2023 CVE Vulnerabilities

31,411 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-27881CRITICAL9.9 A user could use the “Upload Resource” functionality to upload files to any location on the disk.
CVE-2023-24476LOW3.3 An attacker with local access to the machine could record the traffic, which could allow them to resend requests witho...
CVE-2023-33848MEDIUM6.5IBM TXSeries for Multiplatforms 8.1, 8.2, 9.1, CICS TX Standard, 11.1, CICS TX Advanced 10.1, and 11.1 could allow a pri...
CVE-2023-33556CRITICAL9.8TOTOLink A7100RU V7.4cu.2313_B20191024 was discovered to contain a command injection vulnerability via the staticGw para...
CVE-2023-33496CRITICAL9.8xxl-rpc v1.7.0 was discovered to contain a deserialization vulnerability via the component com.xxl.rpc.core.remoting.net...
CVE-2023-31116CRITICAL9.8An issue was discovered in the Shannon RCS component in Samsung Exynos Modem 5123 and 5300. An incorrect default permiss...
CVE-2023-31115HIGH7.5An issue was discovered in the Shannon RCS component in Samsung Exynos Modem 5123 and 5300. Incorrect resource transfer ...
CVE-2023-31114CRITICAL9.1An issue was discovered in the Shannon RCS component in Samsung Exynos Modem 5123 and 5300. Incorrect resource transfer ...
CVE-2023-2866HIGH7.8 If an attacker can trick an authenticated user into loading a maliciously crafted .zip file onto Advantech WebAccess ve...
CVE-2023-25177HIGH7.8 Delta Electronics' CNCSoft-B DOPSoft versions 1.0.0.4 and prior are vulnerable to stack-based buffer overflow, which c...
CVE-2023-24014HIGH7.8Delta Electronics' CNCSoft-B DOPSoft versions 1.0.0.4 and prior are vulnerable to heap-based buffer overflow, which cou...
CVE-2023-1864HIGH7.5FANUC ROBOGUIDE-HandlingPRO Versions 9 Rev.ZD and prior is vulnerable to a path traversal, which could allow an attacke...
CVE-2023-1709HIGH7.8 Datalogics Library APDFLThe v18.0.4PlusP1e and prior contains a stack-based buffer overflow due to documents containing...
CVE-2023-34237CRITICAL9.8SABnzbd is an open source automated Usenet download tool. A design flaw was discovered in SABnzbd that could allow remot...
CVE-2023-33865HIGH7.8RenderDoc before 1.27 allows local privilege escalation via a symlink attack. It relies on the /tmp/RenderDoc directory ...
CVE-2023-33864CRITICAL9.8StreamReader::ReadFromExternal in RenderDoc before 1.27 allows an Integer Overflow with a resultant Buffer Overflow. It ...
CVE-2023-33863CRITICAL9.8SerialiseValue in RenderDoc before 1.27 allows an Integer Overflow with a resultant Buffer Overflow. 0xffffffff is sign-...
CVE-2023-33595MEDIUM5.5CPython v3.12.0 alpha 7 was discovered to contain a heap use-after-free via the function ascii_decode at /Objects/unicod...
CVE-2023-33510HIGH7.5Jeecg P3 Biz Chat 1.0.5 allows remote attackers to read arbitrary files through specific parameters.
CVE-2023-33284HIGH8.8Marval MSM through 14.19.0.12476 and 15.0 has a Remote Code Execution vulnerability. A remote attacker authenticated as ...
CVE-2023-33283MEDIUM5.5Marval MSM through 14.19.0.12476 uses a static encryption key for secrets. An attacker that gains access to encrypted se...
CVE-2023-33282CRITICAL9.8Marval MSM through 14.19.0.12476 and 15.0 has a System account with default credentials. A remote attacker is able to lo...
CVE-2023-2530CRITICAL9.8A privilege escalation allowing remote code execution was discovered in the orchestration service.
CVE-2023-3152HIGH8.8A vulnerability classified as critical has been found in SourceCodester Online Discussion Forum Site 1.0. This affects a...
CVE-2023-3151HIGH8.8A vulnerability was found in SourceCodester Online Discussion Forum Site 1.0. It has been rated as critical. Affected by...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now