2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-27323HIGH7.8Parallels Desktop Updater Time-Of-Check Time-Of-Use Local Privilege Escalation Vulnerability. This vulnerability allows ...
CVE-2023-27322HIGH7.8Parallels Desktop Service Improper Initialization Local Privilege Escalation Vulnerability. This vulnerability allows lo...
CVE-2023-7064HIGH7.5The Shortcodes and extra features for Phlox theme plugin for WordPress is vulnerable to PHP Object Injection in all vers...
CVE-2023-6214HIGH7.5The HT Mega – Absolute Addons For Elementor plugin for WordPress is vulnerable to Sensitive Information Exposure in all ...
CVE-2023-50685HIGH7.5An issue in Hipcam Cameras RealServer v.1.0 allows a remote attacker to cause a denial of service via a crafted script t...
CVE-2023-37244HIGH7The affected AutomationManager.AgentService.exe application contains a TOCTOU race condition vulnerability that allows s...
CVE-2023-41971HIGH7.8An Improper Link Resolution Before File Access ('Link Following') vulnerability in Zscaler Client Connector on Windows a...
CVE-2023-41970HIGH7.8An Improper Validation of Integrity Check Value vulnerability in Zscaler Client Connector on Windows during the Repair A...
CVE-2023-7241HIGH7.9Privilege Escalation in WRSA.EXE in Webroot Antivirus 8.0.1X- 9.0.35.12 on Windows64 bit and 32 bit allows malicious s...
CVE-2023-47166HIGH8.8A firmware update vulnerability exists in the luci2-io file-import functionality of Milesight UR32L v32.3.0.7-r2. A spec...
CVE-2023-52649HIGH7.8In the Linux kernel, the following vulnerability has been resolved: drm/vkms: Avoid reading beyond LUT array When the ...
CVE-2023-50053HIGH7.6An issue in Foundation.app Foundation platform 1.0 allows a remote attacker to obtain sensitive information via the Web3...
CVE-2023-45385HIGH7.5ProQuality pqprintshippinglabels before v.4.15.0 is vulnerable to Directory Traversal via the pqprintshippinglabels modu...
CVE-2023-38002HIGH8.8IBM Storage Scale 5.1.0.0 through 5.1.9.2 could allow an authenticated user to steal or manipulate an active session to ...
CVE-2023-46304HIGH8.1modules/Users/models/Module.php in Vtiger CRM 7.5.0 allows a remote authenticated attacker to run arbitrary PHP code bec...
CVE-2023-52727HIGH8.1Open Networking Foundation SD-RAN ONOS onos-lib-go 0.10.25 allows an index out-of-range condition in parseAlignBits.
CVE-2023-52724HIGH8.1Open Networking Foundation SD-RAN onos-kpimon 0.4.7 allows out-of-bounds array access in the processIndicationFormat1 fu...
CVE-2023-46960HIGH8.6Buffer Overflow vulnerability in PyPXE v.1.8.4 allows a remote attacker to cause a denial of service via the handle func...
CVE-2023-46566HIGH7.5Buffer Overflow vulnerability in msoulier tftpy commit 467017b844bf6e31745138a30e2509145b0c529c allows a remote attacker...
CVE-2023-46565HIGH7.5Buffer Overflow vulnerability in osrg gobgp commit 419c50dfac578daa4d11256904d0dc182f1a9b22 allows a remote attacker to ...
CVE-2023-52080HIGH7.7IEIT NF5280M6 UEFI firmware through 8.4 has a pool overflow vulnerability, caused by improper use of the gRT->GetVariabl...
CVE-2023-48684HIGH7.1Sensitive information disclosure and manipulation due to missing authorization. The following products are affected: Acr...
CVE-2023-48683HIGH7.1Sensitive information disclosure and manipulation due to missing authorization. The following products are affected: Acr...
CVE-2023-52723HIGH7.1In KDE libksieve before 23.03.80, kmanagesieve/session.cpp places a cleartext password in server logs because a username...
CVE-2023-51794HIGH7.8Buffer Overflow vulnerability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via the ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now