2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-52944 | MEDIUM | 4.3 | 0.4% | Dec 4, 2024 | Incorrect authorization vulnerability in ActionRule webapi component in Synology Surveillance Station before 9.2.0-11289... |
| CVE-2023-52943 | MEDIUM | 4.3 | 0.4% | Dec 4, 2024 | Incorrect authorization vulnerability in Alert.Setting webapi component in Synology Surveillance Station before 9.2.0-11... |
| CVE-2023-7255 | — | — | — | Dec 3, 2024 | Rejected reason: Assigned as duplicate and no longer used. |
| CVE-2023-52922 | HIGH | 7.8 | 0.3% | Nov 28, 2024 | In the Linux kernel, the following vulnerability has been resolved: can: bcm: Fix UAF in bcm_proc_show() BUG: KASAN: s... |
| CVE-2023-29001 | HIGH | 7.5 | 0.5% | Nov 27, 2024 | Contiki-NG is an open-source, cross-platform operating system for IoT devices. The Contiki-NG operating system processes... |
| CVE-2023-2142 | MEDIUM | 6.1 | 0.4% | Nov 26, 2024 | In Nunjucks versions prior to version 3.2.4, it was possible to bypass the restrictions which are provided by the autoe... |
| CVE-2023-1521 | HIGH | 7.8 | 0.4% | Nov 26, 2024 | On Linux the sccache client can execute arbitrary code with the privileges of a local sccache server, by preloading the ... |
| CVE-2023-0163 | HIGH | 8.4 | 0.3% | Nov 26, 2024 | Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') vulnerability in Mozilla Convi... |
| CVE-2023-45181 | MEDIUM | 6.1 | 0.3% | Nov 25, 2024 | IBM Jazz Foundation 7.0.2 and below are vulnerable to cross-site scripting. This vulnerability allows users to embed arb... |
| CVE-2023-26280 | MEDIUM | 5.3 | 0.4% | Nov 25, 2024 | IBM Jazz Foundation 7.0.2 and 7.0.3 could allow a user to change their dashboard using a specially crafted HTTP request ... |
| CVE-2023-7299 | CRITICAL | 9.8 | 0.6% | Nov 23, 2024 | A vulnerability was found in DataGear up to 4.60. It has been declared as critical. This vulnerability affects unknown c... |
| CVE-2023-52335 | HIGH | 7.5 | 1.3% | Nov 22, 2024 | Advantech iView ConfigurationServlet SQL Injection Information Disclosure Vulnerability. This vulnerability allows remot... |
| CVE-2023-52334 | MEDIUM | 6.5 | 1.9% | Nov 22, 2024 | Allegra downloadAttachmentGlobal Directory Traversal Information Disclosure Vulnerability. This vulnerability allows rem... |
| CVE-2023-52333 | HIGH | 7.3 | 1.9% | Nov 22, 2024 | Allegra saveFile Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to ... |
| CVE-2023-52332 | HIGH | 7.5 | 2.0% | Nov 22, 2024 | Allegra serveMathJaxLibraries Directory Traversal Information Disclosure Vulnerability. This vulnerability allows remote... |
| CVE-2023-51648 | MEDIUM | 6.5 | 1.9% | Nov 22, 2024 | Allegra getFileContentAsString Directory Traversal Information Disclosure Vulnerability. This vulnerability allows remot... |
| CVE-2023-51647 | MEDIUM | 4.7 | 2.1% | Nov 22, 2024 | Allegra saveInlineEdit Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attacke... |
| CVE-2023-51646 | MEDIUM | 4.7 | 1.8% | Nov 22, 2024 | Allegra uploadSimpleFile Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attac... |
| CVE-2023-51645 | MEDIUM | 4.7 | 1.8% | Nov 22, 2024 | Allegra unzipFile Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to... |
| CVE-2023-51644 | HIGH | 7.3 | 1.9% | Nov 22, 2024 | Allegra SiteConfigAction Improper Access Control Remote Code Execution Vulnerability. This vulnerability allows remote a... |
| CVE-2023-51643 | MEDIUM | 4.7 | 2.1% | Nov 22, 2024 | Allegra uploadFile Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers t... |
| CVE-2023-51642 | MEDIUM | 6.3 | 1.3% | Nov 22, 2024 | Allegra loadFieldMatch Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerability allows ... |
| CVE-2023-51641 | MEDIUM | 6.3 | 1.3% | Nov 22, 2024 | Allegra renderFieldMatch Deserialization of Unstrusted Data Remote Code Execution Vulnerability. This vulnerability allo... |
| CVE-2023-51640 | MEDIUM | 4.7 | 1.8% | Nov 22, 2024 | Allegra extarctZippedFile Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote atta... |
| CVE-2023-51639 | CRITICAL | 9.8 | 2.4% | Nov 22, 2024 | Allegra downloadExportedChart Directory Traversal Authentication Bypass Vulnerability. This vulnerability allows remote ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now