2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-32214 | HIGH | 7.5 | 0.9% | Jun 19, 2023 | Protocol handlers `ms-cxh` and `ms-cxh-full` could have been leveraged to trigger a denial of service. *Note: This attac... |
| CVE-2023-32210 | MEDIUM | 6.5 | 0.5% | Jun 19, 2023 | Documents were incorrectly assuming an ordering of principal objects when ensuring we were loading an appropriately priv... |
| CVE-2023-32209 | HIGH | 7.5 | 0.8% | Jun 19, 2023 | A maliciously crafted favicon could have led to an out of memory crash. This vulnerability affects Firefox < 113. |
| CVE-2023-32208 | MEDIUM | 5.3 | 0.5% | Jun 19, 2023 | Service workers could reveal script base URL due to dynamic `import()`. This vulnerability affects Firefox < 113. |
| CVE-2023-29532 | MEDIUM | 5.5 | 0.2% | Jun 19, 2023 | A local attacker can trick the Mozilla Maintenance Service into applying an unsigned update file by pointing the service... |
| CVE-2023-29531 | CRITICAL | 9.8 | 1.0% | Jun 19, 2023 | An attacker could have caused an out of bounds memory access using WebGL APIs, leading to memory corruption and a potent... |
| CVE-2023-35005 | MEDIUM | 6.5 | 1.5% | Jun 19, 2023 | In Apache Airflow, some potentially sensitive values were being shown to the user in certain situations. This vulnerabi... |
| CVE-2023-35866 | MEDIUM | 5.5 | 0.2% | Jun 19, 2023 | In KeePassXC through 2.7.5, a local attacker can make changes to the Database security settings, including master passwo... |
| CVE-2023-34603 | HIGH | 7.5 | 0.7% | Jun 19, 2023 | JeecgBoot up to v 3.5.1 was discovered to contain a SQL injection vulnerability via the component queryFilterTableDictIn... |
| CVE-2023-34602 | HIGH | 7.5 | 0.7% | Jun 19, 2023 | JeecgBoot up to v 3.5.1 was discovered to contain a SQL injection vulnerability via the component queryTableDictItemsByC... |
| CVE-2023-35862 | MEDIUM | 6.5 | 0.8% | Jun 19, 2023 | libcoap 4.3.1 contains a buffer over-read via the function coap_parse_oscore_conf_mem at coap_oscore.c. |
| CVE-2023-34642 | HIGH | 7.8 | 0.3% | Jun 19, 2023 | KioWare for Windows through v8.33 was discovered to contain an incomplete blacklist filter for blocked dialog boxes on W... |
| CVE-2023-34641 | HIGH | 7.8 | 0.2% | Jun 19, 2023 | KioWare for Windows through v8.33 was discovered to contain an incomplete blacklist filter for blocked dialog boxes on W... |
| CVE-2023-32542 | HIGH | 7.8 | 0.3% | Jun 19, 2023 | Out-of-bounds read vulnerability exists in TELLUS v4.0.15.0 and TELLUS Lite v4.0.15.0. Opening a specially crafted V8 fi... |
| CVE-2023-32538 | HIGH | 7.8 | 0.3% | Jun 19, 2023 | Stack-based buffer overflow vulnerability exists in TELLUS v4.0.15.0 and TELLUS Lite v4.0.15.0. Opening a specially craf... |
| CVE-2023-32288 | HIGH | 7.8 | 0.3% | Jun 19, 2023 | Out-of-bounds read vulnerability exists in TELLUS v4.0.15.0 and TELLUS Lite v4.0.15.0. Opening a specially crafted SIM f... |
| CVE-2023-32276 | HIGH | 7.8 | 0.3% | Jun 19, 2023 | Stack-based buffer overflow vulnerability exists in TELLUS v4.0.15.0 and TELLUS Lite v4.0.15.0. Opening a specially craf... |
| CVE-2023-32273 | HIGH | 7.8 | 0.3% | Jun 19, 2023 | Stack-based buffer overflow vulnerability exists in TELLUS v4.0.15.0 and TELLUS Lite v4.0.15.0. Opening a specially craf... |
| CVE-2023-32270 | HIGH | 7.8 | 0.2% | Jun 19, 2023 | Access of memory location after end of buffer issue exists in TELLUS v4.0.15.0 and TELLUS Lite v4.0.15.0. Opening a spec... |
| CVE-2023-32201 | HIGH | 7.8 | 0.3% | Jun 19, 2023 | Stack-based buffer overflow vulnerability exists in TELLUS v4.0.15.0 and TELLUS Lite v4.0.15.0. Opening a specially craf... |
| CVE-2023-31239 | HIGH | 7.8 | 0.3% | Jun 19, 2023 | Stack-based buffer overflow vulnerability in V-Server v4.0.15.0 and V-Server Lite v4.0.15.0 and earlier allows an attack... |
| CVE-2023-30759 | HIGH | 7.8 | 0.1% | Jun 19, 2023 | The driver installation package created by Printer Driver Packager NX v1.0.02 to v1.1.25 fails to detect its modificatio... |
| CVE-2023-27396 | CRITICAL | 9.8 | 1.4% | Jun 19, 2023 | FINS (Factory Interface Network Service) is a message communication protocol, which is designed to be used in closed FA ... |
| CVE-2023-35857 | CRITICAL | 9.8 | 0.6% | Jun 19, 2023 | In Siren Investigate before 13.2.2, session keys remain active even after logging out. |
| CVE-2023-35856 | CRITICAL | 9.8 | 1.1% | Jun 19, 2023 | A buffer overflow in Nintendo Mario Kart Wii RMCP01, RMCE01, RMCJ01, and RMCK01 can be exploited by a game client to exe... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now