2023 CVE Vulnerabilities

31,411 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-29731HIGH7.5SoLive 1.6.14 thru 1.6.20 for Android has an exposed component that provides a method to modify the SharedPreference fil...
CVE-2023-23956MEDIUM5.4A user can supply malicious HTML and JavaScript code that will be executed in the client browser
CVE-2023-23561MEDIUM5.5Stormshield Endpoint Security 2.3.0 through 2.3.2 has Incorrect Access Control: authenticated users can read sensitive i...
CVE-2023-32699MEDIUM6.5MeterSphere is an open source continuous testing platform. Version 2.9.1 and prior are vulnerable to denial of service. ...
CVE-2023-32696HIGH8.8CKAN is an open-source data management system for powering data hubs and data portals. Prior to versions 2.9.9 and 2.10....
CVE-2023-1711MEDIUM4.4A vulnerability exists in a FOXMAN-UN and UNEM logging component, it only affects systems that use remote authentication...
CVE-2023-33975CRITICAL9.8RIOT-OS, an operating system for Internet of Things (IoT) devices, contains a network stack with the ability to process ...
CVE-2023-33656MEDIUM5.5A memory leak vulnerability exists in NanoMQ 0.17.2. The vulnerability is located in the file message.c. An attacker cou...
CVE-2023-32689MEDIUM6.5Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Versions prior t...
CVE-2023-32684LOW2.5Lima launches Linux virtual machines, typically on macOS, for running containerd. Prior to version 0.16.0, a virtual mac...
CVE-2023-2994Rejected reason: This 2023 CVE was incorrectly assigned instead of a 2022 CVE.
CVE-2023-2968HIGH7.5A remote attacker can trigger a denial of service in the socket.remoteAddress variable, by sending a crafted HTTP reques...
CVE-2023-33974MEDIUM5.9RIOT-OS, an operating system for Internet of Things (IoT) devices, contains a network stack with the ability to process ...
CVE-2023-33973HIGH7.5RIOT-OS, an operating system for Internet of Things (IoT) devices, contains a network stack with the ability to process ...
CVE-2023-29737MEDIUM5.5An issue found in Wave Animated Keyboard Emoji v.1.70.7 for Android allows a local attacker to cause a denial of service...
CVE-2023-24826HIGH7.5RIOT-OS, an operating system for Internet of Things (IoT) devices, contains a network stack with the ability to process ...
CVE-2023-23755HIGH7.5An issue was discovered in Joomla! 4.2.0 through 4.3.1. The lack of rate limiting allowed brute force attacks against MF...
CVE-2023-23754MEDIUM6.1An issue was discovered in Joomla! 4.2.0 through 4.3.1. Lack of input validation caused an open redirect and XSS issue w...
CVE-2023-32448MEDIUM5.5 PowerPath for Windows, versions 7.0, 7.1 & 7.2 contains License Key Stored in Cleartext vulnerability. A local user wit...
CVE-2023-28080HIGH7.3 PowerPath for Windows, versions 7.0, 7.1 & 7.2 contains DLL Hijacking Vulnerabilities. A regular user (non-admin) can e...
CVE-2023-28079HIGH7.8 PowerPath for Windows, versions 7.0, 7.1 & 7.2 contains Insecure File and Folder Permissions vulnerability. A regular u...
CVE-2023-24825HIGH7.5RIOT-OS, an operating system for Internet of Things (IoT) devices, contains a network stack with the ability to process ...
CVE-2023-24817HIGH7.5RIOT-OS, an operating system for Internet of Things (IoT) devices, contains a network stack with the ability to process ...
CVE-2023-24568MEDIUM4.3 Dell NetWorker, contains an Improper Validation of Certificate with Host Mismatch vulnerability in Rabbitmq port which ...
CVE-2023-20884MEDIUM6.1VMware Workspace ONE Access and VMware Identity Manager contain an insecure redirect vulnerability. An unauthenticated m...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now