2023 CVE Vulnerabilities
31,397 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-21775 | HIGH | 8.3 | 1.0% | Jan 24, 2023 | Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability |
| CVE-2023-22484 | HIGH | 7.5 | 1.0% | Jan 23, 2023 | cmark-gfm is GitHub's fork of cmark, a CommonMark parsing and rendering library and program in C. Versions prior to 0.29... |
| CVE-2023-22483 | HIGH | 7.5 | 0.9% | Jan 23, 2023 | cmark-gfm is GitHub's fork of cmark, a CommonMark parsing and rendering library and program in C. Versions prior to 0.29... |
| CVE-2023-22960 | HIGH | 7.5 | 27.8% | Jan 23, 2023 | Lexmark products through 2023-01-10 have Improper Control of Interaction Frequency. |
| CVE-2023-23824 | HIGH | 8.8 | 0.7% | Jan 23, 2023 | Auth. SQL Injection (SQLi) vulnerability in WP-TopBar <= 5.36 versions. |
| CVE-2023-24099 | HIGH | 8.8 | 1.0% | Jan 23, 2023 | TrendNet Wireless AC Easy-Upgrader TEW-820AP v1.0R, firmware version 1.01.B01 was discovered to contain a stack overflow... |
| CVE-2023-24098 | HIGH | 8.8 | 1.0% | Jan 23, 2023 | TrendNet Wireless AC Easy-Upgrader TEW-820AP v1.0R, firmware version 1.01.B01 was discovered to contain a stack overflow... |
| CVE-2023-24097 | HIGH | 8.8 | 1.0% | Jan 23, 2023 | TrendNet Wireless AC Easy-Upgrader TEW-820AP v1.0R, firmware version 1.01.B01 was discovered to contain a stack overflow... |
| CVE-2023-24096 | HIGH | 8.8 | 1.0% | Jan 23, 2023 | TrendNet Wireless AC Easy-Upgrader TEW-820AP v1.0R, firmware version 1.01.B01 was discovered to contain a stack overflow... |
| CVE-2023-24095 | HIGH | 8.8 | 1.0% | Jan 23, 2023 | TrendNet Wireless AC Easy-Upgrader TEW-820AP v1.0R, firmware version 1.01.B01 was discovered to contain a stack overflow... |
| CVE-2023-24068 | HIGH | 7.8 | 0.4% | Jan 23, 2023 | Signal Desktop before 6.2.0 on Windows, Linux, and macOS allows an attacker to modify conversation attachments within th... |
| CVE-2023-23314 | HIGH | 8.8 | 1.2% | Jan 23, 2023 | An arbitrary file upload vulnerability in the /api/upload component of zdir v3.2.0 allows attackers to execute arbitrary... |
| CVE-2023-24059 | HIGH | 7.3 | 1.5% | Jan 22, 2023 | Grand Theft Auto V for PC allows attackers to achieve partial remote code execution or modify files on a PC, as exploite... |
| CVE-2023-0434 | HIGH | 7.5 | 0.8% | Jan 22, 2023 | Improper Input Validation in GitHub repository pyload/pyload prior to 0.5.0b3.dev40. |
| CVE-2023-22617 | HIGH | 7.5 | 7.3% | Jan 21, 2023 | A remote attacker might be able to cause infinite recursion in PowerDNS Recursor 4.8.0 via a DNS query that retrieves DS... |
| CVE-2023-0433 | HIGH | 7.8 | 0.6% | Jan 21, 2023 | Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1225. |
| CVE-2023-24042 | HIGH | 7.5 | 0.5% | Jan 21, 2023 | A race condition in LightFTP through 2.2 allows an attacker to achieve path traversal via a malformed FTP request. A han... |
| CVE-2023-24040 | HIGH | 7.1 | 0.5% | Jan 21, 2023 | dtprintinfo in Common Desktop Environment 1.6 has a bug in the parser of lpstat (an invoked external command) during lis... |
| CVE-2023-24039 | HIGH | 7.8 | 0.5% | Jan 21, 2023 | A stack-based buffer overflow in ParseColors in libXm in Common Desktop Environment 1.6 can be exploited by local low-pr... |
| CVE-2023-24038 | HIGH | 7.5 | 1.1% | Jan 21, 2023 | The HTML-StripScripts module through 1.06 for Perl allows _hss_attval_style ReDoS because of catastrophic backtracking f... |
| CVE-2023-22726 | HIGH | 8.8 | 1.3% | Jan 20, 2023 | act is a project which allows for local running of github actions. The artifact server that stores artifacts from Github... |
| CVE-2023-0052 | HIGH | 8.8 | 0.7% | Jan 20, 2023 | SAUTER Controls Nova 200–220 Series with firmware version 3.3-006 and prior and BACnetstac version 4.2.1 and prior allow... |
| CVE-2023-24025 | HIGH | 7.5 | 0.5% | Jan 20, 2023 | CRYSTALS-DILITHIUM (in Post-Quantum Cryptography Selected Algorithms 2022) in PQClean d03da30 may allow universal forger... |
| CVE-2023-24021 | HIGH | 7.5 | 0.9% | Jan 20, 2023 | Incorrect handling of '\0' bytes in file uploads in ModSecurity before 2.9.7 may allow for Web Application Firewall bypa... |
| CVE-2023-23492 | HIGH | 8.8 | 57.4% | Jan 20, 2023 | The Login with Phone Number WordPress Plugin, version < 1.4.2, is affected by an authenticated SQL injection vulnerabili... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now