2023 CVE Vulnerabilities

31,401 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-5484MEDIUM6.5Inappropriate implementation in Navigation in Google Chrome prior to 118.0.5993.70 allowed a remote attacker to spoof se...
CVE-2023-5483MEDIUM6.5Inappropriate implementation in Intents in Google Chrome prior to 118.0.5993.70 allowed a remote attacker to bypass cont...
CVE-2023-5481MEDIUM6.5Inappropriate implementation in Downloads in Google Chrome prior to 118.0.5993.70 allowed a remote attacker to spoof sec...
CVE-2023-5479MEDIUM6.5Inappropriate implementation in Extensions API in Google Chrome prior to 118.0.5993.70 allowed an attacker who convinced...
CVE-2023-5478MEDIUM4.3Inappropriate implementation in Autofill in Google Chrome prior to 118.0.5993.70 allowed a remote attacker to leak cross...
CVE-2023-5477MEDIUM4.3Inappropriate implementation in Installer in Google Chrome prior to 118.0.5993.70 allowed a local attacker to bypass dis...
CVE-2023-5476HIGH8.8Use after free in Blink History in Google Chrome prior to 118.0.5993.70 allowed a remote attacker to potentially exploit...
CVE-2023-5475MEDIUM6.5Inappropriate implementation in DevTools in Google Chrome prior to 118.0.5993.70 allowed an attacker who convinced a use...
CVE-2023-5474HIGH8.8Heap buffer overflow in PDF in Google Chrome prior to 118.0.5993.70 allowed a remote attacker who convinced a user to en...
CVE-2023-5473MEDIUM6.3Use after free in Cast in Google Chrome prior to 118.0.5993.70 allowed a remote attacker who had compromised the rendere...
CVE-2023-5218HIGH8.8Use after free in Site Isolation in Google Chrome prior to 118.0.5993.70 allowed a remote attacker to potentially exploi...
CVE-2023-44190MEDIUM5.4 An Origin Validation vulnerability in MAC address validation of Juniper Networks Junos OS Evolved on PTX10001, PTX10004...
CVE-2023-44189MEDIUM5.4 An Origin Validation vulnerability in MAC address validation of Juniper Networks Junos OS Evolved on PTX10003 Series al...
CVE-2023-39325HIGH7.5A malicious HTTP/2 client which rapidly creates requests and immediately resets them can cause excessive server resource...
CVE-2023-45132CRITICAL9.8NAXSI is an open-source maintenance web application firewall (WAF) for NGINX. An issue present starting in version 1.3 a...
CVE-2023-44188MEDIUM5.3 A Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in telemetry processing of Juniper Networks Junos OS ...
CVE-2023-44187MEDIUM5.5An Exposure of Sensitive Information vulnerability in the 'file copy' command of Junos OS Evolved allows a local, authen...
CVE-2023-44186HIGH7.5 An Improper Handling of Exceptional Conditions vulnerability in AS PATH processing of Juniper Networks Junos OS and Jun...
CVE-2023-3781HIGH7.8there is a possible use-after-free write due to improper locking. This could lead to local escalation of privilege with ...
CVE-2023-5535HIGH7.8Use After Free in GitHub repository vim/vim prior to v9.0.2010.
CVE-2023-43661HIGH8.8Cachet, the open-source status page system. Prior to the 2.4 branch, a template functionality which allows users to crea...
CVE-2023-41882MEDIUM4.3vantage6 is privacy preserving federated learning infrastructure. The endpoint /api/collaboration/{id}/task is used to c...
CVE-2023-41881MEDIUM4.3vantage6 is privacy preserving federated learning infrastructure. When a collaboration is deleted, the linked resources ...
CVE-2023-40142HIGH7.8In TBD of TBD, there is a possible way to bypass carrier restrictions due to a logic error in the code. This could lead ...
CVE-2023-40141HIGH7.8In temp_residency_name_store of thermal_metrics.c, there is a possible out of bounds write due to a missing bounds check...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now