2023 CVE Vulnerabilities

31,442 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-22882HIGH7.5Zoom clients before version 5.13.5 contain a STUN parsing vulnerability. A malicious actor could send specially crafted ...
CVE-2023-22881HIGH7.5Zoom clients before version 5.13.5 contain a STUN parsing vulnerability. A malicious actor could send specially crafted ...
CVE-2023-22880HIGH7.5Zoom for Windows clients before version 5.13.3, Zoom Rooms for Windows clients before version 5.13.5 and Zoom VDI for Wi...
CVE-2023-21465MEDIUM5.5Improper access control vulnerability in BixbyTouch prior to version 3.2.02.5 in China models allows untrusted applicati...
CVE-2023-21464LOW3.3Improper access control in Samsung Calendar prior to versions 12.4.02.9000 in Android 13 and 12.3.08.2000 in Android 12 ...
CVE-2023-21463LOW3.3Improper access control vulnerability in MyFiles application prior to versions 12.2.09.0 in Android 11, 13.1.03.501 in A...
CVE-2023-21462LOW3.3The sensitive information exposure vulnerability in Quick Share Agent prior to versions 3.5.14.18 in Android 12 and 3.5....
CVE-2023-21461MEDIUM5.5Improper authorization vulnerability in AutoPowerOnOffConfirmDialog in Settings prior to SMR Mar-2023 Release 1 allows l...
CVE-2023-21460MEDIUM4.4Improper authentication in SecSettings prior to SMR Mar-2023 Release 1 allows attacker to reset the setting.
CVE-2023-21459CRITICAL9.8Use after free vulnerability in decon driver prior to SMR Mar-2023 Release 1 allows attackers to cause memory access fau...
CVE-2023-21458LOW3.3Improper privilege management vulnerability in PhoneStatusBarPolicy in System UI prior to SMR Mar-2023 Release 1 allows ...
CVE-2023-21457HIGH8.1Improper access control vulnerability in Bluetooth prior to SMR Mar-2023 Release 1 allows attackers to send file via Blu...
CVE-2023-21456MEDIUM5.5Path traversal vulnerability in Galaxy Themes Service prior to SMR Mar-2023 Release 1 allows attacker to access arbitrar...
CVE-2023-21455CRITICAL9.1Improper authorization implementation in Exynos baseband prior to SMR Mar-2023 Release 1 allows incorrect handling of un...
CVE-2023-21454LOW2.4Improper authorization in Samsung Keyboard prior to SMR Mar-2023 Release 1 allows physical attacker to access users text...
CVE-2023-21453MEDIUM5.5Improper input validation vulnerability in SoftSim TA prior to SMR Mar-2023 Release 1 allows local attackers access to p...
CVE-2023-21452LOW3.3Improper usage of implicit intent in Bluetooth prior to SMR Mar-2023 Release 1 allows attacker to get MAC address of con...
CVE-2023-21449MEDIUM5.5Improper access control vulnerability in Call application prior to SMR Mar-2023 Release 1 allows local attackers to acce...
CVE-2023-1390HIGH7.5A remote denial of service vulnerability was found in the Linux kernel’s TIPC kernel module. The while loop in tipc_link...
CVE-2023-0598CRITICAL9.8 GE Digital Proficy iFIX 2022, GE Digital Proficy iFIX v6.1, and GE Digital Proficy iFIX v6.5 are vulnerable to code inj...
CVE-2023-1256CRITICAL9.8The listed versions of AVEVA Plant SCADA and AVEVA Telemetry Server are vulnerable to an improper authorization exploit ...
CVE-2023-0811CRITICAL9.1 Omron CJ1M unit v4.0 and prior has improper access controls on the memory region where the UM password is stored. If an...
CVE-2023-28110CRITICAL9.9Jumpserver is a popular open source bastion host, and Koko is a Jumpserver component that is the Go version of coco, ref...
CVE-2023-28109MEDIUM6.5Play With Docker is a browser-based Docker playground. Versions 0.0.2 and prior are vulnerable to domain hijacking. Beca...
CVE-2023-28108HIGH7.8Pimcore is an open source data and experience management platform. Prior to version 10.5.19, quoting is not done properl...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now