2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-6688 | MEDIUM | 6.5 | 0.7% | May 14, 2024 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.11 prior to 16.11.2. A problem with... |
| CVE-2023-6682 | MEDIUM | 6.5 | 0.7% | May 14, 2024 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.9 prior to 16.9.7, starting from 16... |
| CVE-2023-6327 | MEDIUM | 5.3 | 0.7% | May 14, 2024 | The ShopLentor (formerly WooLentor) plugin for WordPress is vulnerable to unauthorized access of data due to a missing c... |
| CVE-2023-5971 | MEDIUM | 4.8 | 0.5% | May 14, 2024 | The Save as PDF Plugin by Pdfcrowd WordPress plugin before 3.2.0 does not sanitise and escape some of its settings, whic... |
| CVE-2023-5447 | MEDIUM | 5.5 | 0.2% | May 14, 2024 | Missing lock check in SynHsaService may create a use-after-free condition which causes abnormal termination of the servi... |
| CVE-2023-5052 | MEDIUM | 6.3 | 0.5% | May 14, 2024 | vulnerability in Uniform Server Zero, version 10.2.5, consisting of an XSS through the /us_extra/phpinfo.php page. This ... |
| CVE-2023-52721 | MEDIUM | 5.5 | 0.2% | May 14, 2024 | The WindowManager module has a vulnerability in permission control. Impact: Successful exploitation of this vulnerabilit... |
| CVE-2023-52720 | MEDIUM | 4.1 | 0.1% | May 14, 2024 | Race condition vulnerability in the soundtrigger module Impact: Successful exploitation of this vulnerability will affec... |
| CVE-2023-52719 | MEDIUM | 5.5 | 0.2% | May 14, 2024 | Privilege escalation vulnerability in the PMS module Impact: Successful exploitation of this vulnerability may affect se... |
| CVE-2023-52656 | MEDIUM | 5.5 | 0.3% | May 14, 2024 | In the Linux kernel, the following vulnerability has been resolved: io_uring: drop any code related to SCM_RIGHTS This... |
| CVE-2023-52655 | MEDIUM | 5.5 | 0.3% | May 14, 2024 | In the Linux kernel, the following vulnerability has been resolved: usb: aqc111: check packet for fixup for true limit ... |
| CVE-2023-52654 | MEDIUM | 4.7 | 0.8% | May 14, 2024 | In the Linux kernel, the following vulnerability has been resolved: io_uring/af_unix: disable sending io_uring over soc... |
| CVE-2023-52384 | MEDIUM | 5.5 | 0.1% | May 14, 2024 | Double-free vulnerability in the RSMC module Impact: Successful exploitation of this vulnerability will affect availabil... |
| CVE-2023-52383 | MEDIUM | 5.5 | 0.1% | May 14, 2024 | Double-free vulnerability in the RSMC module Impact: Successful exploitation of this vulnerability will affect availabil... |
| CVE-2023-50718 | MEDIUM | 6.5 | 0.7% | May 14, 2024 | NocoDB is software for building databases as spreadsheets. Prior to version 0.202.10, an authenticated attacker with cre... |
| CVE-2023-50717 | MEDIUM | 5.4 | 0.6% | May 14, 2024 | NocoDB is software for building databases as spreadsheets. Starting in verson 0.202.6 and prior to version 0.202.10, an ... |
| CVE-2023-47711 | MEDIUM | 6.5 | 0.7% | May 14, 2024 | IBM Security Guardium 11.3, 11.4, 11.5, and 12.0 could allow an authenticated user to upload files that would cause a de... |
| CVE-2023-42955 | MEDIUM | 4.9 | 0.4% | May 14, 2024 | Claris International has successfully resolved an issue of potentially exposing password information to front-end websit... |
| CVE-2023-37526 | MEDIUM | 6.5 | 0.4% | May 14, 2024 | HCL DRYiCE Lucy (now AEX) is affected by a Cross Origin Resource Sharing (CORS) vulnerability. The mobile app is vulnera... |
| CVE-2023-29881 | MEDIUM | 6.5 | 0.4% | May 14, 2024 | phpok 6.4.003 is vulnerable to SQL injection in the function index_f() in phpok64/framework/api/call_control.php. |
| CVE-2023-41651 | MEDIUM | 6.5 | 0.4% | May 8, 2024 | Missing Authorization vulnerability in Multi-column Tag Map.This issue affects Multi-column Tag Map: from n/a through 17... |
| CVE-2023-37325 | MEDIUM | 5.4 | 0.3% | May 7, 2024 | D-Link DAP-2622 DDP Set SSID List Missing Authentication Vulnerability. This vulnerability allows network-adjacent attac... |
| CVE-2023-40694 | MEDIUM | 5.5 | 0.2% | May 7, 2024 | IBM Watson CP4D Data Stores 4.0.0 through 4.8.4 stores potentially sensitive information in log files that could be read... |
| CVE-2023-42757 | MEDIUM | 4.2 | 0.3% | May 7, 2024 | Process Explorer before 17.04 allows attackers to make it functionally unavailable (a denial of service for analysis) by... |
| CVE-2023-7240 | MEDIUM | 5.8 | 0.4% | May 7, 2024 | An improper authorization level has been detected in the login panel. It may lead to unauthenticated Server Side Reques... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now