2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-40097 | HIGH | 7.8 | 0.1% | Dec 4, 2023 | In hasPermissionForActivity of PackageManagerHelper.java, there is a possible URI grant due to improper input validation... |
| CVE-2023-40096 | HIGH | 7.8 | 0.2% | Dec 4, 2023 | In OpRecordAudioMonitor::onFirstRef of AudioRecordClient.cpp, there is a possible way to record audio from the backgroun... |
| CVE-2023-40095 | HIGH | 7.8 | 0.1% | Dec 4, 2023 | In createDontSendToRestrictedAppsBundle of PendingIntentUtils.java, there is a possible background activity launch due t... |
| CVE-2023-40094 | HIGH | 7.8 | 0.1% | Dec 4, 2023 | In keyguardGoingAway of ActivityTaskManagerService.java, there is a possible lock screen bypass due to a missing permiss... |
| CVE-2023-40091 | HIGH | 7.8 | 0.1% | Dec 4, 2023 | In onTransact of IncidentService.cpp, there is a possible out of bounds write due to memory corruption. This could lead ... |
| CVE-2023-40089 | HIGH | 7.8 | 0.1% | Dec 4, 2023 | In getCredentialManagerPolicy of DevicePolicyManagerService.java, there is a possible method for users to select credent... |
| CVE-2023-40088 | HIGH | 8.8 | 1.7% | Dec 4, 2023 | In callback_thread_event of com_android_bluetooth_btservice_AdapterService.cpp, there is a possible memory corruption du... |
| CVE-2023-40087 | HIGH | 8.8 | 0.2% | Dec 4, 2023 | In transcodeQ*ToFloat of btif_avrcp_audio_track.cc, there is a possible out of bounds write due to a missing bounds chec... |
| CVE-2023-40084 | HIGH | 7.8 | 0.2% | Dec 4, 2023 | In run of MDnsSdListener.cpp, there is a possible memory corruption due to a use after free. This could lead to local es... |
| CVE-2023-40080 | HIGH | 7.8 | 0.1% | Dec 4, 2023 | In multiple functions of btm_ble_gap.cc, there is a possible out of bounds write due to a logic error in the code. This ... |
| CVE-2023-40079 | HIGH | 7.8 | 0.1% | Dec 4, 2023 | In injectSendIntentSender of ShortcutService.java, there is a possible background activity launch due to a permissions b... |
| CVE-2023-40077 | HIGH | 8.1 | 8.4% | Dec 4, 2023 | In multiple functions of MetaDataBase.cpp, there is a possible UAF write due to a race condition. This could lead to rem... |
| CVE-2023-24048 | HIGH | 8.8 | 0.3% | Dec 4, 2023 | Cross Site Request Forgery (CSRF) vulnerability in Connectize AC21000 G6 641.139.1.1256 allows attackers to gain control... |
| CVE-2023-21227 | HIGH | 7.5 | 0.3% | Dec 4, 2023 | In HTBLogKM of htbserver.c, there is a possible information disclosure due to log information disclosure. This could lea... |
| CVE-2023-6063 | HIGH | 7.5 | 73.7% | Dec 4, 2023 | The WP Fastest Cache WordPress plugin before 1.2.2 does not properly sanitise and escape a parameter before using it in ... |
| CVE-2023-5953 | HIGH | 8.8 | 0.5% | Dec 4, 2023 | The Welcart e-Commerce WordPress plugin before 2.9.5 does not validate files to be uploaded, as well as does not have au... |
| CVE-2023-5762 | HIGH | 8.8 | 2.0% | Dec 4, 2023 | The Filr WordPress plugin before 1.2.3.6 is vulnerable from an RCE (Remote Code Execution) vulnerability, which allows t... |
| CVE-2023-5108 | HIGH | 7.2 | 1.0% | Dec 4, 2023 | The Easy Newsletter Signups WordPress plugin through 1.0.4 does not properly sanitise and escape a parameter before usin... |
| CVE-2023-47633 | HIGH | 7.5 | 1.3% | Dec 4, 2023 | Traefik is an open source HTTP reverse proxy and load balancer. The traefik docker container uses 100% CPU when it serve... |
| CVE-2023-48966 | HIGH | 8.8 | 1.1% | Dec 4, 2023 | An arbitrary file upload vulnerability in the component /admin/api.upload/file of ThinkAdmin v6.1.53 allows attackers to... |
| CVE-2023-48965 | HIGH | 8.8 | 0.9% | Dec 4, 2023 | An issue in the component /admin/api.plugs/script of ThinkAdmin v6.1.53 allows attackers to getshell via providing a cra... |
| CVE-2023-41613 | HIGH | 7.8 | 0.5% | Dec 4, 2023 | EzViz Studio v2.2.0 is vulnerable to DLL hijacking. |
| CVE-2023-48863 | HIGH | 7.5 | 0.9% | Dec 4, 2023 | SEMCMS 3.9 is vulnerable to SQL Injection. Due to the lack of security checks on the input of the application, the attac... |
| CVE-2023-32804 | HIGH | 7.8 | 0.2% | Dec 4, 2023 | Out-of-bounds Write vulnerability in Arm Ltd Midgard GPU Userspace Driver, Arm Ltd Bifrost GPU Userspace Driver, Arm Ltd... |
| CVE-2023-6481 | HIGH | 7.5 | 0.7% | Dec 4, 2023 | A serialization vulnerability in logback receiver component part of logback version 1.4.13, 1.3.13 and 1.2.12 allows an... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now