2023 CVE Vulnerabilities

31,401 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-45810HIGH7.5OpenFGA is a flexible authorization/permission engine built for developers and inspired by Google Zanzibar. Affected ver...
CVE-2023-42507HIGH7.8Stack-based buffer overflow vulnerability exists in OnSinView2 versions 2.0.1 and earlier. If this vulnerability is expl...
CVE-2023-42506HIGH7.8Improper restriction of operations within the bounds of a memory buffer issue exists in OnSinView2 versions 2.0.1 and ea...
CVE-2023-41715HIGH8.8SonicOS post-authentication Improper Privilege Management vulnerability in the SonicOS SSL VPN Tunnel allows users to el...
CVE-2023-41713HIGH7.5SonicOS Use of Hard-coded Password vulnerability in the 'dynHandleBuyToolbar' demo function.
CVE-2023-41712MEDIUM6.5SonicOS post-authentication Stack-Based Buffer Overflow Vulnerability in the SSL VPN plainprefs.exp URL endpoint leads t...
CVE-2023-41711MEDIUM6.5SonicOS post-authentication Stack-Based Buffer Overflow Vulnerability in the sonicwall.exp, prefs.exp URL endpoints lead...
CVE-2023-3042MEDIUM6.1In dotCMS, versions mentioned, a flaw in the NormalizationFilter does not strip double slashes (//) from URLs, potential...
CVE-2023-39280MEDIUM6.5SonicOS p ost-authentication Stack-Based Buffer Overflow vulnerability in the ssoStats-s.xml, ssoStats-s.wri URL endpoi...
CVE-2023-39279MEDIUM6.5SonicOS post-authentication Stack-Based Buffer Overflow vulnerability in the getPacketReplayData.json URL endpoint leads...
CVE-2023-39278MEDIUM6.5SonicOS post-authentication user assertion failure leads to Stack-Based Buffer Overflow vulnerability via main.cgi leads...
CVE-2023-39277MEDIUM6.5 SonicOS post-authentication stack-based buffer overflow vulnerability in the sonicflow.csv and appflowsessions.csv URL ...
CVE-2023-39276MEDIUM6.5 SonicOS post-authentication stack-based buffer overflow vulnerability in the getBookmarkList.json URL endpoint leads to...
CVE-2023-36321HIGH7.5Connected Vehicle Systems Alliance (COVESA) up to v2.18.8 was discovered to contain a buffer overflow via the component ...
CVE-2023-41631HIGH8.8eSST Monitoring v2.147.1 was discovered to contain a remote code execution (RCE) vulnerability via the file upload funct...
CVE-2023-41630CRITICAL9.8eSST Monitoring v2.147.1 was discovered to contain a remote code execution (RCE) vulnerability via the Gii code generato...
CVE-2023-41629HIGH7.5A lack of input sanitizing in the file download feature of eSST Monitoring v2.147.1 allows attackers to execute a path t...
CVE-2023-22130MEDIUM5.9Vulnerability in the Sun ZFS Storage Appliance product of Oracle Systems (component: Core). The supported version that...
CVE-2023-22129MEDIUM5.5Vulnerability in the Oracle Solaris product of Oracle Systems (component: Kernel). The supported version that is affec...
CVE-2023-22128LOW3.1Vulnerability in the Oracle Solaris product of Oracle Systems (component: Filesystem). Supported versions that are affe...
CVE-2023-22127MEDIUM6.3Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Content Access SDK, Im...
CVE-2023-22126MEDIUM5.3Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Content Server). The sup...
CVE-2023-22125MEDIUM5.4Vulnerability in the Oracle Banking Trade Finance product of Oracle Financial Services Applications (component: Infrastr...
CVE-2023-22124MEDIUM5.4Vulnerability in the Oracle Banking Trade Finance product of Oracle Financial Services Applications (component: Infrastr...
CVE-2023-22123MEDIUM5.4Vulnerability in the Oracle Banking Trade Finance product of Oracle Financial Services Applications (component: Infrastr...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now