2023 CVE Vulnerabilities

31,397 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-5189MEDIUM6.5A path traversal vulnerability exists in Ansible when extracting tarballs. An attacker could craft a malicious tarball s...
CVE-2023-47518MEDIUM6.1Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Matthew Muro Restrict Categories plugin <= 2.6.4 versions.
CVE-2023-47517MEDIUM6.1Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in SendPress Newsletters plugin <= 1.23.11.6 versions.
CVE-2023-45627MEDIUM6.5An authenticated Denial-of-Service (DoS) vulnerability exists in the CLI service. Successful exploitation of this vulner...
CVE-2023-45626HIGH7.2An authenticated vulnerability has been identified allowing an attacker to effectively establish highly privileged persi...
CVE-2023-45625HIGH7.2Multiple authenticated command injection vulnerabilities exist in the command line interface. Successful exploitation of...
CVE-2023-45624HIGH7.5An unauthenticated Denial-of-Service (DoS) vulnerability exists in the soft ap daemon accessed via the PAPI protocol. Su...
CVE-2023-45623HIGH7.5Unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the Wi-Fi Uplink service accessed via the PAPI protocol...
CVE-2023-45622HIGH7.5Unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the BLE daemon service accessed via the PAPI protocol. ...
CVE-2023-45621HIGH7.5Unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the CLI service accessed via the PAPI protocol. Success...
CVE-2023-45620HIGH7.5Unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the CLI service accessed via the PAPI protocol. Success...
CVE-2023-45619HIGH8.2There is an arbitrary file deletion vulnerability in the RSSI service accessed by PAPI (Aruba's access point management ...
CVE-2023-45618HIGH8.2There are arbitrary file deletion vulnerabilities in the AirWave client service accessed by PAPI (Aruba's access point m...
CVE-2023-45617HIGH8.2There are arbitrary file deletion vulnerabilities in the CLI service accessed by PAPI (Aruba's access point management p...
CVE-2023-45616CRITICAL9.8There is a buffer overflow vulnerability in the underlying AirWave client service that could lead to unauthenticated rem...
CVE-2023-45615CRITICAL9.8There are buffer overflow vulnerabilities in the underlying CLI service that could lead to unauthenticated remote code e...
CVE-2023-45614CRITICAL9.8There are buffer overflow vulnerabilities in the underlying CLI service that could lead to unauthenticated remote code e...
CVE-2023-41570MEDIUM5.3MikroTik RouterOS v7.1 to 7.11 was discovered to contain incorrect access control mechanisms in place for the Rest API.
CVE-2023-39206HIGH7.5Buffer overflow in some Zoom clients may allow an unauthenticated user to conduct a denial of service via network access...
CVE-2023-39205MEDIUM6.5Improper conditions check in Zoom Team Chat for Zoom clients may allow an authenticated user to conduct a denial of serv...
CVE-2023-39204HIGH7.5Buffer overflow in some Zoom clients may allow an unauthenticated user to conduct a denial of service via network access...
CVE-2023-39203HIGH7.5Uncontrolled resource consumption in Zoom Team Chat for Zoom Desktop Client for Windows and Zoom VDI Client may allow an...
CVE-2023-39202MEDIUM5.5Untrusted search path in Zoom Rooms Client for Windows and Zoom VDI Client may allow a privileged user to conduct a deni...
CVE-2023-39199MEDIUM6.5Cryptographic issues with In-Meeting Chat for some Zoom clients may allow a privileged user to conduct an information di...
CVE-2023-48217HIGH8.8Statamic is a flat-first, Laravel + Git powered CMS designed for building websites. In affected versions certain additio...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now