2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-27323 | HIGH | 7.8 | 0.2% | May 3, 2024 | Parallels Desktop Updater Time-Of-Check Time-Of-Use Local Privilege Escalation Vulnerability. This vulnerability allows ... |
| CVE-2023-27322 | HIGH | 7.8 | 0.4% | May 3, 2024 | Parallels Desktop Service Improper Initialization Local Privilege Escalation Vulnerability. This vulnerability allows lo... |
| CVE-2023-7064 | HIGH | 7.5 | 0.9% | May 2, 2024 | The Shortcodes and extra features for Phlox theme plugin for WordPress is vulnerable to PHP Object Injection in all vers... |
| CVE-2023-6214 | HIGH | 7.5 | 0.6% | May 2, 2024 | The HT Mega – Absolute Addons For Elementor plugin for WordPress is vulnerable to Sensitive Information Exposure in all ... |
| CVE-2023-50685 | HIGH | 7.5 | 1.2% | May 2, 2024 | An issue in Hipcam Cameras RealServer v.1.0 allows a remote attacker to cause a denial of service via a crafted script t... |
| CVE-2023-37244 | HIGH | 7 | 0.2% | May 2, 2024 | The affected AutomationManager.AgentService.exe application contains a TOCTOU race condition vulnerability that allows s... |
| CVE-2023-41971 | HIGH | 7.8 | 0.2% | May 2, 2024 | An Improper Link Resolution Before File Access ('Link Following') vulnerability in Zscaler Client Connector on Windows a... |
| CVE-2023-41970 | HIGH | 7.8 | 0.1% | May 2, 2024 | An Improper Validation of Integrity Check Value vulnerability in Zscaler Client Connector on Windows during the Repair A... |
| CVE-2023-7241 | HIGH | 7.9 | 0.2% | May 1, 2024 | Privilege Escalation in WRSA.EXE in Webroot Antivirus 8.0.1X- 9.0.35.12 on Windows64 bit and 32 bit allows malicious s... |
| CVE-2023-47166 | HIGH | 8.8 | 0.6% | May 1, 2024 | A firmware update vulnerability exists in the luci2-io file-import functionality of Milesight UR32L v32.3.0.7-r2. A spec... |
| CVE-2023-52649 | HIGH | 7.8 | 0.3% | May 1, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/vkms: Avoid reading beyond LUT array When the ... |
| CVE-2023-50053 | HIGH | 7.6 | 0.5% | Apr 30, 2024 | An issue in Foundation.app Foundation platform 1.0 allows a remote attacker to obtain sensitive information via the Web3... |
| CVE-2023-45385 | HIGH | 7.5 | 0.8% | Apr 30, 2024 | ProQuality pqprintshippinglabels before v.4.15.0 is vulnerable to Directory Traversal via the pqprintshippinglabels modu... |
| CVE-2023-38002 | HIGH | 8.8 | 0.4% | Apr 30, 2024 | IBM Storage Scale 5.1.0.0 through 5.1.9.2 could allow an authenticated user to steal or manipulate an active session to ... |
| CVE-2023-46304 | HIGH | 8.1 | 1.7% | Apr 30, 2024 | modules/Users/models/Module.php in Vtiger CRM 7.5.0 allows a remote authenticated attacker to run arbitrary PHP code bec... |
| CVE-2023-52727 | HIGH | 8.1 | 0.5% | Apr 30, 2024 | Open Networking Foundation SD-RAN ONOS onos-lib-go 0.10.25 allows an index out-of-range condition in parseAlignBits. |
| CVE-2023-52724 | HIGH | 8.1 | 0.9% | Apr 30, 2024 | Open Networking Foundation SD-RAN onos-kpimon 0.4.7 allows out-of-bounds array access in the processIndicationFormat1 fu... |
| CVE-2023-46960 | HIGH | 8.6 | 0.5% | Apr 29, 2024 | Buffer Overflow vulnerability in PyPXE v.1.8.4 allows a remote attacker to cause a denial of service via the handle func... |
| CVE-2023-46566 | HIGH | 7.5 | 0.7% | Apr 29, 2024 | Buffer Overflow vulnerability in msoulier tftpy commit 467017b844bf6e31745138a30e2509145b0c529c allows a remote attacker... |
| CVE-2023-46565 | HIGH | 7.5 | 0.7% | Apr 29, 2024 | Buffer Overflow vulnerability in osrg gobgp commit 419c50dfac578daa4d11256904d0dc182f1a9b22 allows a remote attacker to ... |
| CVE-2023-52080 | HIGH | 7.7 | 0.2% | Apr 29, 2024 | IEIT NF5280M6 UEFI firmware through 8.4 has a pool overflow vulnerability, caused by improper use of the gRT->GetVariabl... |
| CVE-2023-48684 | HIGH | 7.1 | 0.2% | Apr 29, 2024 | Sensitive information disclosure and manipulation due to missing authorization. The following products are affected: Acr... |
| CVE-2023-48683 | HIGH | 7.1 | 0.2% | Apr 29, 2024 | Sensitive information disclosure and manipulation due to missing authorization. The following products are affected: Acr... |
| CVE-2023-52723 | HIGH | 7.1 | 0.5% | Apr 29, 2024 | In KDE libksieve before 23.03.80, kmanagesieve/session.cpp places a cleartext password in server logs because a username... |
| CVE-2023-51794 | HIGH | 7.8 | 0.2% | Apr 26, 2024 | Buffer Overflow vulnerability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via the ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now