2023 CVE Vulnerabilities

31,411 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-34967MEDIUM5.3A Type Confusion vulnerability was found in Samba's mdssvc RPC service for Spotlight. When parsing Spotlight mdssvc RPC ...
CVE-2023-34966HIGH7.5An infinite loop vulnerability was found in Samba's mdssvc RPC service for Spotlight. When parsing Spotlight mdssvc RPC ...
CVE-2023-32476MEDIUM5.5 Dell Hybrid Client version 2.0 contains a Sensitive Data Exposure vulnerability. An unauthenticated malicious user on t...
CVE-2023-32265MEDIUM6.5 A potential security vulnerability has been identified in the Enterprise Server Common Web Administration (ESCWA) compo...
CVE-2023-3786MEDIUM6.8A vulnerability classified as problematic has been found in Aures Komet up to 20230509. This affects an unknown part of ...
CVE-2023-32455MEDIUM5.5 Dell Wyse ThinOS versions prior to 2208 (9.3.2102) contain a sensitive information disclosure vulnerability. An unauthe...
CVE-2023-32447MEDIUM5.5 Dell Wyse ThinOS versions prior to 2306 (9.4.2103) contain a sensitive information disclosure vulnerability. A maliciou...
CVE-2023-32446MEDIUM5.5 Dell Wyse ThinOS versions prior to 2303 (9.4.1141) contain a sensitive information disclosure vulnerability. An unauthe...
CVE-2023-32483MEDIUM4.4 Wyse Management Suite versions prior to 4.0 contain a sensitive information disclosure vulnerability. An authenticated ...
CVE-2023-32482MEDIUM4.9 Wyse Management Suite versions prior to 4.0 contain an improper authorization vulnerability. An authenticated malicious...
CVE-2023-32481MEDIUM6.5 Wyse Management Suite versions prior to 4.0 contain a denial-of-service vulnerability. An authenticated malicious user ...
CVE-2023-3785MEDIUM5.4A vulnerability was found in PaulPrinting CMS 2018. It has been rated as problematic. Affected by this issue is some unk...
CVE-2023-37290HIGH7.5 InfoDoc Document On-line Submission and Approval System lacks sufficient restrictions on the available tags within its ...
CVE-2023-3784MEDIUM5.4A vulnerability was found in Dooblou WiFi File Explorer 1.13.3. It has been declared as problematic. Affected by this vu...
CVE-2023-3783MEDIUM5.4A vulnerability was found in Webile 1.0.1. It has been classified as problematic. Affected is an unknown function of the...
CVE-2023-3779MEDIUM5.3The Essential Addons For Elementor plugin for WordPress is vulnerable to unauthenticated API key disclosure in versions ...
CVE-2023-38408CRITICAL9.8The PKCS#11 feature in ssh-agent in OpenSSH before 9.3p2 has an insufficiently trustworthy search path, leading to remot...
CVE-2023-37289CRITICAL9.8It is identified a vulnerability of Unrestricted Upload of File with Dangerous Type in the file uploading function in I...
CVE-2023-3300MEDIUM5.3HashiCorp Nomad and Nomad Enterprise 0.11.0 up to 1.5.6 and 1.4.1 HTTP search API can reveal names of available CSI plug...
CVE-2023-3299LOW2.7HashiCorp Nomad Enterprise 1.2.11 up to 1.5.6, and 1.4.10 ACL policies using a block without a label generates unexpecte...
CVE-2023-3072LOW3.8HashiCorp Nomad and Nomad Enterprise 0.7.0 up to 1.5.6 and 1.4.10 ACL policies using a block without a label generates u...
CVE-2023-37362HIGH8.8Weintek Weincloud v0.13.6 could allow an attacker to abuse the registration functionality to login with testing cred...
CVE-2023-36853HIGH7.8 ​In Keysight Geolocation Server v2.4.2 and prior, a low privileged attacker could create a local ZIP file containin...
CVE-2023-35134MEDIUM5.9 Weintek Weincloud v0.13.6 could allow an attacker to reset a password with the corresponding account’s JWT token on...
CVE-2023-34429HIGH7.5 Weintek Weincloud v0.13.6 could allow an attacker to cause a denial-of-service condition for Weincloud by sending...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now