CVEs from 2023
Total
6,664
critical
critical 222
high
high 1,548
medium
medium 1,277
low
low 23
% Critical
3.3%
% with KEV
2.4%
% with exploit
2.5%
Top vendors
- redhat 120
- microsoft 76
- f5 43
- cisco 26
- automattic 19
- cbot 12
- brainstormforce 11
- gvectors 10
Top products
- office 29
- office_long_term_servicing_channel 15
- 365_apps 14
- openstack_platform 6
- codeready_linux_builder_for_ibm_z_systems_eus 6
- registrationmagic 6
- codeready_linux_builder_eus 6
- cbot_panel 6
| CVE | Severity | CVSS | Risk | Published | Description | Impact |
|---|---|---|---|---|---|---|
| CVE-2023-45802 | medium | — | 5.5 | 2y ago | Moderate: mod_http2 security update | |
| CVE-2023-47038 | medium | — | 5.5 | 2y ago | Moderate: perl security update | |
| CVE-2023-52581 | medium | — | 5.5 | 2y ago | In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: fix memleak when more than 255 elements expired When more than 255 elements expired we're supposed to switc… | |
| CVE-2023-4692 | medium | — | 5.5 | 2y ago | Moderate: grub2 security update | |
| CVE-2023-3255 | medium | — | 5.5 | 2y ago | Moderate: qemu-kvm security update | |
| CVE-2023-37328 | medium | — | 5.5 | 2y ago | Moderate: gstreamer1-plugins-base security update | |
| CVE-2023-39189 | medium | — | 5.5 | 2y ago | A flaw was found in the Netfilter subsystem in the Linux kernel. The nfnl_osf_add_callback function did not validate the user mode controlled opt_num field. This flaw allows a local privileged (CAP_N… | |
| CVE-2023-38471 | medium | — | 5.5 | 2y ago | Moderate: avahi security update | |
| CVE-2023-40745 | medium | — | 5.5 | 2y ago | Moderate: libtiff security update | |
| CVE-2023-42467 | medium | — | 5.5 | 2y ago | Moderate: qemu-kvm security update | |
| CVE-2023-43622 | medium | — | 5.5 | 2y ago | Moderate: mod_http2 security update | |
| CVE-2023-1579 | medium | — | 5.5 | 2y ago | Moderate: mingw components security update | |
| CVE-2023-6710 | medium | — | 5.5 | 2y ago | Moderate: mod_jk and mod_proxy_cluster security update | |
| CVE-2023-53513 | medium | — | 5.5 | 2y ago | In the Linux kernel, the following vulnerability has been resolved: nbd: fix incomplete validation of ioctl arg We tested and found an alarm caused by nbd_ioctl arg without verification. The UBSAN … | |
| CVE-2023-40188 | medium | — | 5.5 | 2y ago | Moderate: freerdp security update | |
| CVE-2023-43786 | medium | — | 5.5 | 2y ago | Moderate: libX11 security update | |
| CVE-2023-51714 | medium | — | 5.5 | 2y ago | Moderate: qt5-qtbase security update | |
| CVE-2023-46752 | medium | — | 5.5 | 2y ago | Moderate: frr security update | |
| CVE-2023-42754 | medium | — | 5.5 | 2y ago | A NULL pointer dereference flaw was found in the Linux kernel ipv4 stack. The socket buffer (skb) was assumed to be associated with a device before calling __ip_options_compile, which is not always t… | |
| CVE-2023-40589 | medium | — | 5.5 | 2y ago | Moderate: freerdp security update | |
| CVE-2023-40569 | medium | — | 5.5 | 2y ago | Moderate: freerdp security update | |
| CVE-2023-4875 | medium | — | 5.5 | 2y ago | Moderate: mutt security update | |
| CVE-2023-40475 | medium | — | 5.5 | 2y ago | Moderate: gstreamer1-plugins-bad-free security update | |
| CVE-2023-39353 | medium | — | 5.5 | 2y ago | Moderate: freerdp security update | |
| CVE-2023-51779 | medium | — | 5.5 | 2y ago | bt_sock_recvmsg in net/bluetooth/af_bluetooth.c in the Linux kernel through 6.6.8 has a use-after-free because of a bt_sock_ioctl race condition. | |
| CVE-2023-41909 | medium | — | 5.5 | 2y ago | Moderate: frr security update | |
| CVE-2023-43788 | medium | — | 5.5 | 2y ago | Moderate: libXpm security update | |
| CVE-2023-39194 | medium | — | 5.5 | 2y ago | A flaw was found in the XFRM subsystem in the Linux kernel. The specific flaw exists within the processing of state filters, which can result in a read past the end of an allocated buffer. This flaw … | |
| CVE-2023-5380 | medium | — | 5.5 | 2y ago | Moderate: xorg-x11-server security update | |
| CVE-2023-39193 | medium | — | 5.5 | 2y ago | A flaw was found in the Netfilter subsystem in the Linux kernel. The sctp_mt_check did not validate the flag_count field. This flaw allows a local privileged (CAP_NET_ADMIN) attacker to trigger an ou… | |
| CVE-2023-5871 | medium | — | 5.5 | 2y ago | Moderate: libnbd security update | |
| CVE-2023-46316 | medium | — | 5.5 | 2y ago | Moderate: traceroute security update | |
| CVE-2023-37327 | medium | — | 5.5 | 2y ago | Moderate: gstreamer1-plugins-good security update | |
| CVE-2023-3618 | medium | — | 5.5 | 2y ago | Moderate: libtiff security update | |
| CVE-2023-52144 | medium | 5.5 | 5.5 | 2y ago | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in RexTheme Product Feed Manager.This issue affects Product Feed Manager: from n/a through 7.3.15. | |
| CVE-2023-29483 | medium | — | 5.5 | 2y ago | Moderate: python-dns security update | |
| CVE-2023-50374 | medium | 5.5 | 5.5 | 2y ago | Server-Side Request Forgery (SSRF) vulnerability in NiteoThemes CMP – Coming Soon & Maintenance.This issue affects CMP – Coming Soon & Maintenance: from n/a through 4.1.10. | |
| CVE-2023-52425 | medium | — | 5.5 | 2y ago | libexpat through 2.5.0 allows a denial of service (resource consumption) because many full reparsings are required in the case of a large token for which multiple buffer fills are needed. | |
| CVE-2023-4244 | medium | — | 5.5 | 2y ago | A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation. Due to a race condition between nf_tables netlink control … | |
| CVE-2023-22038 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-22056 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-22005 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-22046 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-21946 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-22058 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-22048 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-22064 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-40225 | medium | — | 5.5 | 2y ago | Moderate: haproxy security update | |
| CVE-2023-21947 | medium | — | 5.5 | 2y ago | Moderate: mysql:8.0 security update | |
| CVE-2023-22068 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-22057 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-22070 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-22110 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-21955 | medium | — | 5.5 | 2y ago | Moderate: mysql:8.0 security update | |
| CVE-2023-22111 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-22079 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-21972 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-21976 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-21982 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-21977 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-45285 | medium | — | 5.5 | 2y ago | Moderate: golang security update | |
| CVE-2023-21920 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-22065 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-22078 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-21935 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-21940 | medium | — | 5.5 | 2y ago | Moderate: mysql:8.0 security update | |
| CVE-2023-21933 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-21953 | medium | — | 5.5 | 2y ago | Moderate: mysql:8.0 security update | |
| CVE-2023-22007 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-21945 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-21966 | medium | — | 5.5 | 2y ago | Moderate: mysql:8.0 security update | |
| CVE-2023-21980 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-39326 | medium | — | 5.5 | 2y ago | Moderate: toolbox security update | |
| CVE-2023-21919 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-22115 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-22114 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-22112 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-22092 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-22104 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-22097 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-22066 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-22059 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-22054 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-22053 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-22008 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-22032 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-45539 | medium | — | 5.5 | 2y ago | Moderate: haproxy security update | |
| CVE-2023-21911 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-22103 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-21929 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-22084 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-22033 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-22113 | medium | — | 5.5 | 2y ago | Moderate: mysql security update | |
| CVE-2023-21962 | medium | — | 5.5 | 2y ago | Moderate: mysql:8.0 security update | |
| CVE-2023-5992 | medium | — | 5.5 | 2y ago | Moderate: opensc security update | |
| CVE-2023-28487 | medium | — | 5.5 | 2y ago | Moderate: sudo security update | |
| CVE-2023-28486 | medium | — | 5.5 | 2y ago | Moderate: sudo security update | |
| CVE-2023-42465 | medium | — | 5.5 | 2y ago | Moderate: sudo security update | |
| CVE-2023-6135 | medium | — | 5.5 | 2y ago | Moderate: nss security update | |
| CVE-2023-6816 | medium | — | 5.5 | 2y ago | Moderate: xorg-x11-server security update |