2023 CVE Vulnerabilities

31,404 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-36756HIGH8Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2023-36745HIGH8Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2023-36744HIGH8Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2023-36742HIGH7.8Visual Studio Code Remote Code Execution Vulnerability
CVE-2023-36740HIGH7.83D Viewer Remote Code Execution Vulnerability
CVE-2023-36739HIGH7.83D Viewer Remote Code Execution Vulnerability
CVE-2023-36736MEDIUM4.4Microsoft Identity Linux Broker Remote Code Execution Vulnerability
CVE-2023-35355HIGH7.8Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
CVE-2023-33136HIGH8.8Azure DevOps Server Remote Code Execution Vulnerability
CVE-2023-29463MEDIUM5.4 The JMX Console within the Rockwell Automation Pavilion8 is exposed to application users and does not require authentic...
CVE-2023-29332CRITICAL9.8Microsoft Azure Kubernetes Service Elevation of Privilege Vulnerability
CVE-2023-34470HIGH7.8 AMI AptioV contains a vulnerability in BIOS where an Attacker may use an improper access control via the local network....
CVE-2023-34469MEDIUM4.6 AMI AptioV contains a vulnerability in BIOS where an Attacker may use an improper access control via the physical netwo...
CVE-2023-0119MEDIUM5.4A stored Cross-site scripting vulnerability was found in foreman. The Comment section in the Hosts tab has incorrect fil...
CVE-2023-4914HIGH7.5Relative Path Traversal in GitHub repository cecilapp/cecil prior to 7.47.1.
CVE-2023-4913MEDIUM6.1Cross-site Scripting (XSS) - Reflected in GitHub repository cecilapp/cecil prior to 7.47.1.
CVE-2023-4863HIGH8.8Heap buffer overflow in libwebp in Google Chrome prior to 116.0.5845.187 and libwebp 1.3.2 allowed a remote attacker to ...
CVE-2023-40784CRITICAL9.8DedeCMS 5.7.102 has a File Upload vulnerability via uploads/dede/module_make.php.
CVE-2023-40218LOW3.3An issue was discovered in the NPU kernel driver in Samsung Exynos Mobile Processor 9820, 980, 2100, 2200, 1280, and 138...
CVE-2023-40834CRITICAL9.8OpenCart CMS v4.0.2.2 was discovered to lack a protective mechanism on its login page against excessive login attempts, ...
CVE-2023-2071CRITICAL9.8 Rockwell Automation FactoryTalk View Machine Edition on the PanelView Plus, improperly verifies user’s input, which all...
CVE-2023-39150CRITICAL9.8ConEmu before commit 230724 does not sanitize title responses correctly for control characters, potentially leading to a...
CVE-2023-41013MEDIUM6.1Cross Site Scripting (XSS) in Webmail Calendar in IceWarp 10.3.1 allows remote attackers to inject arbitrary web script ...
CVE-2023-40712MEDIUM6.5Apache Airflow, versions before 2.7.1, is affected by a vulnerability that allows authenticated users who have access to...
CVE-2023-40611MEDIUM4.3Apache Airflow, versions before 2.7.1, is affected by a vulnerability that allows authenticated and DAG-view authorized ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now