IT
58.306 CVE tracked
790 Exploited now
188 Used by ransomware
Last sync

CVE Tracker

58.306 CVE

Ten vendors followed by CPE identifier, not by keyword: a CVE appears here once NVD says which products it affects — usually a few days after it is published.

CVE Tracker
Identifier Severity, sorted ascending Product and flaw EPSS, sort descending In KEV since, sort descending
CVE-2023-33151 MED 6.5 microsoft 365_apps Microsoft Outlook Spoofing Vulnerability 3.4% —
CVE-2023-33145 MED 6.5 microsoft edge_chromium Microsoft Edge (Chromium-based) Information Disclosure Vulnerability 8.6% —
CVE-2023-33142 MED 6.5 microsoft sharepoint_server Microsoft SharePoint Server Elevation of Privilege Vulnerability 1.0% —
CVE-2023-33140 MED 6.5 microsoft onenote Microsoft OneNote Spoofing Vulnerability 1.6% —
CVE-2023-33129 MED 6.5 microsoft sharepoint_server Microsoft SharePoint Server Denial of Service Vulnerability 2.0% —
CVE-2023-32083 MED 6.5 microsoft windows_server_2016 Microsoft Failover Cluster Information Disclosure Vulnerability 1.6% —
CVE-2023-32042 MED 6.5 microsoft windows_10_1507 OLE Automation Information Disclosure Vulnerability 1.3% —
CVE-2023-32037 MED 6.5 microsoft windows_10_1809 Windows Layer-2 Bridge Network Driver Information Disclosure Vulnerability 0.7% —
CVE-2023-32035 MED 6.5 microsoft windows_10_1507 Remote Procedure Call Runtime Denial of Service Vulnerability 1.6% —
CVE-2023-32034 MED 6.5 microsoft windows_10_1507 Remote Procedure Call Runtime Denial of Service Vulnerability 1.6% —
CVE-2023-32032 MED 6.5 microsoft .net .NET and Visual Studio Elevation of Privilege Vulnerability 0.6% —
CVE-2023-31101 MED 6.5 apache inlong Insecure Default Initialization of Resource Vulnerability in Apache Software Foundation Apache InLong.This issue affects Apache InLong: from 1.5.0 through 1.6.0. Users registered in InLong who joined later can see deleted users' data. Users are advised to upg 1.1% —
CVE-2023-31018 MED 6.5 nvidia virtual_gpu NVIDIA GPU Driver for Windows and Linux contains a vulnerability in the kernel mode layer, where an unprivileged regular user can cause a NULL-pointer dereference, which may lead to denial of service. 0.2% —
CVE-2023-30575 MED 6.5 apache guacamole Apache Guacamole 1.5.1 and older may incorrectly calculate the lengths of instruction elements sent during the Guacamole protocol handshake, potentially allowing an attacker to inject Guacamole instructions during the handshake through specially-crafted data. 1.0% —
CVE-2023-30456 MED 6.5 linux linux_kernel An issue was discovered in arch/x86/kvm/vmx/nested.c in the Linux kernel before 6.2.8. nVMX on x86_64 lacks consistency checks for CR0 and CR4. 0.5% —
CVE-2023-29369 MED 6.5 microsoft windows_server_2012 Remote Procedure Call Runtime Denial of Service Vulnerability 2.0% —
CVE-2023-29352 MED 6.5 microsoft remote_desktop_client Windows Remote Desktop Security Feature Bypass Vulnerability 1.2% —
CVE-2023-29324 MED 6.5 microsoft windows_10_1507 Windows MSHTML Platform Security Feature Bypass Vulnerability 2.9% —
CVE-2023-29260 MED 6.5 ibm sterling_connect\ IBM Sterling Connect:Express for UNIX 1.5 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks. IB 0.3% —
CVE-2023-29179 MED 6.5 fortinet fortios A null pointer dereference in Fortinet FortiOS version 7.2.0 through 7.2.4, 7.0.0 through 7.0.11, 6.4.0 through 6.4.12, Fortiproxy version 7.2.0 through 7.2.4, 7.0.0 through 7.0.10 allows attacker to denial of service via specially crafted HTTP requests. 2.5% —
CVE-2023-28981 MED 6.5 juniper junos An Improper Input Validation vulnerability in the kernel of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated, adjacent attacker to cause a Denial of Service (DoS). If the receipt of router advertisements is enabled on an interface and a 0.3% —
CVE-2023-28970 MED 6.5 juniper junos An Improper Check or Handling of Exceptional Conditions vulnerability in packet processing on the network interfaces of Juniper Networks Junos OS on JRR200 route reflector appliances allows an adjacent, network-based attacker sending a specific packet to the d 0.3% —
CVE-2023-28965 MED 6.5 juniper junos An Improper Check or Handling of Exceptional Conditions within the storm control feature of Juniper Networks Junos OS allows an attacker sending a high rate of traffic to cause a Denial of Service. Continued receipt and processing of these packets will create 0.6% —
CVE-2023-28959 MED 6.5 juniper junos An Improper Check or Handling of Exceptional Conditions vulnerability in packet processing of Juniper Networks Junos OS on QFX10002 allows an unauthenticated, adjacent attacker on the local broadcast domain sending a malformed packet to the device, causing all 0.3% —
CVE-2023-28312 MED 6.5 microsoft azure_machine_learning Azure Machine Learning Information Disclosure Vulnerability 1.5% —