2023 CVE Vulnerabilities

31,411 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-26045CRITICAL9.8NodeBB is Node.js based forum software. Starting in version 2.5.0 and prior to version 2.8.7, due to the use of the obje...
CVE-2023-20593MEDIUM5.5An issue in “Zen 2” CPUs, under specific microarchitectural circumstances, may allow an attacker to potentially access s...
CVE-2023-37613MEDIUM6.1A cross-site scripting (XSS) vulnerability in Assembly Software Trialworks v11.4 allows attackers to execute arbitrary w...
CVE-2023-34478CRITICAL9.8Apache Shiro, before 1.12.0 or 2.0.0-alpha-3, may be susceptible to a path traversal attack that results in an authentic...
CVE-2023-3324HIGH7.5 A vulnerability exists by allowing low-privileged users to read and update the data in various directories used by the ...
CVE-2023-3323MEDIUM5.4 A vulnerability exists by allowing low-privileged users to read and update the data in various directories used by the ...
CVE-2023-3322HIGH8.1 A vulnerability exists by allowing low-privileged users to read and update the data in various directories used by the ...
CVE-2023-3321HIGH8.8 A vulnerability exists by allowing low-privileged users to read and update the data in various directories used by the ...
CVE-2023-26077HIGH7.8Atera Agent through 1.8.3.6 on Windows Creates a Temporary File in a Directory with Insecure Permissions.
CVE-2023-3870Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2023-3812HIGH7.8An out-of-bounds memory access flaw was found in the Linux kernel’s TUN/TAP device driver functionality in how a user ge...
CVE-2023-3750MEDIUM5.3A flaw was found in libvirt. The virStoragePoolObjListSearch function does not return a locked pool as expected, resulti...
CVE-2023-3748HIGH7.5A flaw was found in FRRouting when parsing certain babeld unicast hello messages that are intended to be ignored. This i...
CVE-2023-3745MEDIUM5.5A heap-based buffer overflow issue was found in ImageMagick's PushCharPixel() function in quantum-private.h. This issue ...
CVE-2023-3640HIGH7.8A possible unauthorized memory access flaw was found in the Linux kernel's cpu_entry_area mapping of X86 CPU data to mem...
CVE-2023-3567HIGH7.1A use-after-free flaw was found in vcs_read in drivers/tty/vt/vc_screen.c in vc_screen in the Linux Kernel. This issue m...
CVE-2023-3384MEDIUM5.4A flaw was found in the Quay registry. While the image labels created through Quay undergo validation both in the UI and...
CVE-2023-3019MEDIUM6.5A DMA reentrancy issue leading to a use-after-free error was found in the e1000e NIC emulation code in QEMU. This issue ...
CVE-2023-38200HIGH7.5A flaw was found in Keylime. Due to their blocking nature, the Keylime registrar is subject to a remote denial of servic...
CVE-2023-33952MEDIUM6.7A double-free vulnerability was found in handling vmw_buffer_object objects in the vmwgfx driver in the Linux kernel. Th...
CVE-2023-33951MEDIUM5.3A race condition vulnerability was found in the vmwgfx driver in the Linux kernel. The flaw exists within the handling o...
CVE-2023-32258HIGH8.1A flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within t...
CVE-2023-32257HIGH8.1A flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within t...
CVE-2023-32252HIGH7.5A flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within t...
CVE-2023-32248HIGH7.5A flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within t...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now