2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-52944MEDIUM4.3Incorrect authorization vulnerability in ActionRule webapi component in Synology Surveillance Station before 9.2.0-11289...
CVE-2023-52943MEDIUM4.3Incorrect authorization vulnerability in Alert.Setting webapi component in Synology Surveillance Station before 9.2.0-11...
CVE-2023-7255Rejected reason: Assigned as duplicate and no longer used.
CVE-2023-52922HIGH7.8In the Linux kernel, the following vulnerability has been resolved: can: bcm: Fix UAF in bcm_proc_show() BUG: KASAN: s...
CVE-2023-29001HIGH7.5Contiki-NG is an open-source, cross-platform operating system for IoT devices. The Contiki-NG operating system processes...
CVE-2023-2142MEDIUM6.1In Nunjucks versions prior to version 3.2.4, it was possible to bypass the restrictions which are provided by the autoe...
CVE-2023-1521HIGH7.8On Linux the sccache client can execute arbitrary code with the privileges of a local sccache server, by preloading the ...
CVE-2023-0163HIGH8.4Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') vulnerability in Mozilla Convi...
CVE-2023-45181MEDIUM6.1IBM Jazz Foundation 7.0.2 and below are vulnerable to cross-site scripting. This vulnerability allows users to embed arb...
CVE-2023-26280MEDIUM5.3IBM Jazz Foundation 7.0.2 and 7.0.3 could allow a user to change their dashboard using a specially crafted HTTP request ...
CVE-2023-7299CRITICAL9.8A vulnerability was found in DataGear up to 4.60. It has been declared as critical. This vulnerability affects unknown c...
CVE-2023-52335HIGH7.5Advantech iView ConfigurationServlet SQL Injection Information Disclosure Vulnerability. This vulnerability allows remot...
CVE-2023-52334MEDIUM6.5Allegra downloadAttachmentGlobal Directory Traversal Information Disclosure Vulnerability. This vulnerability allows rem...
CVE-2023-52333HIGH7.3Allegra saveFile Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to ...
CVE-2023-52332HIGH7.5Allegra serveMathJaxLibraries Directory Traversal Information Disclosure Vulnerability. This vulnerability allows remote...
CVE-2023-51648MEDIUM6.5Allegra getFileContentAsString Directory Traversal Information Disclosure Vulnerability. This vulnerability allows remot...
CVE-2023-51647MEDIUM4.7Allegra saveInlineEdit Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attacke...
CVE-2023-51646MEDIUM4.7Allegra uploadSimpleFile Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attac...
CVE-2023-51645MEDIUM4.7Allegra unzipFile Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to...
CVE-2023-51644HIGH7.3Allegra SiteConfigAction Improper Access Control Remote Code Execution Vulnerability. This vulnerability allows remote a...
CVE-2023-51643MEDIUM4.7Allegra uploadFile Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers t...
CVE-2023-51642MEDIUM6.3Allegra loadFieldMatch Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerability allows ...
CVE-2023-51641MEDIUM6.3Allegra renderFieldMatch Deserialization of Unstrusted Data Remote Code Execution Vulnerability. This vulnerability allo...
CVE-2023-51640MEDIUM4.7Allegra extarctZippedFile Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote atta...
CVE-2023-51639CRITICAL9.8Allegra downloadExportedChart Directory Traversal Authentication Bypass Vulnerability. This vulnerability allows remote ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now