2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-6820 | — | — | — | Jul 5, 2025 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2023-6818 | — | — | — | Jul 5, 2025 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2023-6770 | — | — | — | Jul 5, 2025 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2023-6726 | — | — | — | Jul 5, 2025 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2023-5361 | — | — | — | Jul 5, 2025 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2023-50786 | MEDIUM | 4.3 | 0.2% | Jul 5, 2025 | Dradis through 4.16.0 allows referencing external images (resources) over HTTPS, instead of forcing the use of embedded ... |
| CVE-2023-47310 | MEDIUM | 6.5 | 0.2% | Jun 30, 2025 | A misconfiguration in the default settings of MikroTik RouterOS 7 and fixed in v7.14 allows incoming IPv6 UDP traceroute... |
| CVE-2023-29113 | MEDIUM | 6.3 | 0.2% | Jun 28, 2025 | The MIB3 infotainment unit used in Skoda and Volkswagen vehicles does not incorporate any privilege separation for the p... |
| CVE-2023-28912 | MEDIUM | 5.7 | 0.2% | Jun 28, 2025 | The MIB3 unit stores the synchronized phone contact book in clear-text, allowing an attacker with either code execution ... |
| CVE-2023-28911 | MEDIUM | 6.5 | 0.4% | Jun 28, 2025 | A specific flaw exists within the Bluetooth stack of the MIB3 infotainment. The issue results from the lack of proper va... |
| CVE-2023-28910 | HIGH | 8 | 0.3% | Jun 28, 2025 | A specific flaw exists within the Bluetooth stack of the MIB3 infotainment system. The issue results from the disabled a... |
| CVE-2023-28909 | HIGH | 8 | 0.5% | Jun 28, 2025 | A specific flaw exists within the Bluetooth stack of the MIB3 unit. The issue results from the lack of proper validation... |
| CVE-2023-28908 | MEDIUM | 5.4 | 0.3% | Jun 28, 2025 | A specific flaw exists within the Bluetooth stack of the MIB3 infotainment. The issue results from the lack of proper va... |
| CVE-2023-28907 | MEDIUM | 6.7 | 0.2% | Jun 28, 2025 | There is no memory isolation between CPU cores of the MIB3 infotainment. This fact allows an attacker with access to the... |
| CVE-2023-28906 | HIGH | 7.8 | 0.7% | Jun 28, 2025 | A command injection in the networking service of the MIB3 infotainment allows an attacker already presenting in the syst... |
| CVE-2023-28905 | HIGH | 8 | 0.4% | Jun 28, 2025 | A heap buffer overflow in the image processing binary of the MIB3 infotainment unit allows an attacker to execute arbitr... |
| CVE-2023-28904 | MEDIUM | 5.2 | 0.3% | Jun 28, 2025 | A logic flaw leading to a RAM buffer overflow in the bootloader component of the MIB3 infotainment unit allows an attack... |
| CVE-2023-28903 | LOW | 3.3 | 0.2% | Jun 28, 2025 | An integer overflow in the image processing binary of the MIB3 infotainment unit allows an attacker with local access to... |
| CVE-2023-28902 | LOW | 3.3 | 0.2% | Jun 28, 2025 | An integer underflow in the image processing binary of the MIB3 infotainment unit allows an attacker with local access t... |
| CVE-2023-38007 | MEDIUM | 5.4 | 0.2% | Jun 27, 2025 | IBM Cloud Pak System 2.3.5.0, 2.3.3.7, 2.3.3.7 iFix1 on Power and 2.3.3.6, 2.3.3.6 iFix1, 2.3.3.6 iFix2, 2.3.4.0, 2.3.4.... |
| CVE-2023-25998 | HIGH | 8.1 | 0.5% | Jun 27, 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2023-44915 | HIGH | 7.1 | 0.3% | Jun 25, 2025 | A cross-site scripting (XSS) vulnerability in the component /Login.php of c3crm up to v3.0.4 allows attackers to execute... |
| CVE-2023-47030 | CRITICAL | 9.8 | 0.6% | Jun 23, 2025 | An issue in NCR Terminal Handler v.1.5.1 allows a remote attacker to execute arbitrary code and obtain sensitive informa... |
| CVE-2023-47029 | CRITICAL | 9.8 | 0.6% | Jun 23, 2025 | An issue in NCR Terminal Handler v.1.5.1 allows a remote attacker to execute arbitrary code and obtain sensitive informa... |
| CVE-2023-47031 | CRITICAL | 9.8 | 0.6% | Jun 23, 2025 | An issue in NCR Terminal Handler v.1.5.1 allows a remote attacker to escalate privileges via a crafted POST request to t... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now