2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-31756 | MEDIUM | 6.7 | 1.8% | May 19, 2023 | A command injection vulnerability exists in the administrative web portal in TP-Link Archer VR1600V devices running firm... |
| CVE-2023-26818 | MEDIUM | 5.5 | 0.5% | May 19, 2023 | Telegram 9.3.1 and 9.4.0 allows attackers to access restricted files, microphone ,or video recording via the DYLD_INSERT... |
| CVE-2023-2806 | HIGH | 8.8 | 1.0% | May 19, 2023 | A vulnerability classified as problematic was found in Weaver e-cology up to 9.0. Affected by this vulnerability is the ... |
| CVE-2023-28045 | HIGH | 7.1 | 0.2% | May 19, 2023 | Dell CloudIQ Collector version 1.10.2 contains a missing encryption of sensitive data vulnerability. An attacker with l... |
| CVE-2023-33240 | HIGH | 7.8 | 0.2% | May 19, 2023 | Foxit PDF Reader (12.1.1.15289 and earlier) and Foxit PDF Editor (12.1.1.15289 and all previous 12.x versions, 11.2.5.53... |
| CVE-2023-1618 | HIGH | 8.6 | 1.1% | May 19, 2023 | Active Debug Code vulnerability in Mitsubishi Electric Corporation MELSEC WS Series WS0-GETH00200 Serial number 2310 ***... |
| CVE-2023-2704 | CRITICAL | 9.8 | 1.6% | May 19, 2023 | The BP Social Connect plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 1.5.... |
| CVE-2023-32680 | CRITICAL | 9.6 | 0.6% | May 18, 2023 | Metabase is an open source business analytics engine. To edit SQL Snippets, Metabase should have required people to be i... |
| CVE-2023-30470 | CRITICAL | 9.8 | 1.2% | May 18, 2023 | A use-after-free related to unsound inference in the bytecode generation when optimizations are enabled for Hermes prior... |
| CVE-2023-28753 | CRITICAL | 9.8 | 1.9% | May 18, 2023 | netconsd prior to v0.2 was vulnerable to an integer overflow in its parse_packet function. A malicious individual could ... |
| CVE-2023-28081 | CRITICAL | 9.8 | 0.9% | May 18, 2023 | A bytecode optimization bug in Hermes prior to commit e6ed9c1a4b02dc219de1648f44cd808a56171b81 could be used to cause an... |
| CVE-2023-25933 | CRITICAL | 9.8 | 0.9% | May 18, 2023 | A type confusion bug in TypedArray prior to commit e6ed9c1a4b02dc219de1648f44cd808a56171b81 could have been used by a ma... |
| CVE-2023-24833 | HIGH | 7.5 | 0.6% | May 18, 2023 | A use-after-free in BigIntPrimitive addition in Hermes prior to commit a6dcafe6ded8e61658b40f5699878cd19a481f80 could ha... |
| CVE-2023-24832 | HIGH | 7.5 | 0.7% | May 18, 2023 | A null pointer dereference bug in Hermes prior to commit 5cae9f72975cf0e5a62b27fdd8b01f103e198708 could have been used b... |
| CVE-2023-23759 | HIGH | 7.5 | 0.7% | May 18, 2023 | There is a vulnerability in the fizz library prior to v2023.01.30.00 where a CHECK failure can be triggered remotely. Th... |
| CVE-2023-23557 | CRITICAL | 9.8 | 0.9% | May 18, 2023 | An error in Hermes' algorithm for copying objects properties prior to commit a00d237346894c6067a594983be6634f4168c9ad co... |
| CVE-2023-23556 | CRITICAL | 9.8 | 0.9% | May 18, 2023 | An error in BigInt conversion to Number in Hermes prior to commit a6dcafe6ded8e61658b40f5699878cd19a481f80 could have be... |
| CVE-2023-1195 | MEDIUM | 5.5 | 0.2% | May 18, 2023 | A use-after-free flaw was found in reconn_set_ipaddr_from_hostname in fs/cifs/connect.c in the Linux kernel. The issue o... |
| CVE-2023-2025 | MEDIUM | 6.5 | 0.5% | May 18, 2023 | OpenBlue Enterprise Manager Data Collector versions prior to 3.2.5.75 may expose sensitive information to an unauthorize... |
| CVE-2023-2024 | HIGH | 7.5 | 1.1% | May 18, 2023 | Improper authentication in OpenBlue Enterprise Manager Data Collector versions prior to 3.2.5.75 allow access to an unau... |
| CVE-2023-31655 | HIGH | 7.5 | 1.0% | May 18, 2023 | redis v7.0.10 was discovered to contain a segmentation violation. This vulnerability allows attackers to cause a Denial ... |
| CVE-2023-29720 | MEDIUM | 6.1 | 0.4% | May 18, 2023 | SofaWiki <=3.8.9 is vulnerable to Cross Site Scripting (XSS) via index.php. |
| CVE-2023-32100 | HIGH | 7.5 | 0.5% | May 18, 2023 | Compiler removal of buffer clearing in sli_se_driver_mac_compute in Silicon Labs Gecko Platform SDK v4.2.1 and earli... |
| CVE-2023-32099 | HIGH | 7.5 | 0.5% | May 18, 2023 | Compiler removal of buffer clearing in sli_se_sign_hash in Silicon Labs Gecko Platform SDK v4.2.1 and earlier r... |
| CVE-2023-32098 | HIGH | 7.5 | 0.5% | May 18, 2023 | Compiler removal of buffer clearing in sli_se_sign_message in Silicon Labs Gecko Platform SDK v4.2.1 and e... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now