2023 CVE Vulnerabilities
31,404 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-4030 | HIGH | 7.8 | 0.2% | Aug 17, 2023 | A vulnerability was reported in BIOS for ThinkPad P14s Gen 2, P15s Gen 2, T14 Gen 2, and T15 Gen 2 that could cause the ... |
| CVE-2023-4029 | MEDIUM | 6.7 | 0.2% | Aug 17, 2023 | A buffer overflow has been identified in the BoardUpdateAcpiDxe driver in some Lenovo ThinkPad products which may allow ... |
| CVE-2023-4028 | MEDIUM | 6.7 | 0.2% | Aug 17, 2023 | A buffer overflow has been identified in the SystemUserMasterHddPwdDxe driver in some Lenovo Notebook products which may... |
| CVE-2023-3078 | HIGH | 7.8 | 0.2% | Aug 17, 2023 | An uncontrolled search path vulnerability was reported in the Lenovo Universal Device Client (UDC) that could allow an a... |
| CVE-2023-34419 | MEDIUM | 6.7 | 0.2% | Aug 17, 2023 | A buffer overflow has been identified in the SetupUtility driver in some Lenovo Notebook products which may allow an att... |
| CVE-2023-2917 | CRITICAL | 9.8 | 67.8% | Aug 17, 2023 | The Rockwell Automation Thinmanager Thinserver is impacted by an improper input validation vulnerability. Due to an imp... |
| CVE-2023-2915 | CRITICAL | 9.1 | 78.1% | Aug 17, 2023 | The Rockwell Automation Thinmanager Thinserver is impacted by an improper input validation vulnerability, Due to imprope... |
| CVE-2023-2914 | HIGH | 7.5 | 27.0% | Aug 17, 2023 | The Rockwell Automation Thinmanager Thinserver is impacted by an improper input validation vulnerability, an integer ove... |
| CVE-2023-31079 | MEDIUM | 5.4 | 0.4% | Aug 17, 2023 | Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Chris Roberts Tippy plugin <= 6.2.1 versions. |
| CVE-2023-31072 | MEDIUM | 6.1 | 0.4% | Aug 17, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Praveen Goswami Advanced Category Template plugin <= 0.1 v... |
| CVE-2023-28783 | MEDIUM | 5.4 | 0.4% | Aug 17, 2023 | Auth. (shop manager+) Stored Cross-Site Scripting (XSS) vulnerability in PHPRADAR Woocommerce Tip/Donation plugin <= 1.2... |
| CVE-2023-28693 | MEDIUM | 6.1 | 0.4% | Aug 17, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Balasaheb Bhise Advanced Youtube Channel Pagination plugin... |
| CVE-2023-40272 | HIGH | 7.5 | 1.7% | Aug 17, 2023 | Apache Airflow Spark Provider, versions before 4.1.3, is affected by a vulnerability that allows an attacker to pass in ... |
| CVE-2023-34412 | MEDIUM | 4.8 | 0.3% | Aug 17, 2023 | A vulnerability in Red Lion Europe mbNET/mbNET.rokey and Helmholz REX 200 and REX 250 devices with firmware lower 7.3.2 ... |
| CVE-2023-4394 | MEDIUM | 6 | 0.2% | Aug 17, 2023 | A use-after-free flaw was found in btrfs_get_dev_args_from_path in fs/btrfs/volumes.c in btrfs file-system in the Linux ... |
| CVE-2023-38902 | HIGH | 8.8 | 2.2% | Aug 17, 2023 | A command injection vulnerability in RG-EW series home routers and repeaters v.EW_3.0(1)B11P219, RG-NBS and RG-S1930 ser... |
| CVE-2023-38838 | HIGH | 7.5 | 0.7% | Aug 17, 2023 | SQL injection vulnerability in Kidus Minimati v.1.0.0 allows a remote attacker to obtain sensitive information via the e... |
| CVE-2023-31091 | MEDIUM | 4.8 | 0.4% | Aug 17, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Pradeep Singh Dynamically Register Sidebars plugin <= ... |
| CVE-2023-31074 | MEDIUM | 6.1 | 0.4% | Aug 17, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in hupe13 Extensions for Leaflet Map plugin <= 3.4.1 versions... |
| CVE-2023-26530 | MEDIUM | 6.1 | 0.4% | Aug 17, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Paul Kehrer Updraft plugin <= 0.6.1 versions. |
| CVE-2023-3698 | HIGH | 8.1 | 0.5% | Aug 17, 2023 | Printer service fails to adequately handle user input, allowing an remote unauthorized users to navigate beyond the inte... |
| CVE-2023-3697 | HIGH | 8.8 | 0.5% | Aug 17, 2023 | Printer service fails to adequately handle user input, allowing an remote unauthorized users to navigate beyond the inte... |
| CVE-2023-2910 | HIGH | 8.8 | 1.3% | Aug 17, 2023 | Improper neutralization of special elements used in a command ('Command Injection') vulnerability in Printer service fun... |
| CVE-2023-29182 | MEDIUM | 6.7 | 0.3% | Aug 17, 2023 | A stack-based buffer overflow vulnerability [CWE-121] in Fortinet FortiOS before 7.0.3 allows a privileged attacker to e... |
| CVE-2023-31076 | MEDIUM | 6.1 | 0.4% | Aug 17, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Really Simple Plugins Recipe Maker For Your Food Blog from... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now