2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-52650 | MEDIUM | 5.5 | 0.3% | May 1, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/tegra: dsi: Add missing check for of_find_devic... |
| CVE-2023-52648 | MEDIUM | 5.5 | 0.2% | May 1, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: Unmap the surface before resetting it o... |
| CVE-2023-52647 | MEDIUM | 5.5 | 0.2% | May 1, 2024 | In the Linux kernel, the following vulnerability has been resolved: media: nxp: imx8-isi: Check whether crossbar pad is... |
| CVE-2023-50059 | MEDIUM | 5.3 | 0.5% | Apr 30, 2024 | An issue ingalxe.com Galxe platform 1.0 allows a remote attacker to obtain sensitive information via the Web3 authentica... |
| CVE-2023-50915 | MEDIUM | 6.5 | 0.7% | Apr 30, 2024 | An issue exists in GalaxyClientService.exe in GOG Galaxy (Beta) 2.0.67.2 through 2.0.71.2 that could allow authenticated... |
| CVE-2023-50914 | MEDIUM | 6.7 | 0.7% | Apr 30, 2024 | A Privilege Escalation issue in the inter-process communication procedure from GOG Galaxy (Beta) 2.0.67.2 through v2.0.7... |
| CVE-2023-52728 | MEDIUM | 5.5 | 0.2% | Apr 30, 2024 | Open Networking Foundation SD-RAN ONOS onos-lib-go 0.10.25 allows an index out-of-range condition in putBitString. |
| CVE-2023-52726 | MEDIUM | 6.5 | 0.4% | Apr 30, 2024 | Open Networking Foundation SD-RAN ONOS onos-ric-sdk-go 0.8.12 allows infinite repetition of the processing of an error (... |
| CVE-2023-52725 | MEDIUM | 6.5 | 0.4% | Apr 30, 2024 | Open Networking Foundation SD-RAN ONOS onos-kpimon 0.4.7 allows blocking of the errCh channel within the Start function ... |
| CVE-2023-50433 | MEDIUM | 6.5 | 0.3% | Apr 29, 2024 | marshall in dhcp_packet.c in simple-dhcp-server through ec976d2 allows remote attackers to cause a denial of service by ... |
| CVE-2023-50432 | MEDIUM | 5.3 | 0.5% | Apr 29, 2024 | simple-dhcp-server through ec976d2 allows remote attackers to cause a denial of service (daemon crash) by sending a DHCP... |
| CVE-2023-31889 | MEDIUM | 5.5 | 0.2% | Apr 29, 2024 | An issue discovered in httpd in ASUS RT-AC51U with firmware version up to and including 3.0.0.4.380.8591 allows local at... |
| CVE-2023-51710 | MEDIUM | 4.2 | 0.2% | Apr 29, 2024 | EMS SQL Manager 3.6.2 (build 55333) for Oracle allows DLL hijacking: a user can trigger the execution of arbitrary code ... |
| CVE-2023-51254 | MEDIUM | 6.1 | 0.6% | Apr 29, 2024 | Cross Site Scripting vulnerability in Jfinalcms v.5.0.0 allows a remote attacker to execute arbitrary code via a crafted... |
| CVE-2023-52722 | MEDIUM | 5.5 | 0.3% | Apr 28, 2024 | An issue was discovered in Artifex Ghostscript before 10.03.1. psi/zmisc1.c, when SAFER mode is used, allows eexec seeds... |
| CVE-2023-1000 | MEDIUM | 6.3 | 1.3% | Apr 27, 2024 | A vulnerability was found in cyanomiko dcnnt-py up to 0.9.0. It has been classified as critical. Affected is the functio... |
| CVE-2023-26603 | MEDIUM | 5.9 | 0.2% | Apr 26, 2024 | JumpCloud Agent before 1.178.0 Creates a Temporary File in a Directory with Insecure Permissions. This allows privilege ... |
| CVE-2023-41291 | MEDIUM | 4.9 | 0.4% | Apr 26, 2024 | A path traversal vulnerability has been reported to affect QuFirewall. If exploited, the vulnerability could allow authe... |
| CVE-2023-41290 | MEDIUM | 4.9 | 0.5% | Apr 26, 2024 | A path traversal vulnerability has been reported to affect QuFirewall. If exploited, the vulnerability could allow authe... |
| CVE-2023-52646 | MEDIUM | 5.5 | 0.2% | Apr 26, 2024 | In the Linux kernel, the following vulnerability has been resolved: aio: fix mremap after fork null-deref Commit e4a0d... |
| CVE-2023-47252 | MEDIUM | 6.3 | 0.1% | Apr 26, 2024 | An issue was discovered in PnpSmm in Insyde InsydeH2O with kernel 5.0 through 5.6. There is a possible out-of-bounds acc... |
| CVE-2023-6717 | MEDIUM | 6 | 0.7% | Apr 25, 2024 | A flaw was found in the SAML client registration in Keycloak that could allow an administrator to register malicious Jav... |
| CVE-2023-6544 | MEDIUM | 5.4 | 1.1% | Apr 25, 2024 | A flaw was found in the Keycloak package. This issue occurs due to a permissive regular expression hardcoded for filteri... |
| CVE-2023-6484 | MEDIUM | 5.3 | 1.0% | Apr 25, 2024 | A log injection flaw was found in Keycloak. A text string may be injected through the authentication form when using the... |
| CVE-2023-5675 | MEDIUM | 6.5 | 0.5% | Apr 25, 2024 | A flaw was found in Quarkus. When a Quarkus RestEasy Classic or Reactive JAX-RS endpoint has its methods declared in the... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now