| | CVE-2023-38169 | Microsoft | high | 8.8 | 1.3%
| | Microsoft SQL OLE DB Remote Code Execution Vulnerability | Aug 8, 2023 | Aug 10, 2026 |
| | CVE-2023-38170 | Microsoft | high | 7.8 | 0.7%
| | HEVC Video Extensions Remote Code Execution Vulnerability | Aug 8, 2023 | Aug 10, 2026 |
| | CVE-2023-38175 | Microsoft | high | 7.8 | 0.5%
| | Microsoft Windows Defender Elevation of Privilege Vulnerability | Aug 8, 2023 | Aug 10, 2026 |
| | CVE-2023-38176 | Microsoft | high | 7.0 | 0.4%
| | Azure Arc-Enabled Servers Elevation of Privilege Vulnerability | Aug 8, 2023 | Aug 10, 2026 |
| | CVE-2023-38178 | Microsoft | high | 7.5 | 2.6%
| | .NET Core and Visual Studio Denial of Service Vulnerability | Aug 8, 2023 | Aug 10, 2026 |
| | CVE-2023-38181 | Microsoft | high | 8.8 | 10.8%
| | Microsoft Exchange Server Spoofing Vulnerability | Aug 8, 2023 | Aug 10, 2026 |
| | CVE-2023-38182 | Microsoft | high | 8.0 | 5.9%
| | Microsoft Exchange Server Remote Code Execution Vulnerability | Aug 8, 2023 | Aug 10, 2026 |
| | CVE-2023-38185 | Microsoft | high | 8.8 | 2.7%
| | Microsoft Exchange Server Remote Code Execution Vulnerability | Aug 8, 2023 | Aug 10, 2026 |
| | CVE-2023-38188 | Microsoft | medium | 4.5 | 1.0%
| | Azure Apache Hadoop Spoofing Vulnerability | Aug 8, 2023 | Aug 10, 2026 |
| | CVE-2023-35391 | Microsoft | medium | 6.2 | 1.9%
| | ASP.NET Core SignalR and Visual Studio Information Disclosure Vulnerability | Aug 8, 2023 | Aug 10, 2026 |
| | CVE-2023-36873 | Microsoft | high | 7.4 | 1.5%
| | .NET Framework Spoofing Vulnerability | Aug 8, 2023 | Aug 10, 2026 |
| | CVE-2023-36899 | Microsoft | high | 8.8 | 77.1%
| | ASP.NET Elevation of Privilege Vulnerability | Aug 8, 2023 | Aug 10, 2026 |
| | CVE-2023-38180 | Microsoft | high | 7.5 | 14.8%
| ⚠ KEV | .NET and Visual Studio Denial of Service Vulnerability | Aug 8, 2023 | Aug 10, 2026 |
| | CVE-2023-36787 | Microsoft | high | 8.8 | 1.8%
| | Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability | Aug 21, 2023 | Aug 10, 2026 |
| | CVE-2023-38158 | Microsoft | low | 3.1 | 1.2%
| | Microsoft Edge (Chromium-based) Information Disclosure Vulnerability | Aug 21, 2023 | Aug 10, 2026 |
| | CVE-2023-36741 | Microsoft | high | 8.3 | 1.8%
| | Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability | Aug 26, 2023 | Aug 10, 2026 |
| | CVE-2023-20269 | Cisco | medium | 5.0 | 21.6%
| ⚠ KEV | A vulnerability in the remote access VPN feature of Cisco Adaptive Security Appliance (ASA) Software… | Sep 6, 2023 | Aug 11, 2026 |
| | CVE-2023-38156 | Microsoft | high | 7.2 | 0.2%
| | Azure HDInsight Apache Ambari JDBC Injection Elevation of Privilege Vulnerability | Sep 12, 2023 | Feb 11, 2026 |
| | CVE-2023-44487 | Apache | high | 7.5 | 100.0%
| ⚠ KEV | The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancell… | Oct 10, 2023 | Aug 11, 2026 |
| | CVE-2023-34992 | Fortinet | critical | 10.0 | 75.9%
| | A improper neutralization of special elements used in an os command ('os command injection') vulnera… | Oct 10, 2023 | Jan 14, 2026 |
| | CVE-2023-42787 | Fortinet | medium | 6.5 | 1.4%
| | A client-side enforcement of server-side security [CWE-602] vulnerability in Fortinet FortiManager v… | Oct 10, 2023 | Aug 12, 2026 |
| | CVE-2023-36419 | Microsoft | high | 8.8 | 0.7%
| | Azure HDInsight Apache Oozie Workflow Scheduler XXE Elevation of Privilege Vulnerability | Oct 10, 2023 | Feb 11, 2026 |
| | CVE-2023-41680 | Fortinet | high | 7.5 | 0.1%
| | A improper neutralization of input during web page generation ('cross-site scripting') vulnerability… | Oct 13, 2023 | Jan 14, 2026 |
| | CVE-2023-41681 | Fortinet | high | 7.5 | 0.1%
| | A improper neutralization of input during web page generation ('cross-site scripting') vulnerability… | Oct 13, 2023 | Jan 14, 2026 |
| | CVE-2023-41682 | Fortinet | high | 8.1 | 0.4%
| | A improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Fo… | Oct 13, 2023 | Jan 14, 2026 |
| | CVE-2023-41836 | Fortinet | low | 3.5 | 0.1%
| | An improper neutralization of input during web page generation ('cross-site scripting') vulnerabilit… | Oct 13, 2023 | Jan 14, 2026 |
| | CVE-2023-41843 | Fortinet | high | 7.5 | 0.2%
| | A improper neutralization of input during web page generation ('cross-site scripting') vulnerability… | Oct 13, 2023 | Jan 14, 2026 |
| | CVE-2023-34085 | ForgeRock | low | 2.6 | — | | When an AWS DynamoDB table is used for user attribute storage, it is possible to retrieve the attrib… | Oct 25, 2023 | Nov 21, 2024 |
| | CVE-2023-37283 | ForgeRock | high | 8.1 | — | | Under a very specific and highly unrecommended configuration, authentication bypass is possible in t… | Oct 25, 2023 | Nov 21, 2024 |
| | CVE-2023-39219 | ForgeRock | high | 7.5 | — | | PingFederate Administrative Console dependency contains a weakness where console becomes unresponsiv… | Oct 25, 2023 | Nov 21, 2024 |
| | CVE-2023-39231 | ForgeRock | high | 7.3 | — | | PingFederate using the PingOne MFA adapter allows a new MFA device to be paired without requiring se… | Oct 25, 2023 | Nov 21, 2024 |
| | CVE-2023-39930 | ForgeRock | high | 7.5 | — | | A first-factor authentication bypass vulnerability exists in the PingFederate with PingID Radius PCV… | Oct 25, 2023 | Nov 21, 2024 |
| | CVE-2023-20086 | Cisco | high | 8.6 | 0.7%
| | A vulnerability in ICMPv6 processing of Cisco Adaptive Security Appliance (ASA) Software and Cisco F… | Nov 1, 2023 | Aug 11, 2026 |
| | CVE-2023-20177 | Cisco | medium | 4.0 | 0.5%
| | A vulnerability in the SSL file policy implementation of Cisco Firepower Threat Defense (FTD) Softwa… | Nov 1, 2023 | Aug 11, 2026 |
| | CVE-2023-20244 | Cisco | high | 8.6 | 0.8%
| | A vulnerability in the internal packet processing of Cisco Firepower Threat Defense (FTD) Software f… | Nov 1, 2023 | Aug 11, 2026 |
| | CVE-2023-20245 | Cisco | medium | 5.8 | 0.5%
| | Multiple vulnerabilities in the per-user-override feature of Cisco Adaptive Security Appliance (ASA)… | Nov 1, 2023 | Aug 11, 2026 |
| | CVE-2023-20256 | Cisco | medium | 5.0 | 0.6%
| | Multiple vulnerabilities in the per-user-override feature of Cisco Adaptive Security Appliance (ASA)… | Nov 1, 2023 | Aug 11, 2026 |
| | CVE-2023-20270 | Cisco | medium | 5.8 | 0.7%
| | A vulnerability in the interaction between the Server Message Block (SMB) protocol preprocessor and … | Nov 1, 2023 | Aug 11, 2026 |
| | CVE-2023-20031 | Cisco | medium | 4.0 | 0.3%
| | A vulnerability in the SSL/TLS certificate handling of Snort 3 Detection Engine integration with Cis… | Nov 1, 2023 | Aug 11, 2026 |
| | CVE-2023-20042 | Cisco | medium | 6.8 | 0.7%
| | A vulnerability in the AnyConnect SSL VPN feature of Cisco Adaptive Security Appliance (ASA) Softwar… | Nov 1, 2023 | Aug 11, 2026 |
| | CVE-2023-20063 | Cisco | high | 8.2 | 0.2%
| | A vulnerability in the inter-device communication mechanisms between devices that are running Cisco … | Nov 1, 2023 | Aug 11, 2026 |
| | CVE-2023-20070 | Cisco | medium | 4.0 | 0.5%
| | A vulnerability in the TLS 1.3 implementation of the Cisco Firepower Threat Defense (FTD) Software c… | Nov 1, 2023 | Aug 11, 2026 |
| | CVE-2023-20071 | Cisco | medium | 5.8 | 0.5%
| | Multiple Cisco products are affected by a vulnerability in the Snort detection engine that could all… | Nov 1, 2023 | Aug 11, 2026 |
| | CVE-2023-20083 | Cisco | high | 8.6 | 0.7%
| | A vulnerability in ICMPv6 inspection when configured with the Snort 2 detection engine for Cisco Fir… | Nov 1, 2023 | Aug 11, 2026 |
| | CVE-2023-20095 | Cisco | high | 8.6 | 0.6%
| | A vulnerability in the remote access VPN feature of Cisco Adaptive Security Appliance (ASA) Software… | Nov 1, 2023 | Aug 11, 2026 |
| | CVE-2023-20246 | Cisco | medium | 5.8 | 0.6%
| | Multiple Cisco products are affected by a vulnerability in Snort access control policies that could … | Nov 1, 2023 | Aug 11, 2026 |
| | CVE-2023-20247 | Cisco | medium | 5.0 | 0.3%
| | A vulnerability in the remote access SSL VPN feature of Cisco Adaptive Security Appliance (ASA) Soft… | Nov 1, 2023 | Aug 11, 2026 |
| | CVE-2023-20264 | Cisco | medium | 6.1 | 0.4%
| | A vulnerability in the implementation of Security Assertion Markup Language (SAML) 2.0 single sign-o… | Nov 1, 2023 | Aug 11, 2026 |
| | CVE-2023-20267 | Cisco | medium | 4.0 | 0.4%
| | A vulnerability in the IP geolocation rules of Snort 3 could allow an unauthenticated, remote attack… | Nov 1, 2023 | Aug 11, 2026 |
| | CVE-2023-36769 | Microsoft | medium | 4.6 | 0.4%
| | Microsoft OneNote Spoofing Vulnerability | Nov 6, 2023 | Aug 10, 2026 |