2023 CVE Vulnerabilities

31,404 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-41121HIGH7.5Array AG OS before 9.4.0.499 allows denial of service: remote attackers can cause system service processes to crash thro...
CVE-2023-39291MEDIUM4.9A vulnerability in the Connect Mobility Router component of MiVoice Connect through 9.6.2304.102 could allow an authenti...
CVE-2023-39290MEDIUM4.9A vulnerability in the Edge Gateway component of Mitel MiVoice Connect through R19.3 SP3 (22.24.5800.0) could allow an a...
CVE-2023-39289HIGH7.5A vulnerability in the Connect Mobility Router component of Mitel MiVoice Connect through 9.6.2208.101 could allow an un...
CVE-2023-39288MEDIUM5.5A vulnerability in the Connect Mobility Router component of Mitel MiVoice Connect through 9.6.2304.102 could allow an au...
CVE-2023-39287MEDIUM5.5A vulnerability in the Edge Gateway component of Mitel MiVoice Connect through 19.3 SP3 (22.24.5800.0) could allow an au...
CVE-2023-34723HIGH7.5An issue was discovered in TechView LA-5570 Wireless Gateway 1.0.19_T53, allows attackers to gain sensitive information ...
CVE-2023-41080MEDIUM6.1URL Redirection to Untrusted Site ('Open Redirect') vulnerability in FORM authentication feature Apache Tomcat.This issu...
CVE-2023-40587MEDIUM5.3Pyramid is an open source Python web framework. A path traversal vulnerability in Pyramid versions 2.0.0 and 2.0.1 impac...
CVE-2023-40586HIGH7.5OWASP Coraza WAF is a golang modsecurity compatible web application firewall library. Due to the misuse of `log.Fatalf`,...
CVE-2023-40585HIGH7.5ironic-image is a container image to run OpenStack Ironic as part of Metal³. Prior to version capm3-v1.4.3, if Ironic is...
CVE-2023-40583HIGH7.5libp2p is a networking stack and library modularized out of The IPFS Project, and bundled separately for other tools to ...
CVE-2023-40571CRITICAL9.8weblogic-framework is a tool for detecting weblogic vulnerabilities. Versions 0.2.3 and prior do not verify the returned...
CVE-2023-40166MEDIUM5.5Notepad++ is a free and open-source source code editor. Versions 8.5.6 and prior are vulnerable to heap buffer read over...
CVE-2023-40164MEDIUM5.5Notepad++ is a free and open-source source code editor. Versions 8.5.6 and prior are vulnerable to global buffer read ov...
CVE-2023-38712MEDIUM6.5An issue was discovered in Libreswan 3.x and 4.x before 4.12. When an IKEv1 ISAKMP SA Informational Exchange packet cont...
CVE-2023-38711MEDIUM6.5An issue was discovered in Libreswan before 4.12. When an IKEv1 Quick Mode connection configured with ID_IPV4_ADDR or ID...
CVE-2023-38710MEDIUM6.5An issue was discovered in Libreswan before 4.12. When an IKEv2 Child SA REKEY packet contains an invalid IPsec protocol...
CVE-2023-32678MEDIUM6.5Zulip is an open-source team collaboration tool with topic-based threading that combines email and chat. Users who used ...
CVE-2023-2906MEDIUM6.5Due to a failure in validating the length provided by an attacker-crafted CP2179 packet, Wireshark versions 2.0.0 throug...
CVE-2023-40580MEDIUM6.5Freighter is a Stellar chrome extension. It may be possible for a malicious website to access the recovery mnemonic phra...
CVE-2023-40579MEDIUM6.5OpenFGA is an authorization/permission engine built for developers and inspired by Google Zanzibar. Some end users of Op...
CVE-2023-40568Rejected reason: GitHub has been informed that the requestor is working with another CNA for these vulnerabilities.
CVE-2023-40036MEDIUM5.5Notepad++ is a free and open-source source code editor. Versions 8.5.6 and prior are vulnerable to global buffer read ov...
CVE-2023-40031HIGH7.8Notepad++ is a free and open-source source code editor. Versions 8.5.6 and prior are vulnerable to heap buffer write ove...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now