2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-52650MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/tegra: dsi: Add missing check for of_find_devic...
CVE-2023-52648MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: Unmap the surface before resetting it o...
CVE-2023-52647MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: media: nxp: imx8-isi: Check whether crossbar pad is...
CVE-2023-50059MEDIUM5.3An issue ingalxe.com Galxe platform 1.0 allows a remote attacker to obtain sensitive information via the Web3 authentica...
CVE-2023-50915MEDIUM6.5An issue exists in GalaxyClientService.exe in GOG Galaxy (Beta) 2.0.67.2 through 2.0.71.2 that could allow authenticated...
CVE-2023-50914MEDIUM6.7A Privilege Escalation issue in the inter-process communication procedure from GOG Galaxy (Beta) 2.0.67.2 through v2.0.7...
CVE-2023-52728MEDIUM5.5Open Networking Foundation SD-RAN ONOS onos-lib-go 0.10.25 allows an index out-of-range condition in putBitString.
CVE-2023-52726MEDIUM6.5Open Networking Foundation SD-RAN ONOS onos-ric-sdk-go 0.8.12 allows infinite repetition of the processing of an error (...
CVE-2023-52725MEDIUM6.5Open Networking Foundation SD-RAN ONOS onos-kpimon 0.4.7 allows blocking of the errCh channel within the Start function ...
CVE-2023-50433MEDIUM6.5marshall in dhcp_packet.c in simple-dhcp-server through ec976d2 allows remote attackers to cause a denial of service by ...
CVE-2023-50432MEDIUM5.3simple-dhcp-server through ec976d2 allows remote attackers to cause a denial of service (daemon crash) by sending a DHCP...
CVE-2023-31889MEDIUM5.5An issue discovered in httpd in ASUS RT-AC51U with firmware version up to and including 3.0.0.4.380.8591 allows local at...
CVE-2023-51710MEDIUM4.2EMS SQL Manager 3.6.2 (build 55333) for Oracle allows DLL hijacking: a user can trigger the execution of arbitrary code ...
CVE-2023-51254MEDIUM6.1Cross Site Scripting vulnerability in Jfinalcms v.5.0.0 allows a remote attacker to execute arbitrary code via a crafted...
CVE-2023-52722MEDIUM5.5An issue was discovered in Artifex Ghostscript before 10.03.1. psi/zmisc1.c, when SAFER mode is used, allows eexec seeds...
CVE-2023-1000MEDIUM6.3A vulnerability was found in cyanomiko dcnnt-py up to 0.9.0. It has been classified as critical. Affected is the functio...
CVE-2023-26603MEDIUM5.9JumpCloud Agent before 1.178.0 Creates a Temporary File in a Directory with Insecure Permissions. This allows privilege ...
CVE-2023-41291MEDIUM4.9A path traversal vulnerability has been reported to affect QuFirewall. If exploited, the vulnerability could allow authe...
CVE-2023-41290MEDIUM4.9A path traversal vulnerability has been reported to affect QuFirewall. If exploited, the vulnerability could allow authe...
CVE-2023-52646MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: aio: fix mremap after fork null-deref Commit e4a0d...
CVE-2023-47252MEDIUM6.3An issue was discovered in PnpSmm in Insyde InsydeH2O with kernel 5.0 through 5.6. There is a possible out-of-bounds acc...
CVE-2023-6717MEDIUM6A flaw was found in the SAML client registration in Keycloak that could allow an administrator to register malicious Jav...
CVE-2023-6544MEDIUM5.4A flaw was found in the Keycloak package. This issue occurs due to a permissive regular expression hardcoded for filteri...
CVE-2023-6484MEDIUM5.3A log injection flaw was found in Keycloak. A text string may be injected through the authentication form when using the...
CVE-2023-5675MEDIUM6.5A flaw was found in Quarkus. When a Quarkus RestEasy Classic or Reactive JAX-RS endpoint has its methods declared in the...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now