2023 CVE Vulnerabilities
31,404 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-4429 | HIGH | 8.8 | 0.9% | Aug 23, 2023 | Use after free in Loader in Google Chrome prior to 116.0.5845.110 allowed a remote attacker to potentially exploit heap ... |
| CVE-2023-4428 | HIGH | 8.1 | 10.9% | Aug 23, 2023 | Out of bounds memory access in CSS in Google Chrome prior to 116.0.5845.110 allowed a remote attacker to perform an out ... |
| CVE-2023-4427 | HIGH | 8.1 | 34.0% | Aug 23, 2023 | Out of bounds memory access in V8 in Google Chrome prior to 116.0.5845.110 allowed a remote attacker to perform an out o... |
| CVE-2023-40370 | MEDIUM | 5.3 | 0.4% | Aug 22, 2023 | IBM Robotic Process Automation 21.0.0 through 21.0.7.1 runtime is vulnerable to information disclosure of script conten... |
| CVE-2023-39026 | HIGH | 7.5 | 10.6% | Aug 22, 2023 | Directory Traversal vulnerability in FileMage Gateway Windows Deployments v.1.10.8 and before allows a remote attacker t... |
| CVE-2023-38734 | CRITICAL | 9.8 | 0.6% | Aug 22, 2023 | IBM Robotic Process Automation 21.0.0 through 21.0.7.1 and 23.0.0 through 23.0.1 is vulnerable to incorrect privilege a... |
| CVE-2023-38733 | MEDIUM | 4.3 | 0.4% | Aug 22, 2023 | IBM Robotic Process Automation 21.0.0 through 21.0.7.1 and 23.0.0 through 23.0.1 server could allow an authenticated us... |
| CVE-2023-33850 | HIGH | 7.5 | 0.9% | Aug 22, 2023 | IBM GSKit-Crypto could allow a remote attacker to obtain sensitive information, caused by a timing-based side channel in... |
| CVE-2023-4475 | MEDIUM | 5.5 | 0.2% | Aug 22, 2023 | An Arbitrary File Movement vulnerability was found in ASUSTOR Data Master (ADM) allows an attacker to exploit the file r... |
| CVE-2023-4212 | MEDIUM | 6.8 | 1.2% | Aug 22, 2023 | A command injection vulnerability exists in Trane XL824, XL850, XL1050, and Pivot thermostats allowing an attacker to ... |
| CVE-2023-3699 | MEDIUM | 5.5 | 0.1% | Aug 22, 2023 | An Improper Privilege Management vulnerability was found in ASUSTOR Data Master (ADM) allows an unprivileged local users... |
| CVE-2023-39599 | MEDIUM | 5.4 | 0.5% | Aug 22, 2023 | Cross-Site Scripting (XSS) vulnerability in CSZ CMS v.1.3.0 allows attackers to execute arbitrary code via a crafted pay... |
| CVE-2023-39141 | HIGH | 7.5 | 3.1% | Aug 22, 2023 | webui-aria2 commit 4fe2e was discovered to contain a path traversal vulnerability. |
| CVE-2023-38996 | MEDIUM | 6.7 | 0.4% | Aug 22, 2023 | An issue in all versions of Douran DSGate allows a local authenticated privileged attacker to execute arbitrary code via... |
| CVE-2023-38732 | MEDIUM | 4.3 | 0.4% | Aug 22, 2023 | IBM Robotic Process Automation 21.0.0 through 21.0.7 server could allow an authenticated user to view sensitive informa... |
| CVE-2023-38668 | MEDIUM | 5.5 | 0.3% | Aug 22, 2023 | Stack-based buffer over-read in disasm in nasm 2.16 allows attackers to cause a denial of service (crash). |
| CVE-2023-38667 | MEDIUM | 5.5 | 0.3% | Aug 22, 2023 | Stack-based buffer over-read in function disasm in nasm 2.16 allows attackers to cause a denial of service. |
| CVE-2023-38666 | MEDIUM | 5.5 | 0.3% | Aug 22, 2023 | Bento4 v1.6.0-639 was discovered to contain a segmentation violation via the AP4_Processor::ProcessFragments function in... |
| CVE-2023-38665 | MEDIUM | 5.5 | 0.3% | Aug 22, 2023 | Null pointer dereference in ieee_write_file in nasm 2.16rc0 allows attackers to cause a denial of service (crash). |
| CVE-2023-37440 | MEDIUM | 5.3 | 0.4% | Aug 22, 2023 | A vulnerability in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an unauthenticated ... |
| CVE-2023-37439 | MEDIUM | 6.1 | 0.4% | Aug 22, 2023 | Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authent... |
| CVE-2023-37438 | MEDIUM | 6.5 | 0.6% | Aug 22, 2023 | Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authent... |
| CVE-2023-37437 | MEDIUM | 6.5 | 0.6% | Aug 22, 2023 | Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authent... |
| CVE-2023-37436 | MEDIUM | 6.5 | 0.6% | Aug 22, 2023 | Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authent... |
| CVE-2023-37435 | MEDIUM | 6.5 | 0.6% | Aug 22, 2023 | Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authent... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now