2023 CVE Vulnerabilities
31,404 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-36735 | CRITICAL | 9.6 | 1.9% | Sep 15, 2023 | Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability |
| CVE-2023-36727 | MEDIUM | 6.1 | 0.9% | Sep 15, 2023 | Microsoft Edge (Chromium-based) Spoofing Vulnerability |
| CVE-2023-36562 | HIGH | 7.1 | 0.9% | Sep 15, 2023 | Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability |
| CVE-2023-42442 | MEDIUM | 5.3 | 55.9% | Sep 15, 2023 | JumpServer is an open source bastion host and a professional operation and maintenance security audit system. Starting i... |
| CVE-2023-42439 | MEDIUM | 6.5 | 0.8% | Sep 15, 2023 | GeoNode is an open source platform that facilitates the creation, sharing, and collaborative use of geospatial data. A S... |
| CVE-2023-41901 | — | — | — | Sep 15, 2023 | Rejected reason: Further research determined the issue is not a vulnerability. |
| CVE-2023-41900 | MEDIUM | 4.3 | 0.8% | Sep 15, 2023 | Jetty is a Java based web server and servlet engine. Versions 9.4.21 through 9.4.51, 10.0.15, and 11.0.15 are vulnerable... |
| CVE-2023-41889 | MEDIUM | 5.3 | 0.6% | Sep 15, 2023 | SHIRASAGI is a Content Management System. Prior to version 1.18.0, SHIRASAGI is vulnerable to a Post-Unicode normalizati... |
| CVE-2023-41887 | CRITICAL | 9.8 | 45.5% | Sep 15, 2023 | OpenRefine is a powerful free, open source tool for working with messy data. Prior to version 3.7.5, a remote code execu... |
| CVE-2023-41886 | HIGH | 7.5 | 0.8% | Sep 15, 2023 | OpenRefine is a powerful free, open source tool for working with messy data. Prior to version 3.7.5, an arbitrary file r... |
| CVE-2023-0923 | CRITICAL | 9.8 | 0.9% | Sep 15, 2023 | A flaw was found in the Kubernetes service for notebooks in RHODS, where it does not prevent pods from other namespaces ... |
| CVE-2023-0813 | HIGH | 7.5 | 0.9% | Sep 15, 2023 | A flaw was found in the Network Observability plugin for OpenShift console. Unless the Loki authToken configuration is s... |
| CVE-2023-41880 | MEDIUM | 5.3 | 0.6% | Sep 15, 2023 | Wasmtime is a standalone runtime for WebAssembly. Wasmtime versions from 10.0.0 to versions 10.02, 11.0.2, and 12.0.1 co... |
| CVE-2023-41325 | MEDIUM | 6.7 | 0.4% | Sep 15, 2023 | OP-TEE is a Trusted Execution Environment (TEE) designed as companion to a non-secure Linux kernel running on Arm; Corte... |
| CVE-2023-41043 | MEDIUM | 6.5 | 0.5% | Sep 15, 2023 | Discourse is an open-source discussion platform. Prior to version 3.1.1 of the `stable` branch and version 3.2.0.beta1 o... |
| CVE-2023-41042 | MEDIUM | 6.5 | 0.5% | Sep 15, 2023 | Discourse is an open-source discussion platform. Prior to version 3.1.1 of the `stable` branch and version 3.2.0.beta1 o... |
| CVE-2023-40588 | MEDIUM | 6.5 | 0.5% | Sep 15, 2023 | Discourse is an open-source discussion platform. Prior to version 3.1.1 of the `stable` branch and version 3.2.0.beta1 o... |
| CVE-2023-40167 | MEDIUM | 5.3 | 1.1% | Sep 15, 2023 | Jetty is a Java based web server and servlet engine. Prior to versions 9.4.52, 10.0.16, 11.0.16, and 12.0.1, Jetty accep... |
| CVE-2023-40019 | MEDIUM | 6.5 | 0.8% | Sep 15, 2023 | FreeSWITCH is a Software Defined Telecom Stack enabling the digital transformation from proprietary telecom switches to ... |
| CVE-2023-40018 | HIGH | 7.5 | 0.7% | Sep 15, 2023 | FreeSWITCH is a Software Defined Telecom Stack enabling the digital transformation from proprietary telecom switches to ... |
| CVE-2023-38706 | MEDIUM | 6.5 | 0.6% | Sep 15, 2023 | Discourse is an open-source discussion platform. Prior to version 3.1.1 of the `stable` branch and version 3.2.0.beta1 o... |
| CVE-2023-38507 | CRITICAL | 9.8 | 0.8% | Sep 15, 2023 | Strapi is the an open-source headless content management system. Prior to version 4.12.1, there is a rate limit on the l... |
| CVE-2023-37459 | MEDIUM | 5.3 | 0.4% | Sep 15, 2023 | Contiki-NG is an operating system for internet-of-things devices. In versions 4.9 and prior, when a packet is received, ... |
| CVE-2023-37281 | MEDIUM | 5.3 | 0.4% | Sep 15, 2023 | Contiki-NG is an operating system for internet-of-things devices. In versions 4.9 and prior, when processing the various... |
| CVE-2023-37263 | LOW | 2.7 | 0.5% | Sep 15, 2023 | Strapi is the an open-source headless content management system. Prior to version 4.12.1, field level permissions are no... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now