2023 CVE Vulnerabilities

31,404 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-40850HIGH7.5netentsec NS-ASG 6.3 is vulnerable to Incorrect Access Control. There is a file leak in the website source code of the a...
CVE-2023-42469LOW3.3The com.full.dialer.top.secure.encrypted application through 1.0.1 for Android enables any installed application (with n...
CVE-2023-3588MEDIUM5.4A stored Cross-site Scripting (XSS) vulnerability affecting Teamwork Cloud from No Magic Release 2021x through No Magic ...
CVE-2023-4785HIGH7.5Lack of error handling in the TCP server in Google's gRPC starting version 1.23 on posix-compatible platforms (ex. Linux...
CVE-2023-4155MEDIUM5.6A flaw was found in KVM AMD Secure Encrypted Virtualization (SEV) in the Linux kernel. A KVM guest using SEV-ES or SEV-S...
CVE-2023-3301MEDIUM5.6A flaw was found in QEMU. The async nature of hot-unplug enables a race scenario where the net device backend is cleared...
CVE-2023-3280MEDIUM5.5A problem with a protection mechanism in the Palo Alto Networks Cortex XDR agent on Windows devices allows a local user ...
CVE-2023-3255MEDIUM6.5A flaw was found in the QEMU built-in VNC server while processing ClientCutText messages. A wrong exit condition may lea...
CVE-2023-2680HIGH8.2This CVE exists because of an incomplete fix for CVE-2021-3750. More specifically, the qemu-kvm package as released for ...
CVE-2023-20236HIGH7.8A vulnerability in the iPXE boot function of Cisco IOS XR software could allow an authenticated, local attacker to insta...
CVE-2023-20233MEDIUM6.5A vulnerability in the Connectivity Fault Management (CFM) feature of Cisco IOS XR Software could allow an unauthenticat...
CVE-2023-20191HIGH7.5A vulnerability in the access control list (ACL) processing on MPLS interfaces in the ingress direction of Cisco IOS XR ...
CVE-2023-20190MEDIUM5.3A vulnerability in the classic access control list (ACL) compression feature of Cisco IOS XR Software could allow an una...
CVE-2023-20135HIGH7A vulnerability in Cisco IOS XR Software image verification checks could allow an authenticated, local attacker to execu...
CVE-2023-4828MEDIUM4.2An improper check for an exceptional condition in the Insider Threat Management (ITM) Server could be used by an attacke...
CVE-2023-4803MEDIUM4.8A reflected cross-site scripting vulnerability in the WriteWindowTitle endpoint of the Insider Threat Management (ITM) S...
CVE-2023-4802MEDIUM4.8A reflected cross-site scripting vulnerability in the UpdateInstalledSoftware endpoint of the Insider Threat Management ...
CVE-2023-4801HIGH7.5An improper certification validation vulnerability in the Insider Threat Management (ITM) Agent for MacOS could be used ...
CVE-2023-39916MEDIUM6.5NLnet Labs’ Routinator 0.9.0 up to and including 0.12.1 as well as 0.14.0 up to and including 0.14.2 contains a possible...
CVE-2023-39915HIGH7.5NLnet Labs' Routinator up to and including version 0.12.1 may crash when trying to parse certain malformed RPKI objects....
CVE-2023-39914HIGH7.5NLnet Labs' bcder library up to and including version 0.7.2 panics while decoding certain invalid input data rather than...
CVE-2023-4701Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority as the vendor eventually stat...
CVE-2023-3935CRITICAL9.8A heap buffer overflow vulnerability in Wibu CodeMeter Runtime network service up to version 7.60b allows an unauthentic...
CVE-2023-38215MEDIUM5.4Adobe Experience Manager versions 6.5.17 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerabilit...
CVE-2023-38214MEDIUM5.4Adobe Experience Manager versions 6.5.17 and earlier are affected by a reflected Cross-Site Scripting (XSS) vulnerabilit...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now