2023 CVE Vulnerabilities
31,401 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-45810 | HIGH | 7.5 | 0.5% | Oct 17, 2023 | OpenFGA is a flexible authorization/permission engine built for developers and inspired by Google Zanzibar. Affected ver... |
| CVE-2023-42507 | HIGH | 7.8 | 0.2% | Oct 17, 2023 | Stack-based buffer overflow vulnerability exists in OnSinView2 versions 2.0.1 and earlier. If this vulnerability is expl... |
| CVE-2023-42506 | HIGH | 7.8 | 0.2% | Oct 17, 2023 | Improper restriction of operations within the bounds of a memory buffer issue exists in OnSinView2 versions 2.0.1 and ea... |
| CVE-2023-41715 | HIGH | 8.8 | 0.7% | Oct 17, 2023 | SonicOS post-authentication Improper Privilege Management vulnerability in the SonicOS SSL VPN Tunnel allows users to el... |
| CVE-2023-41713 | HIGH | 7.5 | 0.6% | Oct 17, 2023 | SonicOS Use of Hard-coded Password vulnerability in the 'dynHandleBuyToolbar' demo function. |
| CVE-2023-41712 | MEDIUM | 6.5 | 0.8% | Oct 17, 2023 | SonicOS post-authentication Stack-Based Buffer Overflow Vulnerability in the SSL VPN plainprefs.exp URL endpoint leads t... |
| CVE-2023-41711 | MEDIUM | 6.5 | 0.8% | Oct 17, 2023 | SonicOS post-authentication Stack-Based Buffer Overflow Vulnerability in the sonicwall.exp, prefs.exp URL endpoints lead... |
| CVE-2023-3042 | MEDIUM | 6.1 | 0.4% | Oct 17, 2023 | In dotCMS, versions mentioned, a flaw in the NormalizationFilter does not strip double slashes (//) from URLs, potential... |
| CVE-2023-39280 | MEDIUM | 6.5 | 0.8% | Oct 17, 2023 | SonicOS p ost-authentication Stack-Based Buffer Overflow vulnerability in the ssoStats-s.xml, ssoStats-s.wri URL endpoi... |
| CVE-2023-39279 | MEDIUM | 6.5 | 0.8% | Oct 17, 2023 | SonicOS post-authentication Stack-Based Buffer Overflow vulnerability in the getPacketReplayData.json URL endpoint leads... |
| CVE-2023-39278 | MEDIUM | 6.5 | 0.8% | Oct 17, 2023 | SonicOS post-authentication user assertion failure leads to Stack-Based Buffer Overflow vulnerability via main.cgi leads... |
| CVE-2023-39277 | MEDIUM | 6.5 | 0.8% | Oct 17, 2023 | SonicOS post-authentication stack-based buffer overflow vulnerability in the sonicflow.csv and appflowsessions.csv URL ... |
| CVE-2023-39276 | MEDIUM | 6.5 | 0.8% | Oct 17, 2023 | SonicOS post-authentication stack-based buffer overflow vulnerability in the getBookmarkList.json URL endpoint leads to... |
| CVE-2023-36321 | HIGH | 7.5 | 0.9% | Oct 17, 2023 | Connected Vehicle Systems Alliance (COVESA) up to v2.18.8 was discovered to contain a buffer overflow via the component ... |
| CVE-2023-41631 | HIGH | 8.8 | 1.1% | Oct 17, 2023 | eSST Monitoring v2.147.1 was discovered to contain a remote code execution (RCE) vulnerability via the file upload funct... |
| CVE-2023-41630 | CRITICAL | 9.8 | 1.2% | Oct 17, 2023 | eSST Monitoring v2.147.1 was discovered to contain a remote code execution (RCE) vulnerability via the Gii code generato... |
| CVE-2023-41629 | HIGH | 7.5 | 0.7% | Oct 17, 2023 | A lack of input sanitizing in the file download feature of eSST Monitoring v2.147.1 allows attackers to execute a path t... |
| CVE-2023-22130 | MEDIUM | 5.9 | 0.5% | Oct 17, 2023 | Vulnerability in the Sun ZFS Storage Appliance product of Oracle Systems (component: Core). The supported version that... |
| CVE-2023-22129 | MEDIUM | 5.5 | 0.2% | Oct 17, 2023 | Vulnerability in the Oracle Solaris product of Oracle Systems (component: Kernel). The supported version that is affec... |
| CVE-2023-22128 | LOW | 3.1 | 0.3% | Oct 17, 2023 | Vulnerability in the Oracle Solaris product of Oracle Systems (component: Filesystem). Supported versions that are affe... |
| CVE-2023-22127 | MEDIUM | 6.3 | 0.4% | Oct 17, 2023 | Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Content Access SDK, Im... |
| CVE-2023-22126 | MEDIUM | 5.3 | 0.4% | Oct 17, 2023 | Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). The sup... |
| CVE-2023-22125 | MEDIUM | 5.4 | 0.3% | Oct 17, 2023 | Vulnerability in the Oracle Banking Trade Finance product of Oracle Financial Services Applications (component: Infrastr... |
| CVE-2023-22124 | MEDIUM | 5.4 | 0.3% | Oct 17, 2023 | Vulnerability in the Oracle Banking Trade Finance product of Oracle Financial Services Applications (component: Infrastr... |
| CVE-2023-22123 | MEDIUM | 5.4 | 0.3% | Oct 17, 2023 | Vulnerability in the Oracle Banking Trade Finance product of Oracle Financial Services Applications (component: Infrastr... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now