2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-44038 | MEDIUM | 6.5 | 0.3% | Apr 3, 2024 | In VeridiumID before 3.5.0, the identity provider page allows an unauthenticated attacker to discover information about ... |
| CVE-2023-35812 | MEDIUM | 5.3 | 0.4% | Apr 3, 2024 | An issue was discovered in the Amazon Linux packages of OpenSSH 7.4 for Amazon Linux 1 and 2, because of an incomplete f... |
| CVE-2023-52639 | MEDIUM | 4.7 | 0.2% | Apr 3, 2024 | In the Linux kernel, the following vulnerability has been resolved: KVM: s390: vsie: fix race during shadow creation R... |
| CVE-2023-52638 | MEDIUM | 5.5 | 0.2% | Apr 3, 2024 | In the Linux kernel, the following vulnerability has been resolved: can: j1939: prevent deadlock by changing j1939_sock... |
| CVE-2023-52296 | MEDIUM | 5.3 | 0.6% | Apr 3, 2024 | IBM DB2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 is vulnerable to denial of service when querying ... |
| CVE-2023-38729 | MEDIUM | 6.5 | 0.6% | Apr 3, 2024 | IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to sensitive inform... |
| CVE-2023-35764 | MEDIUM | 5.3 | 0.3% | Apr 3, 2024 | Insufficient verification of data authenticity issue in Survey Maker prior to 3.6.4 allows a remote unauthenticated atta... |
| CVE-2023-34423 | MEDIUM | 6.1 | 0.4% | Apr 3, 2024 | Survey Maker prior to 3.6.4 contains a stored cross-site scripting vulnerability. If this vulnerability is exploited, an... |
| CVE-2023-50313 | MEDIUM | 6.5 | 0.2% | Apr 2, 2024 | IBM WebSphere Application Server 8.5 and 9.0 could provide weaker than expected security for outbound TLS connections ca... |
| CVE-2023-6951 | MEDIUM | 6.6 | 0.3% | Apr 2, 2024 | A Use of Weak Credentials vulnerability affecting the Wi-Fi network generated by a set of DJI drones could allow a remot... |
| CVE-2023-6949 | MEDIUM | 5.2 | 0.2% | Apr 2, 2024 | A Missing Authentication for Critical Function issue affecting the HTTP service running on the DJI Mavic Mini 3 Pro on t... |
| CVE-2023-51456 | MEDIUM | 6.8 | 0.2% | Apr 2, 2024 | A Improper Input Validation issue affecting the v2_sdk_service running on a set of DJI drone devices on the port 10000 c... |
| CVE-2023-51455 | MEDIUM | 6.8 | 0.2% | Apr 2, 2024 | A Improper Validation of Array Index issue affecting the v2_sdk_service running on a set of DJI drone devices on the por... |
| CVE-2023-51454 | MEDIUM | 6.8 | 0.2% | Apr 2, 2024 | A Out-of-bounds Write issue affecting the v2_sdk_service running on a set of DJI drone devices on the port 10000 could a... |
| CVE-2023-52636 | MEDIUM | 5.5 | 0.2% | Apr 2, 2024 | In the Linux kernel, the following vulnerability has been resolved: libceph: just wait for more data to be available on... |
| CVE-2023-52635 | MEDIUM | 5.5 | 0.2% | Apr 2, 2024 | In the Linux kernel, the following vulnerability has been resolved: PM / devfreq: Synchronize devfreq_monitor_[start/st... |
| CVE-2023-52634 | MEDIUM | 5.5 | 0.2% | Apr 2, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix disable_otg_wa logic [Why] Wh... |
| CVE-2023-52633 | MEDIUM | 5 | 0.2% | Apr 2, 2024 | In the Linux kernel, the following vulnerability has been resolved: um: time-travel: fix time corruption In 'basic' ti... |
| CVE-2023-52632 | MEDIUM | 5.5 | 0.2% | Apr 2, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: Fix lock dependency warning with srcu ... |
| CVE-2023-52631 | MEDIUM | 5.5 | 0.2% | Apr 2, 2024 | In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Fix an NULL dereference bug The issue he... |
| CVE-2023-48906 | MEDIUM | 4.3 | 0.3% | Apr 1, 2024 | Stack Overflow vulnerability in Btstack 1.6 and earlier allows attackers to cause a denial of service via crafted input ... |
| CVE-2023-33111 | MEDIUM | 5.5 | 0.1% | Apr 1, 2024 | Information disclosure when VI calibration state set by ADSP is greater than MAX_FBSP_STATE in the response payload to A... |
| CVE-2023-50959 | MEDIUM | 6.5 | 0.5% | Mar 31, 2024 | IBM Cloud Pak for Business Automation 18.0.0, 18.0.1, 18.0.2,19.0.1, 19.0.2, 19.0.3,20.0.1, 20.0.2, 20.0.3, 21.0.1, 21.0... |
| CVE-2023-49234 | MEDIUM | 6.3 | 0.2% | Mar 29, 2024 | An XML external entity (XXE) vulnerability was found in Stilog Visual Planning 8. It allows an authenticated attacker to... |
| CVE-2023-6047 | MEDIUM | 6.1 | 0.3% | Mar 29, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Algoritim E-commer... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now