2023 CVE Vulnerabilities

31,401 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-36340CRITICAL9.8TOTOLINK NR1800X V9.1.0u.6279_B20210910 was discovered to contain a stack overflow via the http_host parameter in the fu...
CVE-2023-45898HIGH7.8The Linux kernel before 6.5.4 has an es1 use-after-free in fs/ext4/extents_status.c, related to ext4_es_insert_extent.
CVE-2023-40791MEDIUM6.3extract_user_to_sg in lib/scatterlist.c in the Linux kernel before 6.4.12 fails to unpin pages in a certain situation, a...
CVE-2023-40790Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2023-38280HIGH7.8IBM HMC (Hardware Management Console) 10.1.1010.0 and 10.2.1030.0 could allow a local user to escalate their privileges ...
CVE-2023-5591MEDIUM6.5 SQL Injection in GitHub repository librenms/librenms prior to 23.10.0.
CVE-2023-40377HIGH7.8Backup, Recovery, and Media Services (BRMS) for IBM i 7.2, 7.3, and 7.4 contains a local privilege escalation vulnerabil...
CVE-2023-33836CRITICAL9.8IBM Security Verify Governance 10.0 contains hard-coded credentials, such as a password or cryptographic key, which it u...
CVE-2023-35018HIGH7.2IBM Security Verify Governance 10.0 could allow a privileged use to upload arbitrary files due to improper file validati...
CVE-2023-35013MEDIUM4.4IBM Security Verify Governance 10.0, Identity Manager could allow a local privileged user to obtain sensitive informatio...
CVE-2023-5590HIGH7.5NULL Pointer Dereference in GitHub repository seleniumhq/selenium prior to 4.14.0.
CVE-2023-5589CRITICAL9.8A vulnerability was found in SourceCodester Judging Management System 1.0. It has been declared as critical. This vulner...
CVE-2023-5588MEDIUM5.3A vulnerability was found in kphrx pleroma. It has been classified as problematic. This affects the function Pleroma.Emo...
CVE-2023-5587CRITICAL9.8A vulnerability was found in SourceCodester Free Hospital Management System for Small Practices 1.0 and classified as cr...
CVE-2023-38312HIGH7.5A directory traversal vulnerability in Valve Counter-Strike 8684 allows a client (with remote control access to a game s...
CVE-2023-40378HIGH7.8IBM Directory Server for IBM i contains a local privilege escalation vulnerability. A malicious actor with command line...
CVE-2023-5586HIGH7.8NULL Pointer Dereference in GitHub repository gpac/gpac prior to 2.3.0-DEV.
CVE-2023-45871HIGH7.5An issue was discovered in drivers/net/ethernet/intel/igb/igb_main.c in the IGB driver in the Linux kernel before 6.5.3....
CVE-2023-5585MEDIUM6.1A vulnerability was found in SourceCodester Online Motorcycle Rental System 1.0. It has been declared as problematic. Th...
CVE-2023-45863MEDIUM6.4An issue was discovered in lib/kobject.c in the Linux kernel before 6.2.3. With root access, an attacker can trigger a r...
CVE-2023-45862MEDIUM5.5An issue was discovered in drivers/usb/storage/ene_ub6250.c for the ENE UB6250 reader driver in the Linux kernel before ...
CVE-2023-40367MEDIUM5.4IBM QRadar SIEM 7.5.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScri...
CVE-2023-30994HIGH7.5IBM QRadar SIEM 7.5.0 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly ...
CVE-2023-45176MEDIUM5.5IBM App Connect Enterprise 11.0.0.1 through 11.0.0.23, 12.0.1.0 through 12.0.10.0 and IBM Integration Bus 10.1 through 1...
CVE-2023-35024HIGH7.6IBM Cloud Pak for Business Automation 18.0.0, 18.0.1, 18.0.2, 19.0.1, 19.0.2, 19.0.3, 20.0.1, 20.0.2, 20.0.3, 21.0.1, 21...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now