2023 CVE Vulnerabilities
31,404 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-41329 | MEDIUM | 6.6 | 0.6% | Sep 6, 2023 | WireMock is a tool for mocking HTTP services. The proxy mode of WireMock, can be protected by the network restrictions c... |
| CVE-2023-41327 | MEDIUM | 5.4 | 0.5% | Sep 6, 2023 | WireMock is a tool for mocking HTTP services. WireMock can be configured to only permit proxying (and therefore recordin... |
| CVE-2023-41053 | LOW | 3.3 | 0.3% | Sep 6, 2023 | Redis is an in-memory database that persists on disk. Redis does not correctly identify keys accessed by `SORT_RO` and a... |
| CVE-2023-40397 | CRITICAL | 9.8 | 1.4% | Sep 6, 2023 | The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.5. A remote attacker may be able t... |
| CVE-2023-40392 | LOW | 3.3 | 0.2% | Sep 6, 2023 | A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Ventura... |
| CVE-2023-39967 | CRITICAL | 10 | 0.8% | Sep 6, 2023 | WireMock is a tool for mocking HTTP services. When certain request URLs like “@127.0.0.1:1234" are used in WireMock Stud... |
| CVE-2023-39956 | MEDIUM | 6.6 | 0.6% | Sep 6, 2023 | Electron is a framework which lets you write cross-platform desktop applications using JavaScript, HTML and CSS. Electro... |
| CVE-2023-38616 | HIGH | 7 | 0.1% | Sep 6, 2023 | A race condition was addressed with improved state handling. This issue is fixed in macOS Ventura 13.5. An app may be ab... |
| CVE-2023-38605 | LOW | 3.3 | 0.2% | Sep 6, 2023 | This issue was addressed with improved redaction of sensitive information. This issue is fixed in macOS Ventura 13.5. An... |
| CVE-2023-29198 | HIGH | 8.5 | 0.5% | Sep 6, 2023 | Electron is a framework which lets you write cross-platform desktop applications using JavaScript, HTML and CSS. Electro... |
| CVE-2023-23623 | CRITICAL | 9.8 | 0.7% | Sep 6, 2023 | Electron is a framework which lets you write cross-platform desktop applications using JavaScript, HTML and CSS. A Conte... |
| CVE-2023-4809 | HIGH | 7.5 | 0.7% | Sep 6, 2023 | In pf packet processing with a 'scrub fragment reassemble' rule, a packet containing multiple IPv6 fragment headers woul... |
| CVE-2023-41601 | MEDIUM | 6.1 | 0.4% | Sep 6, 2023 | Multiple cross-site scripting (XSS) vulnerabilities in install/index.php of CSZ CMS v1.3.0 allow attackers to execute ar... |
| CVE-2023-40591 | HIGH | 7.5 | 1.0% | Sep 6, 2023 | go-ethereum (geth) is a golang execution layer implementation of the Ethereum protocol. A vulnerable node, can be made t... |
| CVE-2023-41330 | CRITICAL | 9.8 | 1.9% | Sep 6, 2023 | knplabs/knp-snappy is a PHP library allowing thumbnail, snapshot or PDF generation from a url or a html page. ## Issue ... |
| CVE-2023-41328 | HIGH | 7.5 | 0.4% | Sep 6, 2023 | Frappe is a low code web framework written in Python and Javascript. A SQL Injection vulnerability has been identified i... |
| CVE-2023-41319 | HIGH | 7.2 | 0.8% | Sep 6, 2023 | Fides is an open-source privacy engineering platform for managing the fulfillment of data privacy requests in a runtime ... |
| CVE-2023-41050 | HIGH | 7.7 | 0.5% | Sep 6, 2023 | AccessControl provides a general security framework for use in Zope. Python's "format" functionality allows someone cont... |
| CVE-2023-39511 | MEDIUM | 4.8 | 0.7% | Sep 6, 2023 | Cacti is an open source operational monitoring and fault management framework. Affected versions are subject to a Stored... |
| CVE-2023-38486 | MEDIUM | 6.4 | 0.3% | Sep 6, 2023 | A vulnerability in the secure boot implementation on affected Aruba 9200 and 9000 Series Controllers and Gateways allows... |
| CVE-2023-38485 | MEDIUM | 6.4 | 0.4% | Sep 6, 2023 | Vulnerabilities exist in the BIOS implementation of Aruba 9200 and 9000 Series Controllers and Gateways that could allow... |
| CVE-2023-38484 | MEDIUM | 6.4 | 0.4% | Sep 6, 2023 | Vulnerabilities exist in the BIOS implementation of Aruba 9200 and 9000 Series Controllers and Gateways that could allow... |
| CVE-2023-20269 | CRITICAL | 9.1 | 21.6% | Sep 6, 2023 | A vulnerability in the remote access VPN feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower... |
| CVE-2023-20263 | MEDIUM | 6.1 | 0.5% | Sep 6, 2023 | A vulnerability in the web-based management interface of Cisco HyperFlex HX Data Platform could allow an unauthenticated... |
| CVE-2023-20243 | HIGH | 8.6 | 0.8% | Sep 6, 2023 | A vulnerability in the RADIUS message processing feature of Cisco Identity Services Engine (ISE) could allow an unauthen... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now