2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-34967 | MEDIUM | 5.3 | 62.6% | Jul 20, 2023 | A Type Confusion vulnerability was found in Samba's mdssvc RPC service for Spotlight. When parsing Spotlight mdssvc RPC ... |
| CVE-2023-34966 | HIGH | 7.5 | 62.0% | Jul 20, 2023 | An infinite loop vulnerability was found in Samba's mdssvc RPC service for Spotlight. When parsing Spotlight mdssvc RPC ... |
| CVE-2023-32476 | MEDIUM | 5.5 | 0.2% | Jul 20, 2023 | Dell Hybrid Client version 2.0 contains a Sensitive Data Exposure vulnerability. An unauthenticated malicious user on t... |
| CVE-2023-32265 | MEDIUM | 6.5 | 0.4% | Jul 20, 2023 | A potential security vulnerability has been identified in the Enterprise Server Common Web Administration (ESCWA) compo... |
| CVE-2023-3786 | MEDIUM | 6.8 | 0.3% | Jul 20, 2023 | A vulnerability classified as problematic has been found in Aures Komet up to 20230509. This affects an unknown part of ... |
| CVE-2023-32455 | MEDIUM | 5.5 | 0.1% | Jul 20, 2023 | Dell Wyse ThinOS versions prior to 2208 (9.3.2102) contain a sensitive information disclosure vulnerability. An unauthe... |
| CVE-2023-32447 | MEDIUM | 5.5 | 0.1% | Jul 20, 2023 | Dell Wyse ThinOS versions prior to 2306 (9.4.2103) contain a sensitive information disclosure vulnerability. A maliciou... |
| CVE-2023-32446 | MEDIUM | 5.5 | 0.1% | Jul 20, 2023 | Dell Wyse ThinOS versions prior to 2303 (9.4.1141) contain a sensitive information disclosure vulnerability. An unauthe... |
| CVE-2023-32483 | MEDIUM | 4.4 | 0.1% | Jul 20, 2023 | Wyse Management Suite versions prior to 4.0 contain a sensitive information disclosure vulnerability. An authenticated ... |
| CVE-2023-32482 | MEDIUM | 4.9 | 0.4% | Jul 20, 2023 | Wyse Management Suite versions prior to 4.0 contain an improper authorization vulnerability. An authenticated malicious... |
| CVE-2023-32481 | MEDIUM | 6.5 | 0.5% | Jul 20, 2023 | Wyse Management Suite versions prior to 4.0 contain a denial-of-service vulnerability. An authenticated malicious user ... |
| CVE-2023-3785 | MEDIUM | 5.4 | 0.5% | Jul 20, 2023 | A vulnerability was found in PaulPrinting CMS 2018. It has been rated as problematic. Affected by this issue is some unk... |
| CVE-2023-37290 | HIGH | 7.5 | 0.6% | Jul 20, 2023 | InfoDoc Document On-line Submission and Approval System lacks sufficient restrictions on the available tags within its ... |
| CVE-2023-3784 | MEDIUM | 5.4 | 0.5% | Jul 20, 2023 | A vulnerability was found in Dooblou WiFi File Explorer 1.13.3. It has been declared as problematic. Affected by this vu... |
| CVE-2023-3783 | MEDIUM | 5.4 | 0.5% | Jul 20, 2023 | A vulnerability was found in Webile 1.0.1. It has been classified as problematic. Affected is an unknown function of the... |
| CVE-2023-3779 | MEDIUM | 5.3 | 0.5% | Jul 20, 2023 | The Essential Addons For Elementor plugin for WordPress is vulnerable to unauthenticated API key disclosure in versions ... |
| CVE-2023-38408 | CRITICAL | 9.8 | 76.8% | Jul 20, 2023 | The PKCS#11 feature in ssh-agent in OpenSSH before 9.3p2 has an insufficiently trustworthy search path, leading to remot... |
| CVE-2023-37289 | CRITICAL | 9.8 | 0.7% | Jul 20, 2023 | It is identified a vulnerability of Unrestricted Upload of File with Dangerous Type in the file uploading function in I... |
| CVE-2023-3300 | MEDIUM | 5.3 | 0.5% | Jul 20, 2023 | HashiCorp Nomad and Nomad Enterprise 0.11.0 up to 1.5.6 and 1.4.1 HTTP search API can reveal names of available CSI plug... |
| CVE-2023-3299 | LOW | 2.7 | 0.5% | Jul 20, 2023 | HashiCorp Nomad Enterprise 1.2.11 up to 1.5.6, and 1.4.10 ACL policies using a block without a label generates unexpecte... |
| CVE-2023-3072 | LOW | 3.8 | 0.4% | Jul 20, 2023 | HashiCorp Nomad and Nomad Enterprise 0.7.0 up to 1.5.6 and 1.4.10 ACL policies using a block without a label generates u... |
| CVE-2023-37362 | HIGH | 8.8 | 0.5% | Jul 19, 2023 | Weintek Weincloud v0.13.6 could allow an attacker to abuse the registration functionality to login with testing cred... |
| CVE-2023-36853 | HIGH | 7.8 | 0.2% | Jul 19, 2023 | In Keysight Geolocation Server v2.4.2 and prior, a low privileged attacker could create a local ZIP file containin... |
| CVE-2023-35134 | MEDIUM | 5.9 | 0.4% | Jul 19, 2023 | Weintek Weincloud v0.13.6 could allow an attacker to reset a password with the corresponding account’s JWT token on... |
| CVE-2023-34429 | HIGH | 7.5 | 0.5% | Jul 19, 2023 | Weintek Weincloud v0.13.6 could allow an attacker to cause a denial-of-service condition for Weincloud by sending... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now