2023 CVE Vulnerabilities

31,397 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-44002Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2023-46862MEDIUM4.7An issue was discovered in the Linux kernel through 6.5.9. During a race with SQ thread exit, an io_uring/fdinfo.c io_ur...
CVE-2023-40685HIGH7.8Management Central as part of IBM i 7.2, 7.3, 7.4, and 7.5 Navigator contains a local privilege escalation vulnerability...
CVE-2023-5840HIGH8.8Weak Password Recovery Mechanism for Forgotten Password in GitHub repository linkstackorg/linkstack prior to v4.2.9.
CVE-2023-5839HIGH7.8Privilege Chaining in GitHub repository hestiacp/hestiacp prior to 1.8.9.
CVE-2023-5838CRITICAL9.8Insufficient Session Expiration in GitHub repository linkstackorg/linkstack prior to v4.2.9.
CVE-2023-46858MEDIUM5.4Moodle 4.3 allows /grade/report/grader/index.php?searchvalue= reflected XSS when logged in as a teacher. NOTE: the Moodl...
CVE-2023-43041MEDIUM4.9IBM QRadar SIEM 7.5 is vulnerable to information exposure allowing a delegated Admin tenant user with a specific domain ...
CVE-2023-40686HIGH7.8Management Central as part of IBM i 7.2, 7.3, 7.4, and 7.5 Navigator contains a local privilege escalation vulnerability...
CVE-2023-5837MEDIUM6.1A vulnerability classified as problematic was found in AlexanderLivanov FotosCMS2 up to 2.4.3. This vulnerability affect...
CVE-2023-5836CRITICAL9.8A vulnerability was found in SourceCodester Task Reminder System 1.0. It has been rated as critical. Affected by this is...
CVE-2023-46854MEDIUM6.1Proxmox proxmox-widget-toolkit before 4.0.9, as used in multiple Proxmox products, allows XSS via the edit notes feature...
CVE-2023-45897MEDIUM5.5exfatprogs before 1.2.2 allows out-of-bounds memory access, such as in read_file_dentry_set.
CVE-2023-5835MEDIUM6.1A vulnerability classified as problematic was found in hu60t hu60wap6. Affected by this vulnerability is the function ma...
CVE-2023-5426HIGH7.5The Post Meta Data Manager plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capa...
CVE-2023-5425HIGH8.8The Post Meta Data Manager plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capa...
CVE-2023-46215HIGH7.5Insertion of Sensitive Information into Log File vulnerability in Apache Airflow Celery provider, Apache Airflow. Sensi...
CVE-2023-46570CRITICAL9.8An out-of-bounds read in radare2 v.5.8.9 and before exists in the print_insn32 function of libr/arch/p/nds32/nds32-dis.h...
CVE-2023-46569CRITICAL9.8An out-of-bounds read in radare2 v.5.8.9 and before exists in the print_insn32_fpu function of libr/arch/p/nds32/nds32-d...
CVE-2023-46468HIGH7.8An issue in juzawebCMS v.3.4 and before allows a remote attacker to execute arbitrary code via a crafted file to the cus...
CVE-2023-46467MEDIUM5.4Cross Site Scripting vulnerability in juzawebCMS v.3.4 and before allows a remote attacker to execute arbitrary code via...
CVE-2023-43322HIGH8.8ZPE Systems, Inc Nodegrid OS v5.0.0 to v5.0.17, v5.2.0 to v5.2.19, v5.4.0 to v5.4.16, v5.6.0 to v5.6.13, v5.8.0 to v5.8....
CVE-2023-46587HIGH7.8Buffer Overflow vulnerability in XnView Classic v.2.51.5 allows a local attacker to execute arbitrary code via a crafted...
CVE-2023-5834HIGH7.8HashiCorp Vagrant's Windows installer targeted a custom location with a non-protected path that could be junctioned, int...
CVE-2023-46490MEDIUM6.5SQL Injection vulnerability in Cacti v1.2.25 allows a remote attacker to obtain sensitive information via the form_actio...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now