2023 CVE Vulnerabilities

31,397 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-48303LOW2.7Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 25.0.0 and prio...
CVE-2023-48302MEDIUM5.4Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 25.0.0 and prio...
CVE-2023-48301MEDIUM5.4Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 25.0.0 and prio...
CVE-2023-6238MEDIUM6.7A buffer overflow vulnerability was found in the NVM Express (NVMe) driver in the Linux kernel. Only privileged user cou...
CVE-2023-48299MEDIUM5.3TorchServe is a tool for serving and scaling PyTorch models in production. Starting in version 0.1.0 and prior to versio...
CVE-2023-48239HIGH7.1Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 25.0.0 and prio...
CVE-2023-48230CRITICAL9.8Cap'n Proto is a data interchange format and capability-based RPC system. In versions 1.0 and 1.0.1, when using the KJ H...
CVE-2023-48228CRITICAL9.8authentik is an open-source identity provider. When initialising a oauth2 flow with a `code_challenge` and `code_method`...
CVE-2023-48226LOW3.5OpenReplay is a self-hosted session replay suite. In version 1.14.0, due to lack of validation Name field - Account Sett...
CVE-2023-47643MEDIUM5.3SuiteCRM is a Customer Relationship Management (CRM) software application. Prior to version 8.4.2, Graphql Introspection...
CVE-2023-20274HIGH7.8A vulnerability in the installer script of Cisco AppDynamics PHP Agent could allow an authenticated, local attacker to e...
CVE-2023-20272HIGH8.8A vulnerability in the web-based management interface of Cisco Identity Services Engine could allow an authenticated, re...
CVE-2023-20265MEDIUM5.4A vulnerability in the web-based management interface of a small subset of Cisco IP Phones could allow an authenticated,...
CVE-2023-20208MEDIUM4.8A vulnerability in the web-based management interface of Cisco ISE could allow an authenticated, remote attacker to cond...
CVE-2023-5055CRITICAL9.8Possible variant of CVE-2021-3434 in function le_ecred_reconf_req.
CVE-2023-22521HIGH8.8This High severity RCE (Remote Code Execution) vulnerability was introduced in version 3.4.6 of Crowd Data Center and Se...
CVE-2023-22516HIGH8.8This High severity RCE (Remote Code Execution) vulnerability was introduced in versions 8.1.0, 8.2.0, 9.0.0, 9.1.0, 9.2....
CVE-2023-46377Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv...
CVE-2023-6213HIGH8.8Memory safety bugs present in Firefox 119. Some of these bugs showed evidence of memory corruption and we presume that w...
CVE-2023-6212HIGH8.8Memory safety bugs present in Firefox 119, Firefox ESR 115.4, and Thunderbird 115.4. Some of these bugs showed evidence ...
CVE-2023-6211MEDIUM6.5If an attacker needed a user to load an insecure http: page and knew that user had enabled HTTPS-only mode, the attacker...
CVE-2023-6210MEDIUM6.5When an https: web page created a pop-up from a "javascript:" URL, that pop-up was incorrectly allowed to load blockable...
CVE-2023-6209MEDIUM6.5Relative URLs starting with three slashes were incorrectly parsed, and a path-traversal "/../" part in the path could be...
CVE-2023-6208HIGH8.8When using X11, text selected by the page using the Selection API was erroneously copied into the primary selection, a t...
CVE-2023-6207HIGH8.8Ownership mismanagement led to a use-after-free in ReadableByteStreams This vulnerability affects Firefox < 120, Firefox...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now