2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-47195 | HIGH | 7.8 | 0.1% | Jan 23, 2024 | An origin validation vulnerability in the Trend Micro Apex One security agent could allow a local attacker to escalate p... |
| CVE-2023-47194 | HIGH | 7.8 | 0.1% | Jan 23, 2024 | An origin validation vulnerability in the Trend Micro Apex One security agent could allow a local attacker to escalate p... |
| CVE-2023-47193 | HIGH | 7.8 | 0.1% | Jan 23, 2024 | An origin validation vulnerability in the Trend Micro Apex One security agent could allow a local attacker to escalate p... |
| CVE-2023-47192 | HIGH | 7.8 | 0.2% | Jan 23, 2024 | An agent link vulnerability in the Trend Micro Apex One security agent could allow a local attacker to escalate privileg... |
| CVE-2023-46892 | HIGH | 8.8 | 0.3% | Jan 23, 2024 | The radio frequency communication protocol being used by Meross MSH30Q 4.5.23 is vulnerable to replay attacks, allowing ... |
| CVE-2023-6926 | HIGH | 7.8 | 0.5% | Jan 23, 2024 | There is an OS command injection vulnerability in Crestron AM-300 firmware version 1.4499.00018 which may enable a user... |
| CVE-2023-50275 | HIGH | 7.5 | 1.0% | Jan 23, 2024 | HPE OneView may allow clusterService Authentication Bypass resulting in denial of service. |
| CVE-2023-50274 | HIGH | 7.8 | 0.7% | Jan 23, 2024 | HPE OneView may allow command injection with local privilege escalation. |
| CVE-2023-51043 | HIGH | 7 | 0.2% | Jan 23, 2024 | In the Linux kernel before 6.4.5, drivers/gpu/drm/drm_atomic.c has a use-after-free during a race condition between a no... |
| CVE-2023-51042 | HIGH | 7.8 | 0.3% | Jan 23, 2024 | In the Linux kernel before 6.4.12, amdgpu_cs_wait_all_fences in drivers/gpu/drm/amd/amdgpu/amdgpu_cs.c has a fence use-a... |
| CVE-2023-39197 | HIGH | 7.5 | 1.0% | Jan 23, 2024 | An out-of-bounds read vulnerability was found in Netfilter Connection Tracking (conntrack) in the Linux kernel. This fla... |
| CVE-2023-42881 | HIGH | 7.8 | 0.2% | Jan 23, 2024 | The issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14.2. Processing a file may l... |
| CVE-2023-24135 | HIGH | 7.8 | 1.3% | Jan 22, 2024 | Jensen of Scandinavia Eagle 1200AC V15.03.06.33_en was discovered to contain a command injection vulnerability in the fu... |
| CVE-2023-7082 | HIGH | 7.2 | 1.2% | Jan 22, 2024 | The Import any XML or CSV File to WordPress plugin before 3.7.3 accepts all zip files and automatically extracts the zip... |
| CVE-2023-47152 | HIGH | 7.5 | 0.6% | Jan 22, 2024 | IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 is vulnerable to an insecure cryptographic algori... |
| CVE-2023-45193 | HIGH | 7.5 | 0.8% | Jan 22, 2024 | IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 federated server is vulnerable to a denial of ser... |
| CVE-2023-52354 | HIGH | 7.5 | 0.5% | Jan 22, 2024 | chasquid before 1.13 allows SMTP smuggling because LF-terminated lines are accepted. |
| CVE-2023-47352 | HIGH | 8.8 | 0.4% | Jan 22, 2024 | Technicolor TC8715D devices have predictable default WPA2 security passwords. An attacker who scans for SSID and BSSID v... |
| CVE-2023-52353 | HIGH | 7.5 | 0.5% | Jan 21, 2024 | An issue was discovered in Mbed TLS through 3.5.1. In mbedtls_ssl_session_reset, the maximum negotiable TLS version is m... |
| CVE-2023-6531 | HIGH | 7 | 0.2% | Jan 21, 2024 | A use-after-free flaw was found in the Linux Kernel due to a race problem in the unix garbage collector's deletion of SK... |
| CVE-2023-47024 | HIGH | 8.8 | 0.3% | Jan 20, 2024 | Cross-Site Request Forgery (CSRF) in NCR Terminal Handler v.1.5.1 leads to a one-click account takeover. This is achieve... |
| CVE-2023-51926 | HIGH | 7.5 | 0.6% | Jan 20, 2024 | YonBIP v3_23.05 was discovered to contain an arbitrary file read vulnerability via the nc.bs.framework.comn.serv.CommonS... |
| CVE-2023-49329 | HIGH | 7.2 | 1.3% | Jan 19, 2024 | Anomali Match before 4.6.2 allows OS Command Injection. An authenticated admin user can inject and execute operating sys... |
| CVE-2023-6043 | HIGH | 7.8 | 0.2% | Jan 19, 2024 | A privilege escalation vulnerability was reported in Lenovo Vantage that could allow a local attacker to bypass integrit... |
| CVE-2023-5080 | HIGH | 7.8 | 0.2% | Jan 19, 2024 | A privilege escalation vulnerability was reported in some Lenovo tablet products that could allow local applications acc... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now