2023 CVE Vulnerabilities
31,404 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-36756 | HIGH | 8 | 74.7% | Sep 12, 2023 | Microsoft Exchange Server Remote Code Execution Vulnerability |
| CVE-2023-36745 | HIGH | 8 | 81.1% | Sep 12, 2023 | Microsoft Exchange Server Remote Code Execution Vulnerability |
| CVE-2023-36744 | HIGH | 8 | 81.7% | Sep 12, 2023 | Microsoft Exchange Server Remote Code Execution Vulnerability |
| CVE-2023-36742 | HIGH | 7.8 | 1.2% | Sep 12, 2023 | Visual Studio Code Remote Code Execution Vulnerability |
| CVE-2023-36740 | HIGH | 7.8 | 0.7% | Sep 12, 2023 | 3D Viewer Remote Code Execution Vulnerability |
| CVE-2023-36739 | HIGH | 7.8 | 0.8% | Sep 12, 2023 | 3D Viewer Remote Code Execution Vulnerability |
| CVE-2023-36736 | MEDIUM | 4.4 | 1.7% | Sep 12, 2023 | Microsoft Identity Linux Broker Remote Code Execution Vulnerability |
| CVE-2023-35355 | HIGH | 7.8 | 0.7% | Sep 12, 2023 | Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability |
| CVE-2023-33136 | HIGH | 8.8 | 1.7% | Sep 12, 2023 | Azure DevOps Server Remote Code Execution Vulnerability |
| CVE-2023-29463 | MEDIUM | 5.4 | 0.8% | Sep 12, 2023 | The JMX Console within the Rockwell Automation Pavilion8 is exposed to application users and does not require authentic... |
| CVE-2023-29332 | CRITICAL | 9.8 | 2.8% | Sep 12, 2023 | Microsoft Azure Kubernetes Service Elevation of Privilege Vulnerability |
| CVE-2023-34470 | HIGH | 7.8 | 0.2% | Sep 12, 2023 | AMI AptioV contains a vulnerability in BIOS where an Attacker may use an improper access control via the local network.... |
| CVE-2023-34469 | MEDIUM | 4.6 | 0.2% | Sep 12, 2023 | AMI AptioV contains a vulnerability in BIOS where an Attacker may use an improper access control via the physical netwo... |
| CVE-2023-0119 | MEDIUM | 5.4 | 0.6% | Sep 12, 2023 | A stored Cross-site scripting vulnerability was found in foreman. The Comment section in the Hosts tab has incorrect fil... |
| CVE-2023-4914 | HIGH | 7.5 | 0.7% | Sep 12, 2023 | Relative Path Traversal in GitHub repository cecilapp/cecil prior to 7.47.1. |
| CVE-2023-4913 | MEDIUM | 6.1 | 0.4% | Sep 12, 2023 | Cross-site Scripting (XSS) - Reflected in GitHub repository cecilapp/cecil prior to 7.47.1. |
| CVE-2023-4863 | HIGH | 8.8 | 99.7% | Sep 12, 2023 | Heap buffer overflow in libwebp in Google Chrome prior to 116.0.5845.187 and libwebp 1.3.2 allowed a remote attacker to ... |
| CVE-2023-40784 | CRITICAL | 9.8 | 0.6% | Sep 12, 2023 | DedeCMS 5.7.102 has a File Upload vulnerability via uploads/dede/module_make.php. |
| CVE-2023-40218 | LOW | 3.3 | 0.2% | Sep 12, 2023 | An issue was discovered in the NPU kernel driver in Samsung Exynos Mobile Processor 9820, 980, 2100, 2200, 1280, and 138... |
| CVE-2023-40834 | CRITICAL | 9.8 | 1.1% | Sep 12, 2023 | OpenCart CMS v4.0.2.2 was discovered to lack a protective mechanism on its login page against excessive login attempts, ... |
| CVE-2023-2071 | CRITICAL | 9.8 | 11.0% | Sep 12, 2023 | Rockwell Automation FactoryTalk View Machine Edition on the PanelView Plus, improperly verifies user’s input, which all... |
| CVE-2023-39150 | CRITICAL | 9.8 | 0.8% | Sep 12, 2023 | ConEmu before commit 230724 does not sanitize title responses correctly for control characters, potentially leading to a... |
| CVE-2023-41013 | MEDIUM | 6.1 | 0.6% | Sep 12, 2023 | Cross Site Scripting (XSS) in Webmail Calendar in IceWarp 10.3.1 allows remote attackers to inject arbitrary web script ... |
| CVE-2023-40712 | MEDIUM | 6.5 | 1.5% | Sep 12, 2023 | Apache Airflow, versions before 2.7.1, is affected by a vulnerability that allows authenticated users who have access to... |
| CVE-2023-40611 | MEDIUM | 4.3 | 1.3% | Sep 12, 2023 | Apache Airflow, versions before 2.7.1, is affected by a vulnerability that allows authenticated and DAG-view authorized ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now