CVEs from 2023

6,124 normalized CVEs published or assigned in this year.

Total
6,124
critical
critical 239
high
high 1,503
medium
medium 1,409
low
low 31
% Critical
3.9%
% with KEV
2.7%
% with exploit
3.5%

Top vendors

Top products

  • office 29
  • office_long_term_servicing_channel 15
  • 365_apps 14
  • ftmg-esr50sxx 8
  • ftmg-esn40sxx 8
  • ftmg-esd25axx 8
  • ftmg-esr40sxx 8
  • ftmg-esd15axx 8
0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2023-20867 low 4.0 3y ago VMware Tools contains an authentication bypass vulnerability in the vgauth module. A fully compromised ESXi host can force VMware Tools to fail to authenticate host-to-guest operations, impacting the…
CVE-2023-23814 low 3.8 3.8 2y ago Missing Authorization vulnerability in CodePeople CP Multi View Event Calendar allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects CP Multi View Event Calendar…
CVE-2023-28168 low 3.7 3.7 2y ago Missing Authorization vulnerability in Jerod Santo WordPress Console allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WordPress Console: from n/a through 0.3…
CVE-2023-5831 low 3.7 3.7 3y ago An issue has been discovered in GitLab CE/EE affecting all versions starting from 16.0 before 16.3.6, all versions starting from 16.4 before 16.4.2, and all versions starting from 16.5.0 before 16.5.…
CVE-2023-38546 low 3.7 3.7 3y ago This flaw allows an attacker to insert cookies at will into a running program using libcurl, if the specific series of conditions are met. libcurl performs transfers. In its API, an application crea…
CVE-2023-22045 low 3.7 3.7 3y ago RHSA-2023:4176: java-1.8.0-openjdk security and bug fix update (Moderate)
CVE-2023-22049 low 3.7 3.7 3y ago RHSA-2023:4877: java-1.8.0-ibm security update (Moderate)
CVE-2023-22036 low 3.7 3.7 3y ago RHSA-2023:4175: java-11-openjdk security and bug fix update (Moderate)
CVE-2023-21968 low 3.7 3.7 3y ago RHSA-2023:4103: java-1.8.0-ibm security update (Important)
CVE-2023-24375 low 3.5 3.5 2y ago Missing Authorization vulnerability in miniOrange WordPress Social Login and Register (Discord, Google, Twitter, LinkedIn) allows Exploiting Incorrectly Configured Access Control Security Levels.This…
CVE-2023-29333 low 3.3 3.3 3y ago Microsoft Access Denial of Service Vulnerability
CVE-2023-22006 low 3.1 3.1 3y ago RHSA-2023:4175: java-11-openjdk security and bug fix update (Moderate)
CVE-2023-4752 low 2.5 1y ago Use After Free in GitHub repository vim/vim prior to 9.0.1858.
CVE-2023-2953 low 2.5 2y ago RHSA-2024:4264: openldap security update (Low)
CVE-2023-52620 low 2.5 2.5 2y ago In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: disallow timeout for anonymous sets Never used from userspace, disallow these parameters.
CVE-2023-3446 low 2.5 2y ago RHSA-2024:0888: edk2 security update (Low)
CVE-2023-6918 low 2.5 2y ago RHSA-2024:3233: libssh security update (Low)
CVE-2023-1729 low 2.5 2y ago Low: LibRaw security update
CVE-2023-6004 low 2.5 2y ago RHSA-2024:3233: libssh security update (Low)
CVE-2023-32636 low 2.5 2y ago Low: mingw-glib2 security update
CVE-2023-3817 low 2.5 2y ago RHSA-2023:7877: openssl security update (Low)
CVE-2023-2975 low 2.5 2y ago Low: openssl and openssl-fips-provider security update
CVE-2023-3674 low 2.5 2y ago Low: keylime security update
CVE-2023-29499 low 2.5 3y ago Low: glib2 security and bug fix update
CVE-2023-4016 low 2.5 3y ago RHSA-2023:7187: procps-ng security update (Low)
CVE-2023-2977 low 2.5 3y ago RHSA-2023:7160: opensc security and bug fix update (Low)
CVE-2023-32611 low 2.5 3y ago Low: glib2 security and bug fix update
CVE-2023-32665 low 2.5 3y ago Low: glib2 security and bug fix update
CVE-2023-22745 low 2.5 3y ago RHSA-2023:7166: tpm2-tss security and enhancement update (Low)
CVE-2023-32573 low 2.5 3y ago In Qt before 5.15.14, 6.0.x through 6.2.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.1, QtSvg QSvgFont m_unitsPerEm initialization is mishandled.
CVE-2023-4641 low 2.5 3y ago RHSA-2023:7112: shadow-utils security and bug fix update (Low)