2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-34236 | MEDIUM | 6.5 | 0.7% | Jul 14, 2023 | Weave GitOps Terraform Controller (aka Weave TF-controller) is a controller for Flux to reconcile Terraform resources in... |
| CVE-2023-37473 | HIGH | 8.8 | 0.8% | Jul 14, 2023 | zenstruck/collections is a set of helpers for iterating/paginating/filtering collections. Passing _callable strings_ (ie... |
| CVE-2023-37472 | MEDIUM | 6.5 | 0.6% | Jul 14, 2023 | Knowage is an open source suite for business analytics. The application often use user supplied data to create HQL queri... |
| CVE-2023-37464 | HIGH | 7.5 | 0.6% | Jul 14, 2023 | OpenIDC/cjose is a C library implementing the Javascript Object Signing and Encryption (JOSE). The AES GCM decryption ro... |
| CVE-2023-37462 | HIGH | 8.8 | 91.3% | Jul 14, 2023 | XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Improper escapi... |
| CVE-2023-3633 | HIGH | 7.5 | 0.5% | Jul 14, 2023 | An out-of-bounds write vulnerability in Bitdefender Engines on Windows causes the engine to crash. This issue affects Bi... |
| CVE-2023-38325 | HIGH | 7.5 | 0.6% | Jul 14, 2023 | The cryptography package before 41.0.2 for Python mishandles SSH certificates that have critical options. |
| CVE-2023-37474 | HIGH | 7.5 | 42.8% | Jul 14, 2023 | Copyparty is a portable file server. Versions prior to 1.8.2 are subject to a path traversal vulnerability detected in t... |
| CVE-2023-36850 | MEDIUM | 6.5 | 0.3% | Jul 14, 2023 | An Improper Validation of Specified Index, Position, or Offset in Input vulnerability in the Connectivity Fault Manageme... |
| CVE-2023-38253 | MEDIUM | 5.5 | 0.4% | Jul 14, 2023 | An out-of-bounds read flaw was found in w3m, in the growbuf_to_Str function in indep.c. This issue may allow an attacker... |
| CVE-2023-38252 | MEDIUM | 5.5 | 0.4% | Jul 14, 2023 | An out-of-bounds read flaw was found in w3m, in the Strnew_size function in Str.c. This issue may allow an attacker to c... |
| CVE-2023-37224 | MEDIUM | 5.5 | 0.2% | Jul 14, 2023 | An issue in Archer Platform before v.6.13 fixed in v.6.12.0.6 and v.6.13.0 allows an authenticated attacker to obtain se... |
| CVE-2023-37223 | MEDIUM | 5.4 | 0.4% | Jul 14, 2023 | Cross Site Scripting (XSS) vulnerability in Archer Platform before v.6.13 and fixed in v.6.12.0.6 and v.6.13.0 allows a ... |
| CVE-2023-36888 | MEDIUM | 6.3 | 0.5% | Jul 14, 2023 | Microsoft Edge for Android (Chromium-based) Tampering Vulnerability |
| CVE-2023-36887 | HIGH | 7.8 | 1.3% | Jul 14, 2023 | Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability |
| CVE-2023-36883 | MEDIUM | 4.3 | 0.6% | Jul 14, 2023 | Microsoft Edge for iOS Spoofing Vulnerability |
| CVE-2023-36849 | MEDIUM | 6.5 | 0.3% | Jul 14, 2023 | An Improper Check or Handling of Exceptional Conditions vulnerability in the Layer-2 control protocols daemon (l2cpd) of... |
| CVE-2023-36848 | MEDIUM | 6.5 | 0.3% | Jul 14, 2023 | An Improper Handling of Undefined Values vulnerability in the periodic packet management daemon (PPMD) of Juniper Networ... |
| CVE-2023-36840 | MEDIUM | 5.5 | 0.2% | Jul 14, 2023 | A Reachable Assertion vulnerability in Routing Protocol Daemon (RPD) of Juniper Networks Junos OS and Junos OS Evolved a... |
| CVE-2023-36836 | MEDIUM | 4.7 | 0.2% | Jul 14, 2023 | A Use of an Uninitialized Resource vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and J... |
| CVE-2023-36835 | HIGH | 7.5 | 0.5% | Jul 14, 2023 | An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (PFE) of Juniper N... |
| CVE-2023-36834 | MEDIUM | 6.5 | 0.3% | Jul 14, 2023 | An Incomplete Internal State Distinction vulnerability in the packet forwarding engine (PFE) of Juniper Networks Junos O... |
| CVE-2023-32761 | HIGH | 8 | 0.4% | Jul 14, 2023 | Cross Site Request Forgery (CSRF) vulnerability in Archer Platform before v.6.13 and fixed in v.6.12.0.6 and v.6.13.0 al... |
| CVE-2023-32760 | MEDIUM | 6.5 | 0.4% | Jul 14, 2023 | An issue in Archer Platform before v.6.13 fixed in v.6.12.0.6 and v.6.13.0 allows an authenticated attacker to obtain se... |
| CVE-2023-32759 | MEDIUM | 6.5 | 0.5% | Jul 14, 2023 | An issue in Archer Platform before v.6.13 and fixed in 6.12.0.6 and 6.13.0 allows an authenticated attacker to obtain se... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now