2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-21381 | HIGH | 7.8 | 0.1% | Oct 30, 2023 | In Media Resource Manager, there is a possible local arbitrary code execution due to use after free. This could lead to ... |
| CVE-2023-21378 | HIGH | 7.8 | 0.1% | Oct 30, 2023 | In Telecomm, there is a possible way to silence the ring for calls of secondary users due to a missing permission check.... |
| CVE-2023-21375 | HIGH | 7.8 | 0.1% | Oct 30, 2023 | In Sysproxy, there is a possible out of bounds write due to an integer underflow. This could lead to local escalation of... |
| CVE-2023-21374 | HIGH | 7.8 | 0.1% | Oct 30, 2023 | In System UI, there is a possible factory reset protection bypass due to a logic error in the code. This could lead to l... |
| CVE-2023-21373 | HIGH | 7.8 | 0.1% | Oct 30, 2023 | In Telephony, there is a possible way for a guest user to change the preferred SIM due to a missing permission check. Th... |
| CVE-2023-21372 | HIGH | 7.8 | 0.1% | Oct 30, 2023 | In libdexfile, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation... |
| CVE-2023-21361 | HIGH | 8.8 | 0.1% | Oct 30, 2023 | In Bluetooth, there is a possibility of code-execution due to a use after free. This could lead to paired device escalat... |
| CVE-2023-21358 | HIGH | 7.8 | 0.1% | Oct 30, 2023 | In UWB Google, there is a possible way for a malicious app to masquerade as system app com.android.uwb.resources due to ... |
| CVE-2023-21356 | HIGH | 8.8 | 0.1% | Oct 30, 2023 | In Bluetooth, there is a possible out of bounds write due to a missing bounds check. This could lead to remote (proximal... |
| CVE-2023-21355 | HIGH | 7.8 | 0.1% | Oct 30, 2023 | In libaudioclient, there is a possible out of bounds write due to a use after free. This could lead to local escalation ... |
| CVE-2023-21353 | HIGH | 7.5 | 0.4% | Oct 30, 2023 | In NFA, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disc... |
| CVE-2023-21351 | HIGH | 7.8 | 0.1% | Oct 30, 2023 | In multiple locations, there is a possible background activity launch due to a logic error in the code. This could lead ... |
| CVE-2023-21347 | HIGH | 7.5 | 0.4% | Oct 30, 2023 | In Bluetooth, there is a possible out of bounds read due to a missing bounds check. This could lead to remote informatio... |
| CVE-2023-21343 | HIGH | 7.8 | 0.1% | Oct 30, 2023 | In ActivityStarter, there is a possible background activity launch due to an unsafe PendingIntent. This could lead to lo... |
| CVE-2023-21342 | HIGH | 7.8 | 0.1% | Oct 30, 2023 | In RemoteSpeechRecognitionService of RemoteSpeechRecognitionService.java, there is a possible way to launch an activity ... |
| CVE-2023-21341 | HIGH | 7.8 | 0.1% | Oct 30, 2023 | In Permission Manager, there is a possible way to bypass required permissions due to a missing permission check. This co... |
| CVE-2023-21339 | HIGH | 7.5 | 0.4% | Oct 30, 2023 | In Minikin, there is a possible way to trigger ANR by showing a malicious message due to resource exhaustion. This could... |
| CVE-2023-21337 | HIGH | 7.8 | 0.1% | Oct 30, 2023 | In InputMethod, there is a possible way to determine whether an app is installed, without query permissions, due to side... |
| CVE-2023-21328 | HIGH | 7.8 | 0.1% | Oct 30, 2023 | In Package Installer, there is a possible way to determine whether an app is installed, without query permissions, due t... |
| CVE-2023-21324 | HIGH | 7.8 | 0.1% | Oct 30, 2023 | In Package Installer, there is a possible way to determine whether an app is installed, without query permissions, due t... |
| CVE-2023-21313 | HIGH | 7.8 | 0.1% | Oct 30, 2023 | In Core, there is a possible way to forward calls without user knowledge due to a missing permission check. This could l... |
| CVE-2023-21298 | HIGH | 7.8 | 0.1% | Oct 30, 2023 | In Slice, there is a possible disclosure of installed applications due to side channel information disclosure. This coul... |
| CVE-2023-5583 | HIGH | 8.8 | 1.0% | Oct 30, 2023 | The WP Simple Galleries plugin for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 1.3... |
| CVE-2023-5315 | HIGH | 8.8 | 0.6% | Oct 30, 2023 | The Google Maps made Simple plugin for WordPress is vulnerable to SQL Injection via the plugin's shortcode in versions u... |
| CVE-2023-5250 | HIGH | 8.8 | 1.1% | Oct 30, 2023 | The Grid Plus plugin for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.3.3 via a s... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now