2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-38105 | LOW | 3.3 | 0.4% | May 3, 2024 | Foxit PDF Reader PDF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows rem... |
| CVE-2023-46294 | LOW | 3.4 | 0.1% | May 1, 2024 | An issue was discovered in Teledyne FLIR M300 2.00-19. User account passwords are encrypted locally, and can be decrypte... |
| CVE-2023-46270 | LOW | 3.3 | 0.2% | Apr 29, 2024 | MacPaw The Unarchiver before 4.3.6 contains vulnerability related to missing quarantine attributes for extracted items. |
| CVE-2023-48184 | LOW | 3.9 | 0.3% | Apr 23, 2024 | QuickJS before 7414e5f has a quickjs.h JS_FreeValueRT use-after-free because of incorrect garbage collection of async fu... |
| CVE-2023-38301 | LOW | 3.4 | 0.2% | Apr 22, 2024 | An issue was discovered in a third-party component related to vendor.gsm.serial, shipped on devices from multiple device... |
| CVE-2023-51796 | LOW | 3.6 | 0.2% | Apr 19, 2024 | Buffer Overflow vulnerability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via the ... |
| CVE-2023-51792 | LOW | 3.3 | 0.2% | Apr 19, 2024 | Buffer Overflow vulnerability in libde265 v1.0.12 allows a local attacker to cause a denial of service via the allocatio... |
| CVE-2023-31028 | LOW | 2.8 | 0.2% | Apr 5, 2024 | NVIDIA nvJPEG2000 Library for Windows and Linux contains a vulnerability where improper input validation might enable a... |
| CVE-2023-6950 | LOW | 3 | 0.2% | Apr 2, 2024 | An Improper Input Validation vulnerability affecting the FTP service running on the DJI Mavic Mini 3 Pro could allow an ... |
| CVE-2023-6948 | LOW | 3 | 0.2% | Apr 2, 2024 | A Buffer Copy without Checking Size of Input issue affecting the v2_sdk_service running on a set of DJI drone devices on... |
| CVE-2023-51453 | LOW | 3 | 0.2% | Apr 2, 2024 | A Improper Input Validation issue affecting the v2_sdk_service running on a set of DJI drone devices on the port 10000 c... |
| CVE-2023-51452 | LOW | 3 | 0.2% | Apr 2, 2024 | A Improper Input Validation issue affecting the v2_sdk_service running on a set of DJI drone devices on the port 10000 c... |
| CVE-2023-50311 | LOW | 3.1 | 0.3% | Mar 31, 2024 | IBM CICS Transaction Gateway for Multiplatforms 9.2 and 9.3 could disclose sensitive path information to an attacker tha... |
| CVE-2023-46051 | LOW | 3.3 | 0.3% | Mar 27, 2024 | TeX Live 944e257 allows a NULL pointer dereference in texk/web2c/pdftexdir/tounicode.c. NOTE: this is disputed because i... |
| CVE-2023-33855 | LOW | 3.7 | 0.5% | Mar 26, 2024 | Under certain conditions, RSA operations performed by IBM Common Cryptographic Architecture (CCA) 7.0.0 through 7.5.36 m... |
| CVE-2023-23349 | LOW | 2.2 | 0.1% | Mar 22, 2024 | Kaspersky has fixed a security issue in Kaspersky Password Manager (KPM) for Windows that allowed a local user to recove... |
| CVE-2023-52620 | LOW | 2.5 | 0.2% | Mar 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: disallow timeout for anonymou... |
| CVE-2023-40160 | LOW | 3.7 | 0.7% | Mar 18, 2024 | Directory traversal vulnerability exists in Mailing List Search CGI (pmmls.exe) included in A.K.I Software's PMailServer... |
| CVE-2023-46181 | LOW | 3.3 | 0.2% | Mar 15, 2024 | IBM Sterling Secure Proxy 6.0.3 and 6.1.0 allows web pages to be stored locally which can be read by another user on the... |
| CVE-2023-27502 | LOW | 3.3 | 0.2% | Mar 14, 2024 | Insertion of sensitive information into log file for some Intel(R) Local Manageability Service software before version 2... |
| CVE-2023-52584 | LOW | 3.8 | 0.6% | Mar 6, 2024 | In the Linux kernel, the following vulnerability has been resolved: spmi: mediatek: Fix UAF on device remove The pmif ... |
| CVE-2023-42419 | LOW | 3.8 | 0.1% | Mar 5, 2024 | Maintenance Server, in Cybellum's QCOW air-gapped distribution (China Edition), versions 2.15.5 through 2.27, was compil... |
| CVE-2023-6068 | LOW | 3.1 | 0.3% | Mar 4, 2024 | On affected 7130 Series FPGA platforms running MOS and recent versions of the MultiAccess FPGA, application of ACL’s may... |
| CVE-2023-47634 | LOW | 3.1 | 0.4% | Feb 29, 2024 | Decidim is a participatory democracy framework. Starting in version 0.10.0 and prior to versions 0.26.9, 0.27.5, and 0.2... |
| CVE-2023-5775 | LOW | 2.7 | 0.4% | Feb 26, 2024 | The BackWPup plugin for WordPress is vulnerable to Plaintext Storage of Backup Destination Password in all versions up t... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now