2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-47195HIGH7.8An origin validation vulnerability in the Trend Micro Apex One security agent could allow a local attacker to escalate p...
CVE-2023-47194HIGH7.8An origin validation vulnerability in the Trend Micro Apex One security agent could allow a local attacker to escalate p...
CVE-2023-47193HIGH7.8An origin validation vulnerability in the Trend Micro Apex One security agent could allow a local attacker to escalate p...
CVE-2023-47192HIGH7.8An agent link vulnerability in the Trend Micro Apex One security agent could allow a local attacker to escalate privileg...
CVE-2023-46892HIGH8.8The radio frequency communication protocol being used by Meross MSH30Q 4.5.23 is vulnerable to replay attacks, allowing ...
CVE-2023-6926HIGH7.8 There is an OS command injection vulnerability in Crestron AM-300 firmware version 1.4499.00018 which may enable a user...
CVE-2023-50275HIGH7.5HPE OneView may allow clusterService Authentication Bypass resulting in denial of service.
CVE-2023-50274HIGH7.8HPE OneView may allow command injection with local privilege escalation.
CVE-2023-51043HIGH7In the Linux kernel before 6.4.5, drivers/gpu/drm/drm_atomic.c has a use-after-free during a race condition between a no...
CVE-2023-51042HIGH7.8In the Linux kernel before 6.4.12, amdgpu_cs_wait_all_fences in drivers/gpu/drm/amd/amdgpu/amdgpu_cs.c has a fence use-a...
CVE-2023-39197HIGH7.5An out-of-bounds read vulnerability was found in Netfilter Connection Tracking (conntrack) in the Linux kernel. This fla...
CVE-2023-42881HIGH7.8The issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14.2. Processing a file may l...
CVE-2023-24135HIGH7.8Jensen of Scandinavia Eagle 1200AC V15.03.06.33_en was discovered to contain a command injection vulnerability in the fu...
CVE-2023-7082HIGH7.2The Import any XML or CSV File to WordPress plugin before 3.7.3 accepts all zip files and automatically extracts the zip...
CVE-2023-47152HIGH7.5IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 is vulnerable to an insecure cryptographic algori...
CVE-2023-45193HIGH7.5IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 federated server is vulnerable to a denial of ser...
CVE-2023-52354HIGH7.5chasquid before 1.13 allows SMTP smuggling because LF-terminated lines are accepted.
CVE-2023-47352HIGH8.8Technicolor TC8715D devices have predictable default WPA2 security passwords. An attacker who scans for SSID and BSSID v...
CVE-2023-52353HIGH7.5An issue was discovered in Mbed TLS through 3.5.1. In mbedtls_ssl_session_reset, the maximum negotiable TLS version is m...
CVE-2023-6531HIGH7A use-after-free flaw was found in the Linux Kernel due to a race problem in the unix garbage collector's deletion of SK...
CVE-2023-47024HIGH8.8Cross-Site Request Forgery (CSRF) in NCR Terminal Handler v.1.5.1 leads to a one-click account takeover. This is achieve...
CVE-2023-51926HIGH7.5YonBIP v3_23.05 was discovered to contain an arbitrary file read vulnerability via the nc.bs.framework.comn.serv.CommonS...
CVE-2023-49329HIGH7.2Anomali Match before 4.6.2 allows OS Command Injection. An authenticated admin user can inject and execute operating sys...
CVE-2023-6043HIGH7.8A privilege escalation vulnerability was reported in Lenovo Vantage that could allow a local attacker to bypass integrit...
CVE-2023-5080HIGH7.8A privilege escalation vulnerability was reported in some Lenovo tablet products that could allow local applications acc...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now