2023 CVE Vulnerabilities

31,411 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-29355MEDIUM5.3DHCP Server Service Information Disclosure Vulnerability
CVE-2023-29353MEDIUM5.5Sysinternals Process Monitor for Windows Denial of Service Vulnerability
CVE-2023-29352MEDIUM6.5Windows Remote Desktop Security Feature Bypass Vulnerability
CVE-2023-29351HIGH8.1Windows Group Policy Elevation of Privilege Vulnerability
CVE-2023-29346HIGH7.8NTFS Elevation of Privilege Vulnerability
CVE-2023-24938MEDIUM6.5Windows CryptoAPI Denial of Service Vulnerability
CVE-2023-21569MEDIUM5.5Azure DevOps Server Spoofing Vulnerability
CVE-2023-21565HIGH7.1Azure DevOps Server Spoofing Vulnerability
CVE-2023-24470CRITICAL9.1Potential XML External Entity Injection in ArcSight Logger versions prior to 7.3.0.
CVE-2023-34250MEDIUM5.3Discourse is an open source discussion platform. Prior to version 3.0.4 of the `stable` branch and version 3.1.0.beta5 o...
CVE-2023-32301MEDIUM5.3Discourse is an open source discussion platform. Prior to version 3.0.4 of the `stable` branch and version 3.1.0.beta5 o...
CVE-2023-32061MEDIUM5.3Discourse is an open source discussion platform. Prior to version 3.0.4 of the `stable` branch and version 3.1.0.beta5 o...
CVE-2023-31142MEDIUM5.3Discourse is an open source discussion platform. Prior to version 3.0.4 of the `stable` branch and version 3.1.0.beta5 o...
CVE-2023-24469MEDIUM6.1Potential Cross-Site Scripting in ArcSight Logger versions prior to 7.3.0
CVE-2023-34944CRITICAL9.8An arbitrary file upload vulnerability in the /fileUpload.lib.php component of Chamilo 1.11.* up to v1.11.18 allows atta...
CVE-2023-34537MEDIUM5.4A Reflected XSS was discovered in HotelDruid version 3.0.5, an attacker can issue malicious code/command on affected web...
CVE-2023-33817HIGH8.8hoteldruid v3.0.5 was discovered to contain a SQL injection vulnerability.
CVE-2023-2778HIGH7.5 A denial-of-service vulnerability exists in Rockwell Automation FactoryTalk Transaction Manager. This vulnerability can...
CVE-2023-2639MEDIUM4.7The underlying feedback mechanism of Rockwell Automation's FactoryTalk System Services that transfers the FactoryTalk ...
CVE-2023-2638MEDIUM5 Rockwell Automation's FactoryTalk System Services does not verify that a backup configuration archive is password prote...
CVE-2023-2637HIGH8.2 Rockwell Automation's FactoryTalk System Services uses a hard-coded cryptographic key to generate administrator cookies...
CVE-2023-24546HIGH8.1On affected versions of the CloudVision Portal improper access controls on the connection from devices to CloudVision co...
CVE-2023-29562CRITICAL9.8TP-Link TL-WPA7510 (EU)_V2_190125 was discovered to contain a stack overflow via the operation parameter at /admin/local...
CVE-2023-34965MEDIUM5.3SSPanel-Uim 2023.3 does not restrict access to the /link/ interface which can lead to a leak of user information.
CVE-2023-34115LOW3.8Buffer copy without checking size of input in Zoom Meeting SDK before 5.13.0 may allow an authenticated user to potent...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now