2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-23985MEDIUM5.3Missing Authorization vulnerability in Quiz Maker team Quiz Maker.This issue affects Quiz Maker: from n/a through 6.3.9....
CVE-2023-23976HIGH7.5Incorrect Default Permissions vulnerability in Metagauss RegistrationMagic allows Accessing Functionality Not Properly C...
CVE-2023-7253MEDIUM6.1The Import WP WordPress plugin before 2.13.1 does not prevent users with the administrator role from pinging conducting...
CVE-2023-48939Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2023-48938Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2023-47357Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2023-47731MEDIUM5.4IBM QRadar Suite Software 1.10.12.0 through 1.10.19.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 is vulne...
CVE-2023-48184LOW3.9QuickJS before 7414e5f has a quickjs.h JS_FreeValueRT use-after-free because of incorrect garbage collection of async fu...
CVE-2023-48183HIGH7.5QuickJS before c4cdd61 has a build_for_in_iterator NULL pointer dereference because of an erroneous lexical scope of "th...
CVE-2023-6833MEDIUM4.4Insertion of Sensitive Information into Log File vulnerability in Hitachi Ops Center Administrator allows local users to...
CVE-2023-38302MEDIUM4.3A certain software build for the Sharp Rouvo V device (SHARP/VZW_STTM21VAPP/STTM21VAPP:12/SP1A.210812.016/1KN0_0_530:use...
CVE-2023-38301LOW3.4An issue was discovered in a third-party component related to vendor.gsm.serial, shipped on devices from multiple device...
CVE-2023-38300MEDIUM6.2A certain software build for the Orbic Maui device (Orbic/RC545L/RC545L:10/ORB545L_V1.4.2_BVZPP/230106:user/release-keys...
CVE-2023-38299MEDIUM5.5Various software builds for the AT&T Calypso, Nokia C100, Nokia C200, and BLU View 3 devices leak the device IMEI to a s...
CVE-2023-38298HIGH8.8Various software builds for the following TCL devices (30Z, A3X, 20XE, 10L) leak the device IMEI to a system property th...
CVE-2023-38297HIGH8.4An issue was discovered in a third-party com.factory.mmigroup component, shipped on devices from multiple device manufac...
CVE-2023-38296HIGH8Various software builds for the following TCL 30Z and TCL A3X devices leak the ICCID to a system property that can be ac...
CVE-2023-38295HIGH7.8Certain software builds for the TCL 30Z and TCL 10 Android devices contain a vulnerable, pre-installed app that relies o...
CVE-2023-38294MEDIUM6.1Certain software builds for the Itel Vision 3 Turbo Android device contain a vulnerable pre-installed app with a package...
CVE-2023-38293HIGH7.3Certain software builds for the Nokia C200 and Nokia C100 Android devices contain a vulnerable, pre-installed app with a...
CVE-2023-38292HIGH8.7Certain software builds for the TCL 20XE Android device contain a vulnerable, pre-installed app with a package name of c...
CVE-2023-38291HIGH7.1An issue was discovered in a third-party component related to ro.boot.wifimacaddr, shipped on devices from multiple devi...
CVE-2023-38290HIGH7.8Certain software builds for the BLU View 2 and Sharp Rouvo V Android devices contain a vulnerable pre-installed app with...
CVE-2023-7252MEDIUM5.3The Tickera WordPress plugin before 3.5.2.5 does not prevent users from leaking other users' tickets.
CVE-2023-47435CRITICAL9.8An issue in the verifyPassword function of hexo-theme-matery v2.0.0 allows attackers to bypass authentication and access...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now