2023 CVE Vulnerabilities
31,404 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-35368 | HIGH | 8.8 | 2.5% | Aug 8, 2023 | Microsoft Exchange Remote Code Execution Vulnerability |
| CVE-2023-35359 | HIGH | 7.8 | 9.9% | Aug 8, 2023 | Windows Kernel Elevation of Privilege Vulnerability |
| CVE-2023-2230 | — | — | — | Aug 8, 2023 | Rejected reason: Accidental Assignment |
| CVE-2023-29330 | HIGH | 8.8 | 2.0% | Aug 8, 2023 | Microsoft Teams Remote Code Execution Vulnerability |
| CVE-2023-29328 | HIGH | 8.8 | 2.2% | Aug 8, 2023 | Microsoft Teams Remote Code Execution Vulnerability |
| CVE-2023-21709 | CRITICAL | 9.8 | 2.1% | Aug 8, 2023 | Microsoft Exchange Server Elevation of Privilege Vulnerability |
| CVE-2023-20589 | MEDIUM | 6.8 | 0.5% | Aug 8, 2023 | An attacker with specialized hardware and physical access to an impacted device may be able to perform a voltage fault ... |
| CVE-2023-20588 | MEDIUM | 5.5 | 12.4% | Aug 8, 2023 | A division-by-zero error on some AMD processors can potentially return speculative data resulting in loss of confidenti... |
| CVE-2023-20586 | CRITICAL | 9.8 | 0.8% | Aug 8, 2023 | A potential vulnerability was reported in Radeon™ Software Crimson ReLive Edition which may allow escalation of privile... |
| CVE-2023-20569 | MEDIUM | 4.7 | 6.2% | Aug 8, 2023 | A side channel vulnerability on some of the AMD CPUs may allow an attacker to influence the return address prediction... |
| CVE-2023-20562 | HIGH | 7.8 | 1.1% | Aug 8, 2023 | Insufficient validation in the IOCTL (Input Output Control) input buffer in AMD uProf may allow an authenticated user... |
| CVE-2023-20561 | MEDIUM | 5.5 | 0.2% | Aug 8, 2023 | Insufficient validation of the IOCTL (Input Output Control) input buffer in AMD μProf may allow an authenticated ... |
| CVE-2023-20556 | MEDIUM | 5.5 | 0.2% | Aug 8, 2023 | Insufficient validation of the IOCTL (Input Output Control) input buffer in AMD μProf may allow an authenticated us... |
| CVE-2023-20555 | HIGH | 7.8 | 0.3% | Aug 8, 2023 | Insufficient input validation in CpmDisplayFeatureSmm may allow an attacker to corrupt SMM memory by overwriting an arbi... |
| CVE-2023-39532 | CRITICAL | 9.8 | 1.2% | Aug 8, 2023 | SES is a JavaScript environment that allows safe execution of arbitrary programs in Compartments. In version 0.18.0 prio... |
| CVE-2023-37646 | HIGH | 7.8 | 0.4% | Aug 8, 2023 | An issue in the CAB file extraction function of Bitberry File Opener v23.0 allows attackers to execute a directory trave... |
| CVE-2023-3522 | CRITICAL | 9.8 | 0.5% | Aug 8, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in a2 License Portal ... |
| CVE-2023-3386 | CRITICAL | 9.8 | 0.5% | Aug 8, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in a2 Camera Trap Tra... |
| CVE-2023-38773 | HIGH | 7.5 | 0.7% | Aug 8, 2023 | SQL injection vulnerability in ChurchCRM v.5.0.0 allows a remote attacker to obtain sensitive information via the volopp... |
| CVE-2023-38771 | HIGH | 7.5 | 0.7% | Aug 8, 2023 | SQL injection vulnerability in ChurchCRM v.5.0.0 allows a remote attacker to obtain sensitive information via the volopp... |
| CVE-2023-38770 | HIGH | 7.5 | 0.7% | Aug 8, 2023 | SQL injection vulnerability in ChurchCRM v.5.0.0 allows a remote attacker to obtain sensitive information via the group ... |
| CVE-2023-38769 | HIGH | 7.5 | 0.7% | Aug 8, 2023 | SQL injection vulnerability in ChurchCRM v.5.0.0 allows a remote attacker to obtain sensitive information via the search... |
| CVE-2023-38768 | HIGH | 7.5 | 0.7% | Aug 8, 2023 | SQL injection vulnerability in ChurchCRM v.5.0.0 allows a remote attacker to obtain sensitive information via the Proper... |
| CVE-2023-38767 | HIGH | 7.5 | 0.7% | Aug 8, 2023 | SQL injection vulnerability in ChurchCRM v.5.0.0 allows a remote attacker to obtain sensitive information via the 'value... |
| CVE-2023-38766 | MEDIUM | 5.4 | 0.6% | Aug 8, 2023 | Cross Site Scripting (XSS) vulnerability in ChurchCRM v.5.0.0 allows a remote attacker to execute arbitrary code via a c... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now