2023 CVE Vulnerabilities

31,397 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-21535HIGH8.1Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability
CVE-2023-21532HIGH7Windows GDI Elevation of Privilege Vulnerability
CVE-2023-21531HIGH7Azure Service Fabric Container Elevation of Privilege Vulnerability
CVE-2023-21527HIGH7.5Windows iSCSI Service Denial of Service Vulnerability
CVE-2023-21524HIGH7.8Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability
CVE-2023-0138HIGH8.8Heap buffer overflow in libphonenumber in Google Chrome prior to 109.0.5414.74 allowed a remote attacker to potentially ...
CVE-2023-0137HIGH8.8Heap buffer overflow in Platform Apps in Google Chrome on Chrome OS prior to 109.0.5414.74 allowed an attacker who convi...
CVE-2023-0136HIGH8.8Inappropriate implementation in in Fullscreen API in Google Chrome on Android prior to 109.0.5414.74 allowed a remote at...
CVE-2023-0135HIGH8.8Use after free in Cart in Google Chrome prior to 109.0.5414.74 allowed an attacker who convinced a user to install a mal...
CVE-2023-0134HIGH8.8Use after free in Cart in Google Chrome prior to 109.0.5414.74 allowed an attacker who convinced a user to install a mal...
CVE-2023-0129HIGH8.8Heap buffer overflow in Network Service in Google Chrome prior to 109.0.5414.74 allowed an attacker who convinced a user...
CVE-2023-0128HIGH8.8Use after free in Overview Mode in Google Chrome on Chrome OS prior to 109.0.5414.74 allowed a remote attacker who convi...
CVE-2023-22320HIGH7.5OpenAM Web Policy Agent (OpenAM Consortium Edition) provided by OpenAM Consortium parses URLs improperly, leading to a p...
CVE-2023-0022HIGH8.8SAP BusinessObjects Business Intelligence Analysis edition for OLAP allows an authenticated attacker to inject malicious...
CVE-2023-0016HIGH8.8SAP BPC MS 10.0 - version 810, allows an unauthorized attacker to execute crafted database queries. The exploitation of ...
CVE-2023-22895HIGH7.5The bzip2 crate before 0.4.4 for Rust allow attackers to cause a denial of service via a large file that triggers an int...
CVE-2023-22477HIGH7.5Mercurius is a GraphQL adapter for Fastify. Any users of Mercurius until version 10.5.0 are subjected to a denial of ser...
CVE-2023-22472HIGH8.8Deck is a kanban style organization tool aimed at personal planning and project organization for teams integrated with N...
CVE-2023-0036HIGH7.8platform_callback_stub in misc subsystem within OpenHarmony-v3.0.5 and prior versions has an authentication bypass vulne...
CVE-2023-0035HIGH7.8softbus_client_stub in communication subsystem within OpenHarmony-v3.0.5 and prior versions has an authentication bypass...
CVE-2023-0113HIGH7.5A vulnerability was found in Netis Netcore Router up to 2.2.6. It has been declared as problematic. Affected by this vul...
CVE-2023-0088HIGH8.8The Swifty Page Manager plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includin...
CVE-2023-22626HIGH7.5PgHero before 3.1.0 allows Information Disclosure via EXPLAIN because query results may be present in an error message. ...
CVE-2023-22467HIGH7.5Luxon is a library for working with dates and times in JavaScript. On the 1.x branch prior to 1.38.1, the 2.x branch pri...
CVE-2023-0054HIGH7.8Out-of-bounds Write in GitHub repository vim/vim prior to 9.0.1145.

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now