2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-21656 | HIGH | 7.8 | 0.1% | Jun 6, 2023 | Memory corruption in WLAN HOST while receiving an WMI event from firmware. |
| CVE-2023-21632 | HIGH | 7.8 | 0.1% | Jun 6, 2023 | Memory corruption in Automotive GPU while querying a gsl memory node. |
| CVE-2023-21628 | HIGH | 7.8 | 0.1% | Jun 6, 2023 | Memory corruption in WLAN HAL while processing WMI-UTF command or FTM TLV1 command. |
| CVE-2023-30915 | MEDIUM | 5.5 | 0.1% | Jun 6, 2023 | In email service, there is a missing permission check. This could lead to local information disclosure with no additiona... |
| CVE-2023-30914 | MEDIUM | 5.5 | 0.1% | Jun 6, 2023 | In email service, there is a missing permission check. This could lead to local information disclosure with no additiona... |
| CVE-2023-30866 | MEDIUM | 5.5 | 0.1% | Jun 6, 2023 | In telephony service, there is a missing permission check. This could lead to local information disclosure with no addit... |
| CVE-2023-30865 | MEDIUM | 5.5 | 0.1% | Jun 6, 2023 | In dialer service, there is a missing permission check. This could lead to local information disclosure with no addition... |
| CVE-2023-30864 | HIGH | 7.8 | 0.1% | Jun 6, 2023 | In Connectivity Service, there is a possible missing permission check. This could lead to local escalation of privilege ... |
| CVE-2023-30863 | HIGH | 7.8 | 0.1% | Jun 6, 2023 | In Connectivity Service, there is a possible missing permission check. This could lead to local escalation of privilege ... |
| CVE-2023-2546 | HIGH | 8.8 | 1.4% | Jun 6, 2023 | The WP User Switch plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 1.0.2. ... |
| CVE-2023-32628 | CRITICAL | 9.8 | 0.7% | Jun 6, 2023 | In Advantech WebAccss/SCADA v9.1.3 and prior, there is an arbitrary file upload vulnerability that could allow an a... |
| CVE-2023-32540 | CRITICAL | 9.8 | 0.9% | Jun 6, 2023 | In Advantech WebAccss/SCADA v9.1.3 and prior, there is an arbitrary file overwrite vulnerability, which could allow an ... |
| CVE-2023-22450 | HIGH | 7.2 | 0.8% | Jun 6, 2023 | In Advantech WebAccss/SCADA v9.1.3 and prior, there is an arbitrary file upload vulnerability that could allow an att... |
| CVE-2023-34103 | MEDIUM | 5.4 | 0.6% | Jun 5, 2023 | Avo is an open source ruby on rails admin panel creation framework. In affected versions some avo fields are vulnerable ... |
| CVE-2023-34102 | HIGH | 8.8 | 1.6% | Jun 5, 2023 | Avo is an open source ruby on rails admin panel creation framework. The polymorphic field type stores the classes to ope... |
| CVE-2023-3079 | HIGH | 8.8 | 32.7% | Jun 5, 2023 | Type confusion in V8 in Google Chrome prior to 114.0.5735.110 allowed a remote attacker to potentially exploit heap corr... |
| CVE-2023-3027 | HIGH | 7.8 | 0.2% | Jun 5, 2023 | The grc-policy-propagator allows security escalation within the cluster. The propagator allows policies which contain so... |
| CVE-2023-24510 | HIGH | 7.5 | 0.6% | Jun 5, 2023 | On the affected platforms running EOS, a malformed DHCP packet might cause the DHCP relay agent to restart. |
| CVE-2023-3111 | HIGH | 7.8 | 0.4% | Jun 5, 2023 | A use after free vulnerability was found in prepare_to_relocate in fs/btrfs/relocation.c in btrfs in the Linux Kernel. T... |
| CVE-2023-34097 | HIGH | 8.8 | 0.7% | Jun 5, 2023 | hoppscotch is an open source API development ecosystem. In versions prior to 2023.4.5 the database password is exposed i... |
| CVE-2023-33410 | HIGH | 8.8 | 1.2% | Jun 5, 2023 | Minical 1.0.0 and earlier contains a CSV injection vulnerability which allows an attacker to execute remote code. The vu... |
| CVE-2023-33409 | MEDIUM | 6.5 | 0.4% | Jun 5, 2023 | Minical 1.0.0 is vulnerable to Cross Site Request Forgery (CSRF) via minical/public/application/controllers/settings/com... |
| CVE-2023-33408 | MEDIUM | 5.4 | 0.5% | Jun 5, 2023 | Minical 1.0.0 is vulnerable to Cross Site Scripting (XSS). The vulnerability exists due to insufficient input validation... |
| CVE-2023-31893 | HIGH | 7.5 | 0.9% | Jun 5, 2023 | Telefnica Brasil Vivo Play (IPTV) Firmware: 2023.04.04.01.06.15 is vulnerable to Denial of Service (DoS) via DNS Recursi... |
| CVE-2023-29631 | CRITICAL | 9.8 | 0.7% | Jun 5, 2023 | PrestaShop jmsslider 1.6.0 is vulnerable to Incorrect Access Control via ajax_jmsslider.php. |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now