Home / Security / CVE index / 2023

2023 NetApp CVEs (page 2)

Showing 300 CVEs with a 2023 identifier — page 2 of 3. Sorted by CVE id.

Always verify. NetApp's advisory is authoritative for affected versions and fixes; NVD carries the CVSS record.
Showing 300 of 300
CVEPublishedSeverityCVSSSummary / Sources
CVE-2023-270432023-04-19MEDIUM5.3The email module of Python through 3.11.3 incorrectly parses e-mail addresses that contain a special character. The wrong portion of an RFC2822 header is identi NVD ↗ · NTAP-20230601-0003
CVE-2023-2727——— NVD ↗ · NTAP-20230803-0004
CVE-2023-2728——— NVD ↗ · NTAP-20230803-0004
CVE-2023-2731——— NVD ↗ · NTAP-20230703-0009
CVE-2023-273112023-05-26MEDIUM5.3NetApp Blue XP Connector versions prior to 3.9.25 expose information via a directory listing. A new Connector architecture resolves this issue - obtaining the f NVD ↗ · NTAP-20230525-0001
CVE-2023-27312——— NVD ↗ · NTAP-20230713-0001
CVE-2023-27313——— NVD ↗ · NTAP-20230713-0002
CVE-2023-273142023-10-12HIGH7.5ONTAP 9 versions prior to 9.8P19, 9.9.1P16, 9.10.1P12, 9.11.1P8, 9.12.1P2 and 9.13.1 are susceptible to a vulnerability which could allow a remote unauthenticat NVD ↗ · NTAP-20231009-0001
CVE-2023-27315——— NVD ↗ · NTAP-20231009-0002
CVE-2023-27316——— NVD ↗ · NTAP-20231012-0001
CVE-2023-273172023-12-15MEDIUM4.3ONTAP 9 versions 9.12.1P8, 9.13.1P4, and 9.13.1P5 are susceptible to a vulnerability which will cause all SAS-attached FIPS 140-2 drives to become unlocked afte NVD ↗ · NTAP-20231215-0001
CVE-2023-27318——— NVD ↗ · NTAP-20240202-0012
CVE-2023-273192023-12-21MEDIUM5.3ONTAP Mediator versions prior to 1.7 are susceptible to a vulnerability that can allow an unauthenticated attacker to enumerate URLs via REST API. NVD ↗ · NTAP-20231221-0011
CVE-2023-27320——— NVD ↗ · NTAP-20230413-0009
CVE-2023-27475——— NVD ↗ · NTAP-20230427-0003
CVE-2023-27490——— NVD ↗ · NTAP-20230420-0006
CVE-2023-275222023-03-07HIGH7.5HTTP Response Smuggling vulnerability in Apache HTTP Server via mod_proxy_uwsgi. This issue affects Apache HTTP Server: from 2.4.30 through 2.4.55. Special char NVD ↗ · NTAP-20230316-0007
CVE-2023-27530——— NVD ↗ · NTAP-20231208-0015
CVE-2023-275332023-03-30HIGH8.8A vulnerability in input validation exists in curl <8.0 during communication using the TELNET protocol may allow an attacker to pass on maliciously crafted user NVD ↗ · NTAP-20230420-0011
CVE-2023-27534——— NVD ↗ · NTAP-20230420-0012
CVE-2023-275352023-03-30MEDIUM5.9An authentication bypass vulnerability exists in libcurl <8.0.0 in the FTP connection reuse feature that can result in wrong credentials being used during subse NVD ↗ · NTAP-20230420-0010
CVE-2023-275362023-03-30MEDIUM5.9An authentication bypass vulnerability exists libcurl <8.0.0 in the connection reuse feature which can reuse previously established connections with incorrect u NVD ↗ · NTAP-20230420-0010
CVE-2023-275372023-03-30MEDIUM5.9A double free vulnerability exists in libcurl <8.0.0 when sharing HSTS data between separate "handles". This sharing was introduced without considerations for d NVD ↗ · NTAP-20230420-0010
CVE-2023-275382023-03-30MEDIUM5.5An authentication bypass vulnerability exists in libcurl prior to v8.0.0 where it reuses a previously established SSH connection despite the fact that an SSH op NVD ↗ · NTAP-20230420-0010
CVE-2023-27539——— NVD ↗ · NTAP-20231208-0016
CVE-2023-27555——— NVD ↗ · NTAP-20230511-0010
CVE-2023-27558——— NVD ↗ · NTAP-20230818-0017
CVE-2023-27559——— NVD ↗ · NTAP-20230511-0010
CVE-2023-27561——— NVD ↗ · NTAP-20241206-0004
CVE-2023-27562——— NVD ↗ · NTAP-20230622-0007
CVE-2023-27563——— NVD ↗ · NTAP-20230622-0007
CVE-2023-27564——— NVD ↗ · NTAP-20230622-0007
CVE-2023-27567——— NVD ↗ · NTAP-20230406-0001
CVE-2023-27859——— NVD ↗ · NTAP-20240307-0002
CVE-2023-27867——— NVD ↗ · NTAP-20230803-0006
CVE-2023-27868——— NVD ↗ · NTAP-20230803-0006
CVE-2023-27869——— NVD ↗ · NTAP-20230803-0006
CVE-2023-2801——— NVD ↗ · NTAP-20230706-0002
CVE-2023-28120——— NVD ↗ · NTAP-20240202-0006
CVE-2023-28155——— NVD ↗ · NTAP-20260917-0001 · NTAP-20230413-0007
CVE-2023-2828——— NVD ↗ · NTAP-20230703-0010
CVE-2023-2829——— NVD ↗ · NTAP-20230703-0010
CVE-2023-283192023-05-26HIGH7.5A use after free vulnerability exists in curl <v8.1.0 in the way libcurl offers a feature to verify an SSH server's public key using a SHA 256 hash. When this c NVD ↗ · NTAP-20230609-0009
CVE-2023-283202023-05-26MEDIUM5.9A denial of service vulnerability exists in curl <v8.1.0 in the way libcurl provides several different backends for resolving host names, selected at build time NVD ↗ · NTAP-20230609-0009
CVE-2023-283212023-05-26MEDIUM5.9An improper certificate validation vulnerability exists in curl <v8.1.0 in the way it supports matching of wildcard patterns when listed as "Subject Alternative NVD ↗ · NTAP-20230609-0009
CVE-2023-283222023-05-26LOW3.7An information disclosure vulnerability exists in curl <v8.1.0 when doing HTTP(S) transfers, libcurl might erroneously use the read callback (`CURLOPT_READFUNCT NVD ↗ · NTAP-20230609-0009
CVE-2023-28362——— NVD ↗ · NTAP-20250502-0009
CVE-2023-28376——— NVD ↗ · NTAP-20231221-0007
CVE-2023-28389——— NVD ↗ · NTAP-20240912-0004
CVE-2023-28410——— NVD ↗ · NTAP-20230622-0004
CVE-2023-28425——— NVD ↗ · NTAP-20230413-0005
CVE-2023-28464——— NVD ↗ · NTAP-20230517-0004
CVE-2023-28466——— NVD ↗ · NTAP-20230427-0006
CVE-2023-284842023-04-24MEDIUM6.5In libxml2 before 2.10.4, parsing of certain invalid XSD schemas can lead to a NULL pointer dereference and subsequently a segfault. This occurs in xmlSchemaFix NVD ↗ · NTAP-20240201-0005 · NTAP-20230601-0006
CVE-2023-28486——— NVD ↗ · NTAP-20230420-0002
CVE-2023-28487——— NVD ↗ · NTAP-20230420-0002
CVE-2023-28530——— NVD ↗ · NTAP-20230814-0005
CVE-2023-28531——— NVD ↗ · NTAP-20230413-0008
CVE-2023-2861——— NVD ↗ · NTAP-20240229-0002 · NTAP-20240125-0005
CVE-2023-286422023-03-29MEDIUM6.1runc is a CLI tool for spawning and running containers according to the OCI specification. It was found that AppArmor can be bypassed when `/proc` inside the co NVD ↗ · NTAP-20241206-0005
CVE-2023-286562023-05-03HIGH8.1NGINX Management Suite may allow an authenticated attacker to gain access to configuration objects outside of their assigned environment. Note: Software version NVD ↗ · NTAP-20230609-0006
CVE-2023-28708——— NVD ↗ · NTAP-20230331-0012
CVE-2023-28709——— NVD ↗ · NTAP-20230616-0004
CVE-2023-287242023-05-03HIGH7.1NGINX Management Suite default file permissions are set such that an authenticated attacker may be able to modify sensitive files on NGINX Instance Manager and NVD ↗ · NTAP-20230609-0006
CVE-2023-28755——— NVD ↗ · NTAP-20230526-0003
CVE-2023-28756——— NVD ↗ · NTAP-20230526-0004
CVE-2023-28772——— NVD ↗ · NTAP-20230427-0005
CVE-2023-2878——— NVD ↗ · NTAP-20230814-0003
CVE-2023-288402023-04-04HIGH7.5Moby is an open source container framework developed by Docker Inc. that is distributed as Docker, Mirantis Container Runtime, and various other downstream proj NVD ↗ · NTAP-20260410-0004
CVE-2023-28841——— NVD ↗ · NTAP-20260410-0003
CVE-2023-28842——— NVD ↗ · NTAP-20260410-0002
CVE-2023-28856——— NVD ↗ · NTAP-20230601-0007
CVE-2023-28953——— NVD ↗ · NTAP-20230814-0001
CVE-2023-2898——— NVD ↗ · NTAP-20230929-0002
CVE-2023-29013——— NVD ↗ · NTAP-20230517-0008
CVE-2023-29082023-06-30MEDIUM5.5A null pointer dereference issue was found in Libtiff's tif_dir.c file. This issue may allow an attacker to pass a crafted TIFF image file to the tiffcp utility NVD ↗ · NTAP-20230731-0004
CVE-2023-2911——— NVD ↗ · NTAP-20230703-0010
CVE-2023-29153——— NVD ↗ · NTAP-20240322-0005
CVE-2023-29255——— NVD ↗ · NTAP-20230511-0010
CVE-2023-29256——— NVD ↗ · NTAP-20230731-0007
CVE-2023-29257——— NVD ↗ · NTAP-20230511-0010
CVE-2023-29258——— NVD ↗ · NTAP-20240112-0002
CVE-2023-29267——— NVD ↗ · NTAP-20240828-0004
CVE-2023-29323——— NVD ↗ · NTAP-20230526-0006
CVE-2023-29400——— NVD ↗ · NTAP-20241213-0005
CVE-2023-29402——— NVD ↗ · NTAP-20241213-0004
CVE-2023-29403——— NVD ↗ · NTAP-20241220-0009
CVE-2023-29404——— NVD ↗ · NTAP-20241115-0009
CVE-2023-29405——— NVD ↗ · NTAP-20241206-0003
CVE-2023-29406——— NVD ↗ · NTAP-20230814-0002
CVE-2023-29407——— NVD ↗ · NTAP-20230831-0009
CVE-2023-29408——— NVD ↗ · NTAP-20230831-0009
CVE-2023-29409——— NVD ↗ · NTAP-20230831-0010
CVE-2023-294692023-04-24MEDIUM6.5An issue was discovered in libxml2 before 2.10.4. When hashing empty dict strings in a crafted XML document, xmlDictComputeFastKey in dict.c can produce non-det NVD ↗ · NTAP-20230601-0006
CVE-2023-29483——— NVD ↗ · NTAP-20240510-0001
CVE-2023-29491——— NVD ↗ · NTAP-20230517-0009
CVE-2023-29499——— NVD ↗ · NTAP-20231103-0001
CVE-2023-29532023-05-30HIGH7.5A vulnerability was found in openldap. This security flaw causes a null pointer dereference in ber_memalloc_x() function. NVD ↗ · NTAP-20230703-0005
CVE-2023-29552——— NVD ↗ · NTAP-20230426-0001
CVE-2023-29752023-07-14MEDIUM5.3Issue summary: The AES-SIV cipher implementation contains a bug that causes it to ignore empty associated data entries which are unauthenticated as a consequenc NVD ↗ · NTAP-20230725-0004
CVE-2023-2976——— NVD ↗ · NTAP-20241108-0002 · NTAP-20230818-0008
CVE-2023-30086——— NVD ↗ · NTAP-20230616-0003
CVE-2023-3010——— NVD ↗ · NTAP-20240503-0001
CVE-2023-3019——— NVD ↗ · NTAP-20230831-0005
CVE-2023-30431——— NVD ↗ · NTAP-20230731-0007
CVE-2023-30442——— NVD ↗ · NTAP-20230731-0007
CVE-2023-30443——— NVD ↗ · NTAP-20230731-0007
CVE-2023-30445——— NVD ↗ · NTAP-20230731-0007
CVE-2023-30446——— NVD ↗ · NTAP-20230731-0007
CVE-2023-30447——— NVD ↗ · NTAP-20230731-0007
CVE-2023-30448——— NVD ↗ · NTAP-20230731-0007
CVE-2023-30449——— NVD ↗ · NTAP-20230731-0007
CVE-2023-30456——— NVD ↗ · NTAP-20230511-0007
CVE-2023-30581——— NVD ↗ · NTAP-20241101-0011
CVE-2023-30582——— NVD ↗ · NTAP-20240926-0007
CVE-2023-30583——— NVD ↗ · NTAP-20240926-0006
CVE-2023-30584——— NVD ↗ · NTAP-20241108-0005
CVE-2023-30585——— NVD ↗ · NTAP-20241101-0011
CVE-2023-30586——— NVD ↗ · NTAP-20230803-0008
CVE-2023-30587——— NVD ↗ · NTAP-20241108-0004
CVE-2023-30588——— NVD ↗ · NTAP-20241101-0011 · NTAP-20240621-0006
CVE-2023-30589——— NVD ↗ · NTAP-20240621-0006 · NTAP-20230803-0009
CVE-2023-30590——— NVD ↗ · NTAP-20241101-0011
CVE-2023-30774——— NVD ↗ · NTAP-20230703-0002
CVE-2023-30775——— NVD ↗ · NTAP-20230703-0002
CVE-2023-30846——— NVD ↗ · NTAP-20230601-0008
CVE-2023-308612023-05-02HIGH7.5Flask is a lightweight WSGI web application framework. When all of the following conditions are met, a response containing data intended for one client may be c NVD ↗ · NTAP-20230818-0006
CVE-2023-3090——— NVD ↗ · NTAP-20230731-0002
CVE-2023-30987——— NVD ↗ · NTAP-20231116-0006
CVE-2023-30991——— NVD ↗ · NTAP-20231116-0005
CVE-2023-30996——— NVD ↗ · NTAP-20240621-0006 · NTAP-20240405-0004
CVE-2023-31047——— NVD ↗ · NTAP-20230609-0008
CVE-2023-31072023-08-01HIGH7.5A set of carefully crafted ipv6 packets can trigger an integer overflow in the calculation of a fragment reassembled packet's payload length field. This allows NVD ↗ · NTAP-20230804-0001
CVE-2023-31081——— NVD ↗ · NTAP-20230929-0003
CVE-2023-31082——— NVD ↗ · NTAP-20230929-0003
CVE-2023-31083——— NVD ↗ · NTAP-20230929-0003
CVE-2023-31084——— NVD ↗ · NTAP-20230929-0003
CVE-2023-31085——— NVD ↗ · NTAP-20230929-0003
CVE-2023-31102——— NVD ↗ · NTAP-20231110-0007
CVE-2023-3111——— NVD ↗ · NTAP-20230703-0007
CVE-2023-31122——— NVD ↗ · NTAP-20231027-0011
CVE-2023-31125——— NVD ↗ · NTAP-20230622-0002
CVE-2023-31130——— NVD ↗ · NTAP-20240605-0005
CVE-2023-31248——— NVD ↗ · NTAP-20240201-0001
CVE-2023-3128——— NVD ↗ · NTAP-20230714-0004
CVE-2023-3138——— NVD ↗ · NTAP-20231208-0008
CVE-2023-3141——— NVD ↗ · NTAP-20230706-0004
CVE-2023-31417——— NVD ↗ · NTAP-20231130-0006
CVE-2023-31418——— NVD ↗ · NTAP-20231130-0005
CVE-2023-31419——— NVD ↗ · NTAP-20231116-0010
CVE-2023-31423——— NVD ↗ · NTAP-20240229-0003
CVE-2023-31424——— NVD ↗ · NTAP-20240229-0004
CVE-2023-31425——— NVD ↗ · NTAP-20230908-0007
CVE-2023-31426——— NVD ↗ · NTAP-20230908-0007
CVE-2023-31427——— NVD ↗ · NTAP-20230908-0007
CVE-2023-31428——— NVD ↗ · NTAP-20230908-0007
CVE-2023-31429——— NVD ↗ · NTAP-20230908-0007
CVE-2023-31430——— NVD ↗ · NTAP-20230908-0007
CVE-2023-31431——— NVD ↗ · NTAP-20230908-0007
CVE-2023-31432——— NVD ↗ · NTAP-20230908-0007
CVE-2023-31436——— NVD ↗ · NTAP-20230609-0001
CVE-2023-31484——— NVD ↗ · NTAP-20240621-0007
CVE-2023-314862023-04-29HIGH8.1HTTP::Tiny before 0.083, a Perl core module since 5.13.9 and available standalone on CPAN, has an insecure default TLS configuration where users must opt in to NVD ↗ · NTAP-20241129-0011
CVE-2023-31655——— NVD ↗ · NTAP-20230616-0005
CVE-2023-3180——— NVD ↗ · NTAP-20230831-0008
CVE-2023-31926——— NVD ↗ · NTAP-20230908-0007
CVE-2023-31927——— NVD ↗ · NTAP-20230908-0007
CVE-2023-31928——— NVD ↗ · NTAP-20230908-0007
CVE-2023-32002——— NVD ↗ · NTAP-20230915-0009
CVE-2023-32003——— NVD ↗ · NTAP-20230915-0009
CVE-2023-32004——— NVD ↗ · NTAP-20230915-0009
CVE-2023-32005——— NVD ↗ · NTAP-20231103-0004
CVE-2023-32006——— NVD ↗ · NTAP-20230915-0009
CVE-2023-320672023-05-25HIGH7.5c-ares is an asynchronous resolver library. c-ares is vulnerable to denial of service. If a target resolver sends a query, the attacker forges a malformed UDP p NVD ↗ · NTAP-20240605-0004
CVE-2023-3212——— NVD ↗ · NTAP-20230929-0005
CVE-2023-3223——— NVD ↗ · NTAP-20231027-0004
CVE-2023-32233——— NVD ↗ · NTAP-20230616-0002
CVE-2023-32247——— NVD ↗ · NTAP-20230915-0011
CVE-2023-32248——— NVD ↗ · NTAP-20230915-0006
CVE-2023-32250——— NVD ↗ · NTAP-20230824-0004
CVE-2023-32252——— NVD ↗ · NTAP-20231124-0001
CVE-2023-322532025-08-02MEDIUM5.9A flaw was found in the Linux kernel's ksmbd component. A deadlock is triggered by sending multiple concurrent session setup requests, possibly leading to a den NVD ↗ · NTAP-20260206-0002
CVE-2023-32254——— NVD ↗ · NTAP-20230824-0004
CVE-2023-32257——— NVD ↗ · NTAP-20230915-0011
CVE-2023-32258——— NVD ↗ · NTAP-20230915-0011
CVE-2023-32305——— NVD ↗ · NTAP-20230616-0006
CVE-2023-32344——— NVD ↗ · NTAP-20240621-0006 · NTAP-20240405-0002
CVE-2023-3255——— NVD ↗ · NTAP-20231020-0008
CVE-2023-32558——— NVD ↗ · NTAP-20241025-0003
CVE-2023-32559——— NVD ↗ · NTAP-20231006-0006
CVE-2023-32611——— NVD ↗ · NTAP-20231027-0005
CVE-2023-32633——— NVD ↗ · NTAP-20240912-0004
CVE-2023-32636——— NVD ↗ · NTAP-20231110-0002
CVE-2023-32643——— NVD ↗ · NTAP-20240426-0005
CVE-2023-32665——— NVD ↗ · NTAP-20240426-0006
CVE-2023-32666——— NVD ↗ · NTAP-20240405-0010
CVE-2023-3268——— NVD ↗ · NTAP-20230824-0006
CVE-2023-3269——— NVD ↗ · NTAP-20230908-0001
CVE-2023-3301——— NVD ↗ · NTAP-20231020-0008
CVE-2023-3312——— NVD ↗ · NTAP-20230731-0005
CVE-2023-33201——— NVD ↗ · NTAP-20230824-0008
CVE-2023-33202——— NVD ↗ · NTAP-20240125-0001
CVE-2023-33250——— NVD ↗ · NTAP-20230622-0006
CVE-2023-3326——— NVD ↗ · NTAP-20230714-0005
CVE-2023-3338——— NVD ↗ · NTAP-20230824-0005
CVE-2023-3341——— NVD ↗ · NTAP-20231013-0003
CVE-2023-3347——— NVD ↗ · NTAP-20230731-0010
CVE-2023-33850——— NVD ↗ · NTAP-20241108-0002
CVE-2023-3389——— NVD ↗ · NTAP-20230731-0001
CVE-2023-3390——— NVD ↗ · NTAP-20230818-0004
CVE-2023-34034——— NVD ↗ · NTAP-20230814-0008
CVE-2023-34042——— NVD ↗ · NTAP-20241129-0010
CVE-2023-34053——— NVD ↗ · NTAP-20231214-0007
CVE-2023-34055——— NVD ↗ · NTAP-20231221-0010
CVE-2023-34149——— NVD ↗ · NTAP-20230706-0005
CVE-2023-34188——— NVD ↗ · NTAP-20250228-0001
CVE-2023-34241——— NVD ↗ · NTAP-20251114-0007
CVE-2023-34319——— NVD ↗ · NTAP-20240202-0001
CVE-2023-34329——— NVD ↗ · NTAP-20230814-0004
CVE-2023-34330——— NVD ↗ · NTAP-20230814-0004
CVE-2023-34396——— NVD ↗ · NTAP-20230706-0005
CVE-2023-34424——— NVD ↗ · NTAP-20241108-0003
CVE-2023-34455——— NVD ↗ · NTAP-20230818-0009
CVE-2023-34457——— NVD ↗ · NTAP-20230803-0005
CVE-2023-34462023-07-19MEDIUM5.3Issue summary: Checking excessively long DH keys or parameters may be very slow. Impact summary: Applications that use the functions DH_check(), DH_check_ex() o NVD ↗ · NTAP-20230803-0011
CVE-2023-34462——— NVD ↗ · NTAP-20240621-0007 · NTAP-20230803-0001
CVE-2023-34478——— NVD ↗ · NTAP-20230915-0005
CVE-2023-3454——— NVD ↗ · NTAP-20240628-0004
CVE-2023-3489——— NVD ↗ · NTAP-20231124-0003
CVE-2023-3494——— NVD ↗ · NTAP-20230831-0006
CVE-2023-34966——— NVD ↗ · NTAP-20230731-0010
CVE-2023-34967——— NVD ↗ · NTAP-20230731-0010
CVE-2023-34968——— NVD ↗ · NTAP-20230731-0010
CVE-2023-349692023-06-08MEDIUM6.5D-Bus before 1.15.6 sometimes allows unprivileged users to crash dbus-daemon. If a privileged user with control over the dbus-daemon is using the org.freedeskto NVD ↗ · NTAP-20231208-0007
CVE-2023-34981——— NVD ↗ · NTAP-20230714-0003
CVE-2023-35001——— NVD ↗ · NTAP-20230824-0007
CVE-2023-35009——— NVD ↗ · NTAP-20240621-0005 · NTAP-20230831-0014
CVE-2023-35011——— NVD ↗ · NTAP-20240621-0005 · NTAP-20230921-0005
CVE-2023-35012——— NVD ↗ · NTAP-20230818-0013
CVE-2023-35191——— NVD ↗ · NTAP-20240405-0005
CVE-2023-35788——— NVD ↗ · NTAP-20230714-0002
CVE-2023-35823——— NVD ↗ · NTAP-20230803-0002
CVE-2023-35824——— NVD ↗ · NTAP-20230803-0002
CVE-2023-35826——— NVD ↗ · NTAP-20230803-0002
CVE-2023-35827——— NVD ↗ · NTAP-20230803-0003
CVE-2023-35828——— NVD ↗ · NTAP-20230803-0002
CVE-2023-35829——— NVD ↗ · NTAP-20230803-0002
CVE-2023-35946——— NVD ↗ · NTAP-20230731-0003
CVE-2023-35947——— NVD ↗ · NTAP-20230803-0007
CVE-2023-3603——— NVD ↗ · NTAP-20260206-0012
CVE-2023-360542023-08-07MEDIUM6.5lib/kadm5/kadm_rpc_xdr.c in MIT Kerberos 5 (aka krb5) before 1.20.2 and 1.21.x before 1.21.1 frees an uninitialized pointer. A remote authenticated user can tri NVD ↗ · NTAP-20230908-0004
CVE-2023-3609——— NVD ↗ · NTAP-20230818-0005
CVE-2023-3610——— NVD ↗ · NTAP-20230818-0005
CVE-2023-3611——— NVD ↗ · NTAP-20230908-0002
CVE-2023-3618——— NVD ↗ · NTAP-20230824-0012
CVE-2023-3628——— NVD ↗ · NTAP-20240125-0004
CVE-2023-3629——— NVD ↗ · NTAP-20240125-0004
CVE-2023-36478——— NVD ↗ · NTAP-20240621-0006 · NTAP-20231116-0011
CVE-2023-36617——— NVD ↗ · NTAP-20230725-0002
CVE-2023-36665——— NVD ↗ · NTAP-20240628-0006
CVE-2023-3676——— NVD ↗ · NTAP-20231130-0007
CVE-2023-36824——— NVD ↗ · NTAP-20230814-0009
CVE-2023-37466——— NVD ↗ · NTAP-20241108-0002 · NTAP-20230831-0007
CVE-2023-3750——— NVD ↗ · NTAP-20250711-0006
CVE-2023-3776——— NVD ↗ · NTAP-20240202-0003
CVE-2023-37903——— NVD ↗ · NTAP-20241108-0002 · NTAP-20230831-0007
CVE-2023-379202023-07-25HIGH7.5Certifi is a curated collection of Root Certificates for validating the trustworthiness of SSL certificates while verifying the identity of TLS hosts. Certifi p NVD ↗ · NTAP-20240912-0002
CVE-2023-38003——— NVD ↗ · NTAP-20240119-0001
CVE-2023-38037——— NVD ↗ · NTAP-20250214-0010
CVE-2023-380392023-09-15HIGH7.5When curl retrieves an HTTP response, it stores the incoming headers so that they can be accessed later via the libcurl headers API. However, curl did not have NVD ↗ · NTAP-20231013-0005
CVE-2023-38172023-07-31MEDIUM5.3Issue summary: Checking excessively long DH keys or parameters may be very slow. Impact summary: Applications that use the functions DH_check(), DH_check_ex() o NVD ↗ · NTAP-20240621-0006 · NTAP-20231027-0008 +1
CVE-2023-3823——— NVD ↗ · NTAP-20230825-0001
CVE-2023-3824——— NVD ↗ · NTAP-20230825-0001
CVE-2023-38325——— NVD ↗ · NTAP-20230824-0010
CVE-2023-38359——— NVD ↗ · NTAP-20240621-0006 · NTAP-20240405-0003
CVE-2023-384032023-07-17HIGH7.5iperf3 before 3.14 allows peers to cause an integer overflow and heap corruption via a crafted length field. NVD ↗ · NTAP-20230818-0016
CVE-2023-384082023-07-20CRITICAL9.8The PKCS#11 feature in ssh-agent in OpenSSH before 9.3p2 has an insufficiently trustworthy search path, leading to remote code execution if an agent is forwarde NVD ↗ · NTAP-20230803-0010
CVE-2023-38426——— NVD ↗ · NTAP-20230915-0010
CVE-2023-38427——— NVD ↗ · NTAP-20230824-0011
CVE-2023-38428——— NVD ↗ · NTAP-20230831-0001
CVE-2023-384292023-07-18CRITICAL9.8An issue was discovered in the Linux kernel before 6.3.4. fs/ksmbd/connection.c in ksmbd has an off-by-one error in memory allocation (because of ksmbd_smb2_che NVD ↗ · NTAP-20250103-0009
CVE-2023-38430——— NVD ↗ · NTAP-20230831-0003
CVE-2023-38431——— NVD ↗ · NTAP-20230824-0011
CVE-2023-38432——— NVD ↗ · NTAP-20230831-0002
CVE-2023-385452023-10-18CRITICAL9.8This flaw makes curl overflow a heap based buffer in the SOCKS5 proxy handshake. When curl is asked to pass along the host name to the SOCKS5 proxy to allow tha NVD ↗ · NTAP-20240201-0005 · NTAP-20231027-0009 +1
CVE-2023-385462023-10-18LOW3.7This flaw allows an attacker to insert cookies at will into a running program using libcurl, if the specific series of conditions are met. libcurl performs tran NVD ↗ · NTAP-20231011-0001
CVE-2023-38552——— NVD ↗ · NTAP-20241108-0002 · NTAP-20231116-0013
CVE-2023-38575——— NVD ↗ · NTAP-20240405-0008
CVE-2023-3863——— NVD ↗ · NTAP-20240202-0002
CVE-2023-38633——— NVD ↗ · NTAP-20230831-0011
CVE-2023-38655——— NVD ↗ · NTAP-20250801-0004
CVE-2023-387092024-04-04HIGH7.3Faulty input validation in the core of Apache allows malicious or exploitable backend/content generators to split HTTP responses. This issue affects Apache HTTP NVD ↗ · NTAP-20240415-0013
CVE-2023-38719——— NVD ↗ · NTAP-20231116-0008
CVE-2023-38720——— NVD ↗ · NTAP-20231116-0005
CVE-2023-38727——— NVD ↗ · NTAP-20240119-0001
CVE-2023-38728——— NVD ↗ · NTAP-20231116-0006
CVE-2023-38729——— NVD ↗ · NTAP-20240517-0004
CVE-2023-38740——— NVD ↗ · NTAP-20231116-0007
CVE-2023-3893——— NVD ↗ · NTAP-20231221-0004
CVE-2023-3896——— NVD ↗ · NTAP-20230831-0012

Years: 2026 · 2025 · 2024 · 2023 · 2022 · 2021 · 2020 · 2019 · 2018 · 2017 · 2016 · 2015 · 2014 · 2013 · 2012 · 2011 · 2010 · 2009 · 2008 · 2007 · 2006 · 2005 · 2004 · 2003 · 2002 · 1999

← CVE index · Security hub