2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-33288 | MEDIUM | 4.7 | 0.3% | May 22, 2023 | An issue was discovered in the Linux kernel before 6.2.9. A use-after-free was found in bq24190_remove in drivers/power/... |
| CVE-2023-33285 | MEDIUM | 5.3 | 0.8% | May 22, 2023 | An issue was discovered in Qt 5.x before 5.15.14, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.1. QDnsLookup has... |
| CVE-2023-33281 | MEDIUM | 6.5 | 0.6% | May 22, 2023 | The remote keyfob system on Nissan Sylphy Classic 2021 sends the same RF signal for each door-open request, which allows... |
| CVE-2023-33264 | MEDIUM | 4.3 | 0.7% | May 22, 2023 | In Hazelcast through 5.0.4, 5.1 through 5.1.6, and 5.2 through 5.2.3, configuration routines don't mask passwords in the... |
| CVE-2023-32336 | CRITICAL | 9.8 | 1.4% | May 22, 2023 | IBM InfoSphere Information Server 11.7 is affected by a remote code execution vulnerability due to insecure deserializat... |
| CVE-2023-33254 | MEDIUM | 6.5 | 3.2% | May 21, 2023 | There is an LDAP bind credentials exposure on KACE Systems Deployment and Remote Site appliances 9.0.146. The captured c... |
| CVE-2023-33252 | HIGH | 7.5 | 0.6% | May 21, 2023 | iden3 snarkjs through 0.6.11 allows double spending because there is no validation that the publicSignals length is less... |
| CVE-2023-33251 | MEDIUM | 5.5 | 0.2% | May 21, 2023 | When Akka HTTP before 10.5.2 accepts file uploads via the FileUploadDirectives.fileUploadAll directive, the temporary fi... |
| CVE-2023-33250 | MEDIUM | 4.4 | 0.3% | May 21, 2023 | The Linux kernel 6.3 has a use-after-free in iopt_unmap_iova_range in drivers/iommu/iommufd/io_pagetable.c. |
| CVE-2023-2826 | MEDIUM | 5.4 | 0.7% | May 21, 2023 | A vulnerability has been found in SourceCodester Class Scheduling System 1.0 and classified as problematic. This vulnera... |
| CVE-2023-32589 | HIGH | 8.8 | 0.3% | May 20, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in PingOnline Dyslexiefont Free plugin <= 1.0.0 versions. |
| CVE-2023-24414 | HIGH | 8.8 | 0.3% | May 20, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in RoboSoft Photo Gallery, Images, Slider in Rbs Image Gallery plugin <=... |
| CVE-2023-23890 | HIGH | 8.8 | 0.3% | May 20, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in LJ Apps WP Airbnb Review Slider plugin <= 3.2 versions. |
| CVE-2023-22689 | HIGH | 8.8 | 0.3% | May 20, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Lucian Apostol Auto Affiliate Links plugin <= 6.3 versions. |
| CVE-2023-33244 | HIGH | 8.2 | 0.5% | May 20, 2023 | Obsidian before 1.2.2 allows calls to unintended APIs (for microphone access, camera access, and desktop notification) v... |
| CVE-2023-32700 | HIGH | 7.8 | 0.8% | May 20, 2023 | LuaTeX before 1.17.0 allows execution of arbitrary shell commands when compiling a TeX file obtained from an untrusted s... |
| CVE-2023-1696 | HIGH | 7.5 | 0.4% | May 20, 2023 | The multimedia video module has a vulnerability in data processing.Successful exploitation of this vulnerability may aff... |
| CVE-2023-1694 | HIGH | 7.5 | 0.4% | May 20, 2023 | The Settings module has the file privilege escalation vulnerability.Successful exploitation of this vulnerability may af... |
| CVE-2023-1693 | HIGH | 7.5 | 0.4% | May 20, 2023 | The Settings module has the file privilege escalation vulnerability.Successful exploitation of this vulnerability may af... |
| CVE-2023-1692 | HIGH | 7.5 | 0.4% | May 20, 2023 | The window management module lacks permission verification.Successful exploitation of this vulnerability may affect conf... |
| CVE-2023-2713 | CRITICAL | 9.8 | 0.8% | May 20, 2023 | Authorization Bypass Through User-Controlled Key vulnerability in "Rental Module" developed by third-party for Ideasoft... |
| CVE-2023-2712 | CRITICAL | 9.8 | 1.3% | May 20, 2023 | Unrestricted Upload of File with Dangerous Type vulnerability in "Rental Module" developed by third-party for Ideasoft'... |
| CVE-2023-2824 | MEDIUM | 6.1 | 0.6% | May 20, 2023 | A vulnerability was found in SourceCodester Dental Clinic Appointment Reservation System 1.0. It has been rated as probl... |
| CVE-2023-2823 | CRITICAL | 9.8 | 0.8% | May 20, 2023 | A vulnerability was found in SourceCodester Class Scheduling System 1.0. It has been declared as critical. Affected by t... |
| CVE-2023-2822 | MEDIUM | 6.1 | 3.3% | May 20, 2023 | A vulnerability was found in Ellucian Ethos Identity up to 5.10.5. It has been classified as problematic. Affected is an... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now