2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-7235HIGH8.4The OpenVPN GUI installer before version 2.6.9 did not set the proper access control restrictions to the installation di...
CVE-2023-52441HIGH7.8In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix out of bounds in init_smb2_rsp_hdr() If...
CVE-2023-52440HIGH7.8In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix slub overflow in ksmbd_decode_ntlmssp_au...
CVE-2023-42942HIGH7.8This issue was addressed with improved handling of symlinks. This issue is fixed in watchOS 10.1, macOS Sonoma 14.1, tvO...
CVE-2023-42928HIGH7.8The issue was addressed with improved bounds checks. This issue is fixed in iOS 17.1 and iPadOS 17.1. An app may be able...
CVE-2023-42873HIGH7.8The issue was addressed with improved bounds checks. This issue is fixed in macOS Sonoma 14.1, tvOS 17.1, macOS Monterey...
CVE-2023-42848HIGH7.8The issue was addressed with improved bounds checks. This issue is fixed in watchOS 10.1, macOS Sonoma 14.1, tvOS 17.1, ...
CVE-2023-42838HIGH8.6An access issue was addressed with improvements to the sandbox. This issue is fixed in macOS Ventura 13.6.3, macOS Sonom...
CVE-2023-42835HIGH7.5A logic issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.1. An attacker may be able to a...
CVE-2023-47422HIGH8.8An access control issue in /usr/sbin/httpd in Tenda TX9 V1 V22.03.02.54, Tenda AX3 V3 V16.03.12.11, Tenda AX9 V1 V22.03....
CVE-2023-52439HIGH7.8In the Linux kernel, the following vulnerability has been resolved: uio: Fix use-after-free in uio_open core-1 core...
CVE-2023-52438HIGH7.8In the Linux kernel, the following vulnerability has been resolved: binder: fix use-after-free in shinker's callback T...
CVE-2023-52436HIGH7.8In the Linux kernel, the following vulnerability has been resolved: f2fs: explicitly null-terminate the xattr list Whe...
CVE-2023-52434HIGH8In the Linux kernel, the following vulnerability has been resolved: smb: client: fix potential OOBs in smb2_parse_conte...
CVE-2023-48220HIGH7.4Decidim is a participatory democracy framework. Starting in version 0.4.rc3 and prior to version 2.0.9 of the `devise_in...
CVE-2023-42791HIGH8.8A relative path traversal in Fortinet FortiManager version 7.4.0 and 7.2.0 through 7.2.3 and 7.0.0 through 7.0.8 and 6.4...
CVE-2023-52433HIGH7.8In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_set_rbtree: skip sync GC for new ele...
CVE-2023-7245HIGH7.8The nodejs framework in OpenVPN Connect 3.0 through 3.4.3 (Windows)/3.4.7 (macOS) was not properly configured, which all...
CVE-2023-51770HIGH7.5Arbitrary File Read Vulnerability in Apache Dolphinscheduler. This issue affects Apache DolphinScheduler: before 3.2.1....
CVE-2023-49250HIGH7.3Because the HttpUtils class did not verify certificates, an attacker that could perform a Man-in-the-Middle (MITM) attac...
CVE-2023-6764HIGH8.1 A format string vulnerability in a function of the IPSec VPN feature in Zyxel ATP series firmware versions f...
CVE-2023-6398HIGH7.2A post-authentication command injection vulnerability in the file upload binary in Zyxel ATP series firmware versions fr...
CVE-2023-6260HIGH8.8Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Brivo ACS100...
CVE-2023-50257HIGH8.1eProsima Fast DDS (formerly Fast RTPS) is a C++ implementation of the Data Distribution Service standard of the Object M...
CVE-2023-52379HIGH7.5Permission control vulnerability in the calendarProvider module.Successful exploitation of this vulnerability may affect...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now