2023 CVE Vulnerabilities
31,440 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-2191 | MEDIUM | 4.8 | 0.5% | Apr 20, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository azuracast/azuracast prior to 0.18. |
| CVE-2023-2166 | MEDIUM | 5.5 | 0.2% | Apr 19, 2023 | A null pointer dereference issue was found in can protocol in net/can/af_can.c in the Linux before Linux. ml_priv may no... |
| CVE-2023-28328 | MEDIUM | 5.5 | 0.2% | Apr 19, 2023 | A NULL pointer dereference flaw was found in the az6027 driver in drivers/media/usb/dev-usb/az6027.c in the Linux Kernel... |
| CVE-2023-28327 | MEDIUM | 5.5 | 0.2% | Apr 19, 2023 | A NULL pointer dereference flaw was found in the UNIX protocol in net/unix/diag.c In unix_diag_get_exact in the Linux Ke... |
| CVE-2023-23451 | CRITICAL | 9.8 | 0.6% | Apr 19, 2023 | The Flexi Classic and Flexi Soft Gateways SICK UE410-EN3 FLEXI ETHERNET GATEW. with serial number <=2311xxxx all Firmwar... |
| CVE-2023-1382 | MEDIUM | 4.7 | 0.2% | Apr 19, 2023 | A data race flaw was found in the Linux kernel, between where con is allocated and con->sock is set. This issue leads to... |
| CVE-2023-30797 | HIGH | 7.5 | 0.8% | Apr 19, 2023 | Netflix Lemur before version 1.3.2 used insufficiently random values when generating default credentials. The insufficie... |
| CVE-2023-2162 | MEDIUM | 5.5 | 0.2% | Apr 19, 2023 | A use-after-free vulnerability was found in iscsi_sw_tcp_session_create in drivers/scsi/iscsi_tcp.c in SCSI sub-componen... |
| CVE-2023-28124 | MEDIUM | 5.5 | 0.1% | Apr 19, 2023 | Improper usage of symmetric encryption in UI Desktop for Windows (Version 0.59.1.71 and earlier) could allow users with ... |
| CVE-2023-28123 | MEDIUM | 5.5 | 0.2% | Apr 19, 2023 | A permission misconfiguration in UI Desktop for Windows (Version 0.59.1.71 and earlier) could allow an user to hijack VP... |
| CVE-2023-28122 | HIGH | 7.8 | 0.2% | Apr 19, 2023 | A local privilege escalation (LPE) vulnerability in UI Desktop for Windows (Version 0.59.1.71 and earlier) allows a mali... |
| CVE-2023-21100 | HIGH | 7.8 | 0.1% | Apr 19, 2023 | In inflate of inflate.c, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local... |
| CVE-2023-21099 | HIGH | 7.8 | 0.1% | Apr 19, 2023 | In multiple methods of PackageInstallerSession.java, there is a possible way to start foreground services from the backg... |
| CVE-2023-21098 | HIGH | 7.8 | 0.1% | Apr 19, 2023 | In multiple functions of AccountManagerService.java, there is a possible loading of arbitrary code into the System Setti... |
| CVE-2023-21097 | HIGH | 7.8 | 0.2% | Apr 19, 2023 | In toUriInner of Intent.java, there is a possible way to launch an arbitrary activity due to a confused deputy. This cou... |
| CVE-2023-21096 | CRITICAL | 9.8 | 0.5% | Apr 19, 2023 | In OnWakelockReleased of attribution_processor.cc, there is a use after free that could lead to remote code execution wi... |
| CVE-2023-21094 | HIGH | 7.8 | 0.2% | Apr 19, 2023 | In sanitize of LayerState.cpp, there is a possible way to take over the screen display and swap the display content due ... |
| CVE-2023-21093 | HIGH | 7.8 | 0.1% | Apr 19, 2023 | In extractRelativePath of FileUtils.java, there is a possible way to access files in a directory belonging to other appl... |
| CVE-2023-21092 | HIGH | 7.8 | 0.1% | Apr 19, 2023 | In retrieveServiceLocked of ActiveServices.java, there is a possible way to dynamically register a BroadcastReceiver usi... |
| CVE-2023-21091 | MEDIUM | 5.5 | 0.1% | Apr 19, 2023 | In canDisplayLocalUi of AppLocalePickerActivity.java, there is a possible way to change system app locales due to a miss... |
| CVE-2023-21090 | MEDIUM | 5 | 0.1% | Apr 19, 2023 | In parseUsesPermission of ParsingPackageUtils.java, there is a possible boot loop due to resource exhaustion. This could... |
| CVE-2023-21089 | HIGH | 7.8 | 0.1% | Apr 19, 2023 | In startInstrumentation of ActivityManagerService.java, there is a possible way to keep the foreground service alive whi... |
| CVE-2023-21088 | HIGH | 7.8 | 0.1% | Apr 19, 2023 | In deliverOnFlushComplete of LocationProviderManager.java, there is a possible way to bypass background activity launch ... |
| CVE-2023-21087 | MEDIUM | 5.5 | 0.1% | Apr 19, 2023 | In PreferencesHelper.java, an uncaught exception may cause the device to get stuck in a boot loop. This could lead to lo... |
| CVE-2023-21086 | HIGH | 7.8 | 0.2% | Apr 19, 2023 | In isToggleable of SecureNfcEnabler.java and SecureNfcPreferenceController.java, there is a possible way to enable NFC f... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now