | 0.4% | Dec 5, 2023 | Cryptographic issue in GPS HLOS Driver while downloading Qualcomm GNSS assistance data. |
| CVE-2023-48698 | CRITICAL | 9.8 | 0.9% | Dec 5, 2023 | Azure RTOS USBX is a USB host, device, and on-the-go (OTG) embedded stack, that is fully integrated with Azure RTOS Thre... |
| CVE-2023-48697 | CRITICAL | 9.8 | 1.2% | Dec 5, 2023 | Azure RTOS USBX is a USB host, device, and on-the-go (OTG) embedded stack, that is fully integrated with Azure RTOS Thre... |
| CVE-2023-48696 | CRITICAL | 9.8 | 0.9% | Dec 5, 2023 | Azure RTOS USBX is a USB host, device, and on-the-go (OTG) embedded stack, that is fully integrated with Azure RTOS Thre... |
| CVE-2023-48695 | CRITICAL | 9.8 | 1.2% | Dec 5, 2023 | Azure RTOS USBX is a USB host, device, and on-the-go (OTG) embedded stack, that is fully integrated with Azure RTOS Thre... |
| CVE-2023-48694 | CRITICAL | 9.8 | 1.3% | Dec 5, 2023 | Azure RTOS USBX is a USB host, device, and on-the-go (OTG) embedded stack, that is fully integrated with Azure RTOS Thre... |
| CVE-2023-48693 | CRITICAL | 9.8 | 1.3% | Dec 5, 2023 | Azure RTOS ThreadX is an advanced real-time operating system (RTOS) designed specifically for deeply embedded applicati... |
| CVE-2023-48692 | CRITICAL | 9.8 | 3.1% | Dec 5, 2023 | Azure RTOS NetX Duo is a TCP/IP network stack designed specifically for deeply embedded real-time and IoT applications. ... |
| CVE-2023-48691 | CRITICAL | 9.8 | 3.1% | Dec 5, 2023 | Azure RTOS NetX Duo is a TCP/IP network stack designed specifically for deeply embedded real-time and IoT applications. ... |
| CVE-2023-48316 | CRITICAL | 9.8 | 4.3% | Dec 5, 2023 | Azure RTOS NetX Duo is a TCP/IP network stack designed specifically for deeply embedded real-time and IoT applications. ... |
| CVE-2023-48315 | CRITICAL | 9.8 | 3.9% | Dec 5, 2023 | Azure RTOS NetX Duo is a TCP/IP network stack designed specifically for deeply embedded real-time and IoT applications. ... |
| CVE-2023-49291 | CRITICAL | 9.8 | 1.4% | Dec 5, 2023 | tj-actions/branch-names is a Github action to retrieve branch or tag names with support for all events. The `tj-actions/... |
| CVE-2023-40082 | CRITICAL | 9.8 | 0.6% | Dec 4, 2023 | In modify_for_next_stage of fdt.rs, there is a possible way to render KASLR ineffective due to improperly used crypto. T... |
| CVE-2023-40078 | CRITICAL | 9.8 | 0.5% | Dec 4, 2023 | In a2dp_vendor_opus_decoder_decode_packet of a2dp_vendor_opus_decoder.cc, there is a possible out of bounds write due to... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now