2023 CVE Vulnerabilities
31,397 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-48303 | LOW | 2.7 | 0.7% | Nov 21, 2023 | Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 25.0.0 and prio... |
| CVE-2023-48302 | MEDIUM | 5.4 | 0.6% | Nov 21, 2023 | Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 25.0.0 and prio... |
| CVE-2023-48301 | MEDIUM | 5.4 | 0.6% | Nov 21, 2023 | Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 25.0.0 and prio... |
| CVE-2023-6238 | MEDIUM | 6.7 | 0.3% | Nov 21, 2023 | A buffer overflow vulnerability was found in the NVM Express (NVMe) driver in the Linux kernel. Only privileged user cou... |
| CVE-2023-48299 | MEDIUM | 5.3 | 0.7% | Nov 21, 2023 | TorchServe is a tool for serving and scaling PyTorch models in production. Starting in version 0.1.0 and prior to versio... |
| CVE-2023-48239 | HIGH | 7.1 | 0.9% | Nov 21, 2023 | Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 25.0.0 and prio... |
| CVE-2023-48230 | CRITICAL | 9.8 | 1.9% | Nov 21, 2023 | Cap'n Proto is a data interchange format and capability-based RPC system. In versions 1.0 and 1.0.1, when using the KJ H... |
| CVE-2023-48228 | CRITICAL | 9.8 | 1.2% | Nov 21, 2023 | authentik is an open-source identity provider. When initialising a oauth2 flow with a `code_challenge` and `code_method`... |
| CVE-2023-48226 | LOW | 3.5 | 0.8% | Nov 21, 2023 | OpenReplay is a self-hosted session replay suite. In version 1.14.0, due to lack of validation Name field - Account Sett... |
| CVE-2023-47643 | MEDIUM | 5.3 | 3.0% | Nov 21, 2023 | SuiteCRM is a Customer Relationship Management (CRM) software application. Prior to version 8.4.2, Graphql Introspection... |
| CVE-2023-20274 | HIGH | 7.8 | 0.2% | Nov 21, 2023 | A vulnerability in the installer script of Cisco AppDynamics PHP Agent could allow an authenticated, local attacker to e... |
| CVE-2023-20272 | HIGH | 8.8 | 0.9% | Nov 21, 2023 | A vulnerability in the web-based management interface of Cisco Identity Services Engine could allow an authenticated, re... |
| CVE-2023-20265 | MEDIUM | 5.4 | 0.5% | Nov 21, 2023 | A vulnerability in the web-based management interface of a small subset of Cisco IP Phones could allow an authenticated,... |
| CVE-2023-20208 | MEDIUM | 4.8 | 0.5% | Nov 21, 2023 | A vulnerability in the web-based management interface of Cisco ISE could allow an authenticated, remote attacker to cond... |
| CVE-2023-5055 | CRITICAL | 9.8 | 0.8% | Nov 21, 2023 | Possible variant of CVE-2021-3434 in function le_ecred_reconf_req. |
| CVE-2023-22521 | HIGH | 8.8 | 1.2% | Nov 21, 2023 | This High severity RCE (Remote Code Execution) vulnerability was introduced in version 3.4.6 of Crowd Data Center and Se... |
| CVE-2023-22516 | HIGH | 8.8 | 1.2% | Nov 21, 2023 | This High severity RCE (Remote Code Execution) vulnerability was introduced in versions 8.1.0, 8.2.0, 9.0.0, 9.1.0, 9.2.... |
| CVE-2023-46377 | — | — | — | Nov 21, 2023 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv... |
| CVE-2023-6213 | HIGH | 8.8 | 0.7% | Nov 21, 2023 | Memory safety bugs present in Firefox 119. Some of these bugs showed evidence of memory corruption and we presume that w... |
| CVE-2023-6212 | HIGH | 8.8 | 0.8% | Nov 21, 2023 | Memory safety bugs present in Firefox 119, Firefox ESR 115.4, and Thunderbird 115.4. Some of these bugs showed evidence ... |
| CVE-2023-6211 | MEDIUM | 6.5 | 0.5% | Nov 21, 2023 | If an attacker needed a user to load an insecure http: page and knew that user had enabled HTTPS-only mode, the attacker... |
| CVE-2023-6210 | MEDIUM | 6.5 | 0.6% | Nov 21, 2023 | When an https: web page created a pop-up from a "javascript:" URL, that pop-up was incorrectly allowed to load blockable... |
| CVE-2023-6209 | MEDIUM | 6.5 | 1.4% | Nov 21, 2023 | Relative URLs starting with three slashes were incorrectly parsed, and a path-traversal "/../" part in the path could be... |
| CVE-2023-6208 | HIGH | 8.8 | 0.8% | Nov 21, 2023 | When using X11, text selected by the page using the Selection API was erroneously copied into the primary selection, a t... |
| CVE-2023-6207 | HIGH | 8.8 | 0.8% | Nov 21, 2023 | Ownership mismanagement led to a use-after-free in ReadableByteStreams This vulnerability affects Firefox < 120, Firefox... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now