2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-7235 | HIGH | 8.4 | 0.2% | Feb 21, 2024 | The OpenVPN GUI installer before version 2.6.9 did not set the proper access control restrictions to the installation di... |
| CVE-2023-52441 | HIGH | 7.8 | 0.4% | Feb 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix out of bounds in init_smb2_rsp_hdr() If... |
| CVE-2023-52440 | HIGH | 7.8 | 36.7% | Feb 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix slub overflow in ksmbd_decode_ntlmssp_au... |
| CVE-2023-42942 | HIGH | 7.8 | 0.4% | Feb 21, 2024 | This issue was addressed with improved handling of symlinks. This issue is fixed in watchOS 10.1, macOS Sonoma 14.1, tvO... |
| CVE-2023-42928 | HIGH | 7.8 | 0.2% | Feb 21, 2024 | The issue was addressed with improved bounds checks. This issue is fixed in iOS 17.1 and iPadOS 17.1. An app may be able... |
| CVE-2023-42873 | HIGH | 7.8 | 0.2% | Feb 21, 2024 | The issue was addressed with improved bounds checks. This issue is fixed in macOS Sonoma 14.1, tvOS 17.1, macOS Monterey... |
| CVE-2023-42848 | HIGH | 7.8 | 0.2% | Feb 21, 2024 | The issue was addressed with improved bounds checks. This issue is fixed in watchOS 10.1, macOS Sonoma 14.1, tvOS 17.1, ... |
| CVE-2023-42838 | HIGH | 8.6 | 0.2% | Feb 21, 2024 | An access issue was addressed with improvements to the sandbox. This issue is fixed in macOS Ventura 13.6.3, macOS Sonom... |
| CVE-2023-42835 | HIGH | 7.5 | 0.4% | Feb 21, 2024 | A logic issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.1. An attacker may be able to a... |
| CVE-2023-47422 | HIGH | 8.8 | 0.5% | Feb 20, 2024 | An access control issue in /usr/sbin/httpd in Tenda TX9 V1 V22.03.02.54, Tenda AX3 V3 V16.03.12.11, Tenda AX9 V1 V22.03.... |
| CVE-2023-52439 | HIGH | 7.8 | 0.3% | Feb 20, 2024 | In the Linux kernel, the following vulnerability has been resolved: uio: Fix use-after-free in uio_open core-1 core... |
| CVE-2023-52438 | HIGH | 7.8 | 0.3% | Feb 20, 2024 | In the Linux kernel, the following vulnerability has been resolved: binder: fix use-after-free in shinker's callback T... |
| CVE-2023-52436 | HIGH | 7.8 | 0.3% | Feb 20, 2024 | In the Linux kernel, the following vulnerability has been resolved: f2fs: explicitly null-terminate the xattr list Whe... |
| CVE-2023-52434 | HIGH | 8 | 0.6% | Feb 20, 2024 | In the Linux kernel, the following vulnerability has been resolved: smb: client: fix potential OOBs in smb2_parse_conte... |
| CVE-2023-48220 | HIGH | 7.4 | 0.8% | Feb 20, 2024 | Decidim is a participatory democracy framework. Starting in version 0.4.rc3 and prior to version 2.0.9 of the `devise_in... |
| CVE-2023-42791 | HIGH | 8.8 | 4.2% | Feb 20, 2024 | A relative path traversal in Fortinet FortiManager version 7.4.0 and 7.2.0 through 7.2.3 and 7.0.0 through 7.0.8 and 6.4... |
| CVE-2023-52433 | HIGH | 7.8 | 0.3% | Feb 20, 2024 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_set_rbtree: skip sync GC for new ele... |
| CVE-2023-7245 | HIGH | 7.8 | 0.3% | Feb 20, 2024 | The nodejs framework in OpenVPN Connect 3.0 through 3.4.3 (Windows)/3.4.7 (macOS) was not properly configured, which all... |
| CVE-2023-51770 | HIGH | 7.5 | 1.2% | Feb 20, 2024 | Arbitrary File Read Vulnerability in Apache Dolphinscheduler. This issue affects Apache DolphinScheduler: before 3.2.1.... |
| CVE-2023-49250 | HIGH | 7.3 | 0.7% | Feb 20, 2024 | Because the HttpUtils class did not verify certificates, an attacker that could perform a Man-in-the-Middle (MITM) attac... |
| CVE-2023-6764 | HIGH | 8.1 | 0.9% | Feb 20, 2024 | A format string vulnerability in a function of the IPSec VPN feature in Zyxel ATP series firmware versions f... |
| CVE-2023-6398 | HIGH | 7.2 | 1.3% | Feb 20, 2024 | A post-authentication command injection vulnerability in the file upload binary in Zyxel ATP series firmware versions fr... |
| CVE-2023-6260 | HIGH | 8.8 | 0.9% | Feb 19, 2024 | Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Brivo ACS100... |
| CVE-2023-50257 | HIGH | 8.1 | 0.5% | Feb 19, 2024 | eProsima Fast DDS (formerly Fast RTPS) is a C++ implementation of the Data Distribution Service standard of the Object M... |
| CVE-2023-52379 | HIGH | 7.5 | 0.3% | Feb 18, 2024 | Permission control vulnerability in the calendarProvider module.Successful exploitation of this vulnerability may affect... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now