2023 CVE Vulnerabilities
31,404 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-20033 | HIGH | 8.6 | 0.7% | Sep 27, 2023 | A vulnerability in Cisco IOS XE Software for Cisco Catalyst 3650 and Catalyst 3850 Series Switches could allow an unauth... |
| CVE-2023-4129 | HIGH | 7.5 | 0.2% | Sep 27, 2023 | Dell Data Protection Central, version 19.9, contains an Inadequate Encryption Strength Vulnerability. An unauthenticate... |
| CVE-2023-43125 | HIGH | 8.2 | 0.2% | Sep 27, 2023 | BIG-IP APM clients may send IP traffic outside of the VPN tunnel. Note: Software versions which have reached End of Te... |
| CVE-2023-43124 | HIGH | 7.1 | 0.2% | Sep 27, 2023 | BIG-IP APM clients may send IP traffic outside of the VPN tunnel. Note: Software versions which have reached End of Te... |
| CVE-2023-32458 | HIGH | 7.8 | 0.2% | Sep 27, 2023 | Dell AppSync, versions 4.4.0.0 to 4.6.0.0 including Service Pack releases, contains an improper access control vulnerab... |
| CVE-2023-5223 | CRITICAL | 9.9 | 0.9% | Sep 27, 2023 | A vulnerability, which was classified as critical, has been found in HimitZH HOJ up to 4.6-9a65e3f. This issue affects s... |
| CVE-2023-5222 | CRITICAL | 9.8 | 74.7% | Sep 27, 2023 | A vulnerability classified as critical was found in Viessmann Vitogate 300 up to 2.1.3.0. This vulnerability affects the... |
| CVE-2023-5221 | CRITICAL | 9.8 | 1.3% | Sep 27, 2023 | A vulnerability classified as critical has been found in ForU CMS. This affects an unknown part of the file /install/ind... |
| CVE-2023-5197 | MEDIUM | 6.6 | 0.4% | Sep 27, 2023 | A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local pr... |
| CVE-2023-5192 | MEDIUM | 6.5 | 0.8% | Sep 27, 2023 | Excessive Data Query Operations in a Large Data Table in GitHub repository pimcore/demo prior to 10.3.0. |
| CVE-2023-5183 | HIGH | 8.8 | 1.6% | Sep 27, 2023 | Unsafe deserialization of untrusted JSON allows execution of arbitrary code on affected releases of the Illumio PCE. Aut... |
| CVE-2023-5176 | CRITICAL | 9.8 | 1.2% | Sep 27, 2023 | Memory safety bugs present in Firefox 117, Firefox ESR 115.2, and Thunderbird 115.2. Some of these bugs showed evidence ... |
| CVE-2023-5175 | CRITICAL | 9.8 | 0.8% | Sep 27, 2023 | During process shutdown, it was possible that an `ImageBitmap` was created that would later be used after being freed fr... |
| CVE-2023-5174 | CRITICAL | 9.8 | 1.0% | Sep 27, 2023 | If Windows failed to duplicate a handle during process creation, the sandbox code may have inadvertently freed a pointer... |
| CVE-2023-5173 | HIGH | 7.5 | 0.7% | Sep 27, 2023 | In a non-standard configuration of Firefox, an integer overflow could have occurred based on network traffic (possibly u... |
| CVE-2023-5172 | CRITICAL | 9.8 | 0.8% | Sep 27, 2023 | A hashtable in the Ion Engine could have been mutated while there was a live interior reference, leading to a potential... |
| CVE-2023-5171 | MEDIUM | 6.5 | 1.0% | Sep 27, 2023 | During Ion compilation, a Garbage Collection could have resulted in a use-after-free condition, allowing an attacker to ... |
| CVE-2023-5170 | HIGH | 7.4 | 0.6% | Sep 27, 2023 | In canvas rendering, a compromised content process could have caused a surface to change unexpectedly, leading to a memo... |
| CVE-2023-5169 | MEDIUM | 6.5 | 1.0% | Sep 27, 2023 | A compromised content process could have provided malicious data in a `PathRecording` resulting in an out-of-bounds writ... |
| CVE-2023-5168 | CRITICAL | 9.8 | 0.9% | Sep 27, 2023 | A compromised content process could have provided malicious data to `FilterNodeD2D1` resulting in an out-of-bounds write... |
| CVE-2023-5162 | MEDIUM | 5.4 | 0.6% | Sep 27, 2023 | The Options for Twenty Seventeen plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'social-links' sh... |
| CVE-2023-5161 | MEDIUM | 5.4 | 0.6% | Sep 27, 2023 | The Modal Window plugin for WordPress is vulnerable to Stored Cross-Site Scripting via shortcodes in versions up to, and... |
| CVE-2023-5157 | HIGH | 7.5 | 2.0% | Sep 27, 2023 | A vulnerability was found in MariaDB. An OpenVAS port scan on ports 3306 and 4567 allows a malicious remote client to ca... |
| CVE-2023-5135 | MEDIUM | 5.4 | 0.6% | Sep 27, 2023 | The Simple Cloudflare Turnstile plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'gravity-simple-tu... |
| CVE-2023-4934 | HIGH | 8.8 | 0.9% | Sep 27, 2023 | Authorization Bypass Through User-Controlled Key vulnerability in Usta AYBS allows Authentication Abuse, Authentication ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now