2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-28896 | LOW | 2.4 | 0.1% | Dec 1, 2023 | Access to critical Unified Diagnostics Services (UDS) of the Modular Infotainment Platform 3 (MIB3) infotainment is tran... |
| CVE-2023-4658 | LOW | 3.1 | 0.4% | Dec 1, 2023 | An issue has been discovered in GitLab EE affecting all versions starting from 8.13 before 16.4.3, all versions starting... |
| CVE-2023-43089 | LOW | 3.3 | 0.2% | Dec 1, 2023 | Dell Rugged Control Center, version prior to 4.7, contains insufficient protection for the Policy folder. A local malic... |
| CVE-2023-49652 | LOW | 2.7 | 0.5% | Nov 29, 2023 | Incorrect permission checks in Jenkins Google Compute Engine Plugin 4.550.vb_327fca_3db_11 and earlier allow attackers w... |
| CVE-2023-29066 | LOW | 3.5 | 0.3% | Nov 28, 2023 | The FACSChorus software does not properly assign data access privileges for operating system user accounts. A non-admini... |
| CVE-2023-29063 | LOW | 2.4 | 0.2% | Nov 28, 2023 | The FACSChorus workstation does not prevent physical access to its PCI express (PCIe) slots, which could allow a threat ... |
| CVE-2023-29062 | LOW | 3.8 | 0.3% | Nov 28, 2023 | The Operating System hosting the FACSChorus application is configured to allow transmission of hashed user credentials u... |
| CVE-2023-48711 | LOW | 3.7 | 0.5% | Nov 24, 2023 | google-translate-api-browser is an npm package which interfaces with the google translate web api. A Server-Side Request... |
| CVE-2023-6251 | LOW | 3.5 | 0.2% | Nov 24, 2023 | Cross-site Request Forgery (CSRF) in Checkmk < 2.2.0p15, < 2.1.0p37, <= 2.0.0p39 allow an authenticated attacker to dele... |
| CVE-2023-43081 | LOW | 3.3 | 0.2% | Nov 22, 2023 | PowerProtect Agent for File System Version 19.14 and prior, contains an incorrect default permissions vulnerability in ... |
| CVE-2023-48303 | LOW | 2.7 | 0.7% | Nov 21, 2023 | Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 25.0.0 and prio... |
| CVE-2023-48226 | LOW | 3.5 | 0.8% | Nov 21, 2023 | OpenReplay is a self-hosted session replay suite. In version 1.14.0, due to lack of validation Name field - Account Sett... |
| CVE-2023-47072 | LOW | 3.3 | 0.4% | Nov 17, 2023 | Adobe After Effects version 24.0.2 (and earlier) and 23.6 (and earlier) are affected by an Access of Uninitialized Point... |
| CVE-2023-47060 | LOW | 3.3 | 0.3% | Nov 16, 2023 | Adobe Premiere Pro version 24.0 (and earlier) and 23.6 (and earlier) are affected by an Access of Uninitialized Pointer ... |
| CVE-2023-30954 | LOW | 3.7 | 0.3% | Nov 15, 2023 | The Gotham video-application-server service contained a race condition which would cause it to not apply certain acls ne... |
| CVE-2023-23549 | LOW | 2.7 | 0.6% | Nov 15, 2023 | Improper Input Validation in Checkmk <2.2.0p15, <2.1.0p37, <=2.0.0p39 allows priviledged attackers to cause partial deni... |
| CVE-2023-46121 | LOW | 3.7 | 0.3% | Nov 15, 2023 | yt-dlp is a youtube-dl fork with additional features and fixes. The Generic Extractor in yt-dlp is vulnerable to an atta... |
| CVE-2023-22329 | LOW | 3.5 | 0.3% | Nov 14, 2023 | Improper input validation in the BIOS firmware for some Intel(R) Processors may allow an authenticated user to potential... |
| CVE-2023-22313 | LOW | 2.3 | 0.2% | Nov 14, 2023 | Improper buffer restrictions in some Intel(R) QAT Library software before version 22.07.1 may allow a privileged user to... |
| CVE-2023-20519 | LOW | 3.3 | 0.2% | Nov 14, 2023 | A Use-After-Free vulnerability in the management of an SNP guest context page may allow a malicious hypervisor to masque... |
| CVE-2023-45585 | LOW | 3.3 | 0.2% | Nov 14, 2023 | An insertion of sensitive information into log file vulnerability [CWE-532] in FortiSIEM version 7.0.0, version 6.7.6 an... |
| CVE-2023-36016 | LOW | 3.4 | 1.3% | Nov 14, 2023 | Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability |
| CVE-2023-6109 | LOW | 3.7 | 0.4% | Nov 14, 2023 | The YOP Poll plugin for WordPress is vulnerable to a race condition in all versions up to, and including, 6.5.26. This i... |
| CVE-2023-47614 | LOW | 3.3 | 0.2% | Nov 10, 2023 | A CWE-200: Exposure of Sensitive Information to an Unauthorized Actor vulnerability exists in Telit Cinterion BGS5, Teli... |
| CVE-2023-45816 | LOW | 3.3 | 0.3% | Nov 10, 2023 | Discourse is an open source platform for community discussion. Prior to version 3.1.3 of the `stable` branch and version... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now