2023 CVE Vulnerabilities

31,404 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-39534HIGH7.5eprosima Fast DDS is a C++ implementation of the Data Distribution Service standard of the Object Management Group. Prio...
CVE-2023-32267HIGH8.8A potential vulnerability has been identified in OpenText / Micro Focus ArcSight Management Center. The vulnerability co...
CVE-2023-39418MEDIUM4.3A vulnerability was found in PostgreSQL with the use of the MERGE command, which fails to test new rows against row secu...
CVE-2023-39417HIGH8.8IN THE EXTENSION SCRIPT, a SQL Injection vulnerability was found in PostgreSQL if it uses @extowner@, @extschema@, or @e...
CVE-2023-3937MEDIUM4.8Cross site scripting vulnerability in web portal in Snow Software License Manager from version 9.0.0 up to and including...
CVE-2023-3864HIGH7.2Blind SQL injection in a service running in Snow Software license manager from version 8.0.0 up to and including 9.30.1 ...
CVE-2023-39553HIGH7.5Improper Input Validation vulnerability in Apache Software Foundation Apache Airflow Drill Provider. Apache Airflow Dri...
CVE-2023-4108HIGH7.5Mattermost fails to sanitize post metadata during audit logging resulting in permalinks contents being logged
CVE-2023-4107MEDIUM6.5Mattermost fails to properly validate the requesting user permissions when updating a system admin, allowing a user mana...
CVE-2023-4106MEDIUM6.5Mattermost fails to check if the requesting user is a guest before performing different actions to public playbooks, res...
CVE-2023-4105MEDIUM4.3Mattermost fails to delete the attachments when deleting a message in a thread allowing a simple user to still be able t...
CVE-2023-40267CRITICAL9.8GitPython before 3.1.32 does not block insecure non-multi options in clone and clone_from. NOTE: this issue exists becau...
CVE-2023-40254CRITICAL9.8Download of Code Without Integrity Check vulnerability in Genians Genian NAC V4.0, Genians Genian NAC V5.0, Genians Geni...
CVE-2023-40260CRITICAL9.1EmpowerID before 7.205.0.1 allows an attacker to bypass an MFA (multi factor authentication) requirement if the first fa...
CVE-2023-40253CRITICAL9.8Improper Authentication vulnerability in Genians Genian NAC V4.0, Genians Genian NAC V5.0, Genians Genian NAC Suite V5.0...
CVE-2023-3824CRITICAL9.8In PHP version 8.0.* before 8.0.30,  8.1.* before 8.1.22, and 8.2.* before 8.2.8, when loading phar file, while reading ...
CVE-2023-3823HIGH7.5In PHP versions 8.0.* before 8.0.30, 8.1.* before 8.1.22, and 8.2.* before 8.2.8 various XML functions rely on libxml gl...
CVE-2023-40256CRITICAL9.8A vulnerability was discovered in Veritas NetBackup Snapshot Manager before 10.2.0.1 that allowed untrusted clients to i...
CVE-2023-34438HIGH7.8Race condition in some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable escalation of privil...
CVE-2023-34427HIGH7.8Protection mechanism failure in some Intel(R) RealSense(TM) ID software for Intel(R) RealSense(TM) 450 FA in version 0.2...
CVE-2023-34355HIGH7.3Uncontrolled search path element for some Intel(R) Server Board M10JNP2SB integrated BMC video drivers before version 3....
CVE-2023-34349MEDIUM6.4Race condition in some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable escalation of privil...
CVE-2023-34086MEDIUM6.7Improper input validation in some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable escalatio...
CVE-2023-33877HIGH7.8Out-of-bounds write in some Intel(R) RealSense(TM) ID software for Intel(R) RealSense(TM) 450 FA in version 0.25.0 may a...
CVE-2023-33867HIGH7.8Improper buffer restrictions in some Intel(R) RealSense(TM) ID software for Intel(R) RealSense(TM) 450 FA in version 0.2...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now