2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-28323 | CRITICAL | 9.8 | 3.1% | Jul 1, 2023 | A deserialization of untrusted data exists in EPM 2022 Su3 and all prior versions that allows an unauthenticated user to... |
| CVE-2023-22814 | CRITICAL | 9.8 | 0.6% | Jul 1, 2023 | An authentication bypass issue via spoofing was discovered in the token-based authentication mechanism that could allow ... |
| CVE-2023-36812 | CRITICAL | 9.8 | 14.3% | Jun 30, 2023 | OpenTSDB is a open source, distributed, scalable Time Series Database (TSDB). OpenTSDB is vulnerable to Remote Code Exec... |
| CVE-2023-36144 | HIGH | 7.5 | 39.7% | Jun 30, 2023 | An authentication bypass in Intelbras Switch SG 2404 MR in firmware 1.00.54 allows an unauthenticated attacker to downlo... |
| CVE-2023-3493 | HIGH | 8 | 0.4% | Jun 30, 2023 | Improper Neutralization of Formula Elements in a CSV File in GitHub repository fossbilling/fossbilling prior to 0.5.3. |
| CVE-2023-3491 | HIGH | 8.8 | 0.7% | Jun 30, 2023 | Unrestricted Upload of File with Dangerous Type in GitHub repository fossbilling/fossbilling prior to 0.5.3. |
| CVE-2023-3490 | CRITICAL | 9.8 | 0.8% | Jun 30, 2023 | SQL Injection in GitHub repository fossbilling/fossbilling prior to 0.5.3. |
| CVE-2023-3338 | MEDIUM | 6.5 | 8.1% | Jun 30, 2023 | A null pointer dereference flaw was found in the Linux kernel's DECnet networking protocol. This issue could allow a rem... |
| CVE-2023-3117 | — | — | — | Jun 30, 2023 | Rejected reason: Duplicate of CVE-2023-3390. |
| CVE-2023-33298 | HIGH | 7.8 | 0.6% | Jun 30, 2023 | com.perimeter81.osx.HelperTool in Perimeter81 10.0.0.19 on macOS allows Local Privilege Escalation (to root) via shell m... |
| CVE-2023-2908 | MEDIUM | 5.5 | 0.5% | Jun 30, 2023 | A null pointer dereference issue was found in Libtiff's tif_dir.c file. This issue may allow an attacker to pass a craft... |
| CVE-2023-29241 | HIGH | 7.1 | 0.3% | Jun 30, 2023 | Improper Information in Cybersecurity Guidebook in Bosch Building Integration System (BIS) 5.0 may lead to wrong configu... |
| CVE-2023-22816 | HIGH | 8.8 | 0.7% | Jun 30, 2023 | A post-authentication remote command injection vulnerability in a CGI file in Western Digital My Cloud OS 5 devices that... |
| CVE-2023-22815 | MEDIUM | 6.7 | 1.1% | Jun 30, 2023 | Post-authentication remote command injection vulnerability in Western Digital My Cloud OS 5 devices that could allow an ... |
| CVE-2023-1206 | MEDIUM | 5.7 | 0.5% | Jun 30, 2023 | A hash collision flaw was found in the IPv6 connection lookup table in the Linux kernel’s IPv6 functionality when a user... |
| CVE-2023-35947 | HIGH | 8.1 | 0.5% | Jun 30, 2023 | Gradle is a build tool with a focus on build automation and support for multi-language development. In affected versions... |
| CVE-2023-35946 | MEDIUM | 5.5 | 0.3% | Jun 30, 2023 | Gradle is a build tool with a focus on build automation and support for multi-language development. When Gradle writes a... |
| CVE-2023-29147 | MEDIUM | 5.5 | 0.3% | Jun 30, 2023 | In Malwarebytes EDR 1.0.11 for Linux, it is possible to bypass the detection layers that depend on inode identifiers, be... |
| CVE-2023-31543 | CRITICAL | 9.8 | 1.1% | Jun 30, 2023 | A dependency confusion in pipreqs v0.3.0 to v0.4.11 allows attackers to execute arbitrary code via uploading a crafted P... |
| CVE-2023-29145 | HIGH | 7.8 | 0.3% | Jun 30, 2023 | The Malwarebytes EDR 1.0.11 for Linux driver doesn't properly ensure whitelisting of executable libraries loaded by exec... |
| CVE-2023-27469 | HIGH | 7.1 | 0.4% | Jun 30, 2023 | Malwarebytes Anti-Exploit 4.4.0.220 is vulnerable to arbitrary file deletion and denial of service via an ALPC message i... |
| CVE-2023-37365 | MEDIUM | 6.5 | 0.5% | Jun 30, 2023 | Hnswlib 0.7.0 has a double free in init_index when the M argument is a large integer. |
| CVE-2023-36810 | MEDIUM | 6.5 | 0.6% | Jun 30, 2023 | pypdf is a pure-python PDF library capable of splitting, merging, cropping, and transforming the pages of PDF files. An ... |
| CVE-2023-36807 | MEDIUM | 6.5 | 0.5% | Jun 30, 2023 | pypdf is a pure-python PDF library capable of splitting, merging, cropping, and transforming the pages of PDF files. In ... |
| CVE-2023-36477 | MEDIUM | 5.4 | 0.8% | Jun 30, 2023 | XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Any user with e... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now