2023 CVE Vulnerabilities

31,411 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-33288MEDIUM4.7An issue was discovered in the Linux kernel before 6.2.9. A use-after-free was found in bq24190_remove in drivers/power/...
CVE-2023-33285MEDIUM5.3An issue was discovered in Qt 5.x before 5.15.14, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.1. QDnsLookup has...
CVE-2023-33281MEDIUM6.5The remote keyfob system on Nissan Sylphy Classic 2021 sends the same RF signal for each door-open request, which allows...
CVE-2023-33264MEDIUM4.3In Hazelcast through 5.0.4, 5.1 through 5.1.6, and 5.2 through 5.2.3, configuration routines don't mask passwords in the...
CVE-2023-32336CRITICAL9.8IBM InfoSphere Information Server 11.7 is affected by a remote code execution vulnerability due to insecure deserializat...
CVE-2023-33254MEDIUM6.5There is an LDAP bind credentials exposure on KACE Systems Deployment and Remote Site appliances 9.0.146. The captured c...
CVE-2023-33252HIGH7.5iden3 snarkjs through 0.6.11 allows double spending because there is no validation that the publicSignals length is less...
CVE-2023-33251MEDIUM5.5When Akka HTTP before 10.5.2 accepts file uploads via the FileUploadDirectives.fileUploadAll directive, the temporary fi...
CVE-2023-33250MEDIUM4.4The Linux kernel 6.3 has a use-after-free in iopt_unmap_iova_range in drivers/iommu/iommufd/io_pagetable.c.
CVE-2023-2826MEDIUM5.4A vulnerability has been found in SourceCodester Class Scheduling System 1.0 and classified as problematic. This vulnera...
CVE-2023-32589HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in PingOnline Dyslexiefont Free plugin <= 1.0.0 versions.
CVE-2023-24414HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in RoboSoft Photo Gallery, Images, Slider in Rbs Image Gallery plugin <=...
CVE-2023-23890HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in LJ Apps WP Airbnb Review Slider plugin <= 3.2 versions.
CVE-2023-22689HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Lucian Apostol Auto Affiliate Links plugin <= 6.3 versions.
CVE-2023-33244HIGH8.2Obsidian before 1.2.2 allows calls to unintended APIs (for microphone access, camera access, and desktop notification) v...
CVE-2023-32700HIGH7.8LuaTeX before 1.17.0 allows execution of arbitrary shell commands when compiling a TeX file obtained from an untrusted s...
CVE-2023-1696HIGH7.5The multimedia video module has a vulnerability in data processing.Successful exploitation of this vulnerability may aff...
CVE-2023-1694HIGH7.5The Settings module has the file privilege escalation vulnerability.Successful exploitation of this vulnerability may af...
CVE-2023-1693HIGH7.5The Settings module has the file privilege escalation vulnerability.Successful exploitation of this vulnerability may af...
CVE-2023-1692HIGH7.5The window management module lacks permission verification.Successful exploitation of this vulnerability may affect conf...
CVE-2023-2713CRITICAL9.8Authorization Bypass Through User-Controlled Key vulnerability in "Rental Module" developed by third-party for Ideasoft...
CVE-2023-2712CRITICAL9.8Unrestricted Upload of File with Dangerous Type vulnerability in "Rental Module" developed by third-party for Ideasoft'...
CVE-2023-2824MEDIUM6.1A vulnerability was found in SourceCodester Dental Clinic Appointment Reservation System 1.0. It has been rated as probl...
CVE-2023-2823CRITICAL9.8A vulnerability was found in SourceCodester Class Scheduling System 1.0. It has been declared as critical. Affected by t...
CVE-2023-2822MEDIUM6.1A vulnerability was found in Ellucian Ethos Identity up to 5.10.5. It has been classified as problematic. Affected is an...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now