2023 CVE Vulnerabilities
31,404 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-38751 | MEDIUM | 4.3 | 0.4% | Aug 9, 2023 | Improper authorization vulnerability in Special Interest Group Network for Analysis and Liaison versions 4.4.0 to 4.7.7 ... |
| CVE-2023-4239 | MEDIUM | 6.5 | 0.6% | Aug 9, 2023 | The Real Estate Manager plugin for WordPress is vulnerable to privilege escalation in versions up to, and including, 7.2... |
| CVE-2023-39910 | HIGH | 7.5 | 1.3% | Aug 9, 2023 | The cryptocurrency wallet entropy seeding mechanism used in Libbitcoin Explorer 3.0.0 through 3.6.0 is weak, aka the Mil... |
| CVE-2023-39341 | LOW | 3.3 | 0.3% | Aug 9, 2023 | "FFRI yarai", "FFRI yarai Home and Business Edition" and their OEM products handle exceptional conditions improperly, wh... |
| CVE-2023-39951 | MEDIUM | 6.5 | 0.7% | Aug 8, 2023 | OpenTelemetry Java Instrumentation provides OpenTelemetry auto-instrumentation and instrumentation libraries for Java. O... |
| CVE-2023-39214 | HIGH | 8.1 | 0.8% | Aug 8, 2023 | Exposure of sensitive information in Zoom Client SDK's before 5.15.5 may allow an authenticated user to enable a denial ... |
| CVE-2023-39213 | CRITICAL | 9.8 | 1.3% | Aug 8, 2023 | Improper neutralization of special elements in Zoom Desktop Client for Windows and Zoom VDI Client before 5.15.2 may all... |
| CVE-2023-39212 | MEDIUM | 5.5 | 0.2% | Aug 8, 2023 | Untrusted search path in Zoom Rooms for Windows before version 5.15.5 may allow an authenticated user to enable a denia... |
| CVE-2023-39211 | HIGH | 7.8 | 0.2% | Aug 8, 2023 | Improper privilege management in Zoom Desktop Client for Windows and Zoom Rooms for Windows before 5.15.5 may allow an a... |
| CVE-2023-39210 | MEDIUM | 5.5 | 0.1% | Aug 8, 2023 | Cleartext storage of sensitive information in Zoom Client SDK for Windows before 5.15.0 may allow an authenticated user ... |
| CVE-2023-39209 | MEDIUM | 6.5 | 0.8% | Aug 8, 2023 | Improper input validation in Zoom Desktop Client for Windows before 5.15.5 may allow an authenticated user to enable an ... |
| CVE-2023-39086 | HIGH | 7.5 | 0.4% | Aug 8, 2023 | ASUS RT-AC66U B1 3.0.0.4.286_51665 was discovered to transmit sensitive information in cleartext. |
| CVE-2023-36482 | MEDIUM | 4.3 | 0.3% | Aug 8, 2023 | An issue was discovered in Samsung NFC S3NRN4V, S3NSN4V, S3NSEN4, SEN82AB, and S3NRN82. A buffer copy without checking i... |
| CVE-2023-36344 | HIGH | 7.8 | 0.4% | Aug 8, 2023 | An issue in Diebold Nixdorf Vynamic View Console v.5.3.1 and before allows a local attacker to execute arbitrary code vi... |
| CVE-2023-26961 | MEDIUM | 4.8 | 0.4% | Aug 8, 2023 | Alteryx Server 2022.1.1.42590 does not employ file type verification for uploaded files. This vulnerability allows attac... |
| CVE-2023-40042 | CRITICAL | 9.8 | 1.4% | Aug 8, 2023 | TOTOLINK T10_v2 5.9c.5061_B20200511 has a stack-based buffer overflow in setStaticDhcpConfig in /lib/cste_modules/lan.so... |
| CVE-2023-40041 | CRITICAL | 9.8 | 0.9% | Aug 8, 2023 | TOTOLINK T10_v2 5.9c.5061_B20200511 has a stack-based buffer overflow in setWiFiWpsConfig in /lib/cste_modules/wps.so. A... |
| CVE-2023-39533 | HIGH | 7.5 | 1.3% | Aug 8, 2023 | go-libp2p is the Go implementation of the libp2p Networking Stack. Prior to versions 0.27.8, 0.28.2, and 0.29.1 maliciou... |
| CVE-2023-39518 | MEDIUM | 5.4 | 0.4% | Aug 8, 2023 | social-media-skeleton is an uncompleted social media project implemented using PHP, MySQL, CSS, JavaScript, and HTML. Ve... |
| CVE-2023-38815 | — | — | — | Aug 8, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2023-40042. Reason: This candidate is a reservation d... |
| CVE-2023-38180 | HIGH | 7.5 | 14.8% | Aug 8, 2023 | .NET and Visual Studio Denial of Service Vulnerability |
| CVE-2023-36899 | HIGH | 8.8 | 77.1% | Aug 8, 2023 | ASP.NET Elevation of Privilege Vulnerability |
| CVE-2023-36873 | MEDIUM | 5.9 | 1.5% | Aug 8, 2023 | .NET Framework Spoofing Vulnerability |
| CVE-2023-35391 | HIGH | 7.5 | 1.9% | Aug 8, 2023 | ASP.NET Core SignalR and Visual Studio Information Disclosure Vulnerability |
| CVE-2023-3894 | HIGH | 7.5 | 0.7% | Aug 8, 2023 | Those using jackson-dataformats-text to parse TOML data may be vulnerable to Denial of Service attacks (DOS). If the par... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now