2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-1171Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2023-4927Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2023-5878CRITICAL9.4Honeywell OneWireless Wireless Device Manager (WDM) for the following versions R310.x, R320.x, R321.x, R322.1, R322.2,...
CVE-2023-6386HIGH7.5A denial of service vulnerability was identified in GitLab CE/EE, affecting all versions from 15.11 prior to 16.6.7, 16....
CVE-2023-52925MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: don't fail inserts if duplica...
CVE-2023-52924MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: don't skip expired elements d...
CVE-2023-40222HIGH8.4In Ashlar-Vellum Cobalt versions prior to v12 SP2 Build (1204.200), the affected application lacks proper validation of ...
CVE-2023-39943HIGH8.4In Ashlar-Vellum Cobalt versions prior to v12 SP2 Build (1204.200), the affected application lacks proper validation of ...
CVE-2023-52164MEDIUM5.1access_device.cgi on Digiever DS-2105 Pro 3.1.0.71-11 devices allows arbitrary file read. NOTE: This vulnerability only ...
CVE-2023-52163HIGH8.8Digiever DS-2105 Pro 3.1.0.71-11 devices allow time_tzsetup.cgi Command Injection. NOTE: This vulnerability only affects...
CVE-2023-38739HIGH8.8IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.3 is vulnerable to cross-site request forg...
CVE-2023-0092MEDIUM4.9An authenticated user who has read access to the juju controller model, may construct a remote request to download an ar...
CVE-2023-6195MEDIUM4.3An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.5 prior to 16.9.7, starting from 16...
CVE-2023-29080HIGH8.5Potential privilege escalation vulnerability in Revenera InstallShield versions 2022 R2 and 2021 R2 due to adding Instal...
CVE-2023-37413MEDIUM5.3IBM Aspera Faspex 5.0.0 through 5.0.10 could disclose sensitive username information due to an observable response discr...
CVE-2023-37412MEDIUM4.9IBM Aspera Faspex 5.0.0 through 5.0.10 could allow a privileged user to make system changes without proper access contro...
CVE-2023-37398CRITICAL9.8IBM Aspera Faspex 5.0.0 through 5.0.10 does not require that users should have strong passwords by default, which makes ...
CVE-2023-35907CRITICAL9.8IBM Aspera Faspex 5.0.0 through 5.0.10 does not require that users should have strong passwords by default, which makes ...
CVE-2023-33838MEDIUM4.9IBM Security Verify Governance 10.0.2 Identity Manager uses a one-way cryptographic hash against an input that should ...
CVE-2023-35017MEDIUM5.9IBM Security Verify Governance 10.0.2 Identity Manager can transmit user credentials in clear text that could be obtaine...
CVE-2023-50316CRITICAL9.8IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.1 is vulnerable to SQL injection. A remote...
CVE-2023-52292MEDIUM5.4IBM Sterling File Gateway 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.3 is vulnerable to stored cross-site scripti...
CVE-2023-47159MEDIUM4.3IBM Sterling File Gateway 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.1 could allow an authenticated user to enume...
CVE-2023-46187MEDIUM5.4IBM InfoSphere Master Data Management 11.6, 12.0, and 14.0 is vulnerable to stored cross-site scripting. This vulnerabil...
CVE-2023-50946MEDIUM6.5IBM Common Licensing 9.0 could allow an authenticated user to modify a configuration file that they should not have acc...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now