2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-51394HIGH7.5High traffic environments may result in NULL Pointer Dereference vulnerability in Silicon Labs's Ember ZNet SDK before v...
CVE-2023-51393HIGH7.5Due to an allocation of resources without limits, an uncontrolled resource consumption vulnerability exists in Silicon L...
CVE-2023-52464HIGH7.8In the Linux kernel, the following vulnerability has been resolved: EDAC/thunderx: Fix possible out-of-bounds string ac...
CVE-2023-52461HIGH7.8In the Linux kernel, the following vulnerability has been resolved: drm/sched: Fix bounds limiting when given a malform...
CVE-2023-52457HIGH7.8In the Linux kernel, the following vulnerability has been resolved: serial: 8250: omap: Don't skip resource freeing if ...
CVE-2023-52455HIGH7.8In the Linux kernel, the following vulnerability has been resolved: iommu: Don't reserve 0-length IOVA region When the...
CVE-2023-52452HIGH7.8In the Linux kernel, the following vulnerability has been resolved: bpf: Fix accesses to uninit stack slots Privileged...
CVE-2023-52451HIGH7.8In the Linux kernel, the following vulnerability has been resolved: powerpc/pseries/memhp: Fix access beyond end of drm...
CVE-2023-52446HIGH7.8In the Linux kernel, the following vulnerability has been resolved: bpf: Fix a race condition between btf_put() and map...
CVE-2023-52445HIGH7.8In the Linux kernel, the following vulnerability has been resolved: media: pvrusb2: fix use after free on context disco...
CVE-2023-52444HIGH7.8In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid dirent corruption As Al reporte...
CVE-2023-52161HIGH7.5The Access Point functionality in eapol_auth_key_handle in eapol.c in iNet wireless daemon (IWD) before 2.14 allows atta...
CVE-2023-51450HIGH8.1baserCMS is a website development framework. Prior to version 5.0.9, there is an OS Command Injection vulnerability in t...
CVE-2023-3966HIGH7.5A flaw was found in Open vSwitch where multiple versions are vulnerable to crafted Geneve packets, which may result in a...
CVE-2023-29181HIGH8.8A use of externally-controlled format string in Fortinet FortiOS 7.2.0 through 7.2.4, 7.0.0 through 7.0.11, 6.4.0 throug...
CVE-2023-29180HIGH7.5A null pointer dereference in Fortinet FortiOS version 7.2.0 through 7.2.4, 7.0.0 through 7.0.11, 6.4.0 through 6.4.12, ...
CVE-2023-52155HIGH7.2A SQL Injection vulnerability in /admin/sauvegarde/run.php in PMB 7.4.7 and earlier allows remote authenticated attacker...
CVE-2023-52154HIGH7.2File Upload vulnerability in pmb/camera_upload.php in PMB 7.4.7 and earlier allows attackers to run arbitrary code via u...
CVE-2023-38844HIGH7.5SQL injection vulnerability in PMB v.7.4.7 and earlier allows a remote attacker to execute arbitrary code via the thesau...
CVE-2023-24334HIGH8A stack overflow vulnerability in Tenda AC23 with firmware version US_AC23V1.0re_V16.03.07.45_cn_TDC01 allows attackers ...
CVE-2023-24333HIGH8.8A stack overflow vulnerability in Tenda AC21 with firmware version US_AC21V1.0re_V16.03.08.15_cn_TDC01 allows attackers ...
CVE-2023-24332HIGH8.1A stack overflow vulnerability in Tenda AC6 with firmware version US_AC6V5.0re_V03.03.02.01_cn_TDC01 allows attackers to...
CVE-2023-24330HIGH8.8Command Injection vulnerability in D-Link Dir 882 with firmware version DIR882A1_FW130B06 allows attackers to run arbitr...
CVE-2023-50975HIGH8.4The TD Bank TD Advanced Dashboard client through 3.0.3 for macOS allows arbitrary code execution because of the lack of ...
CVE-2023-46241HIGH8.1`discourse-microsoft-auth` is a plugin that enables authentication via Microsoft. On sites with the `discourse-microsoft...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now