2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-21381HIGH7.8In Media Resource Manager, there is a possible local arbitrary code execution due to use after free. This could lead to ...
CVE-2023-21378HIGH7.8In Telecomm, there is a possible way to silence the ring for calls of secondary users due to a missing permission check....
CVE-2023-21375HIGH7.8In Sysproxy, there is a possible out of bounds write due to an integer underflow. This could lead to local escalation of...
CVE-2023-21374HIGH7.8In System UI, there is a possible factory reset protection bypass due to a logic error in the code. This could lead to l...
CVE-2023-21373HIGH7.8In Telephony, there is a possible way for a guest user to change the preferred SIM due to a missing permission check. Th...
CVE-2023-21372HIGH7.8In libdexfile, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation...
CVE-2023-21361HIGH8.8In Bluetooth, there is a possibility of code-execution due to a use after free. This could lead to paired device escalat...
CVE-2023-21358HIGH7.8In UWB Google, there is a possible way for a malicious app to masquerade as system app com.android.uwb.resources due to ...
CVE-2023-21356HIGH8.8In Bluetooth, there is a possible out of bounds write due to a missing bounds check. This could lead to remote (proximal...
CVE-2023-21355HIGH7.8In libaudioclient, there is a possible out of bounds write due to a use after free. This could lead to local escalation ...
CVE-2023-21353HIGH7.5In NFA, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disc...
CVE-2023-21351HIGH7.8In multiple locations, there is a possible background activity launch due to a logic error in the code. This could lead ...
CVE-2023-21347HIGH7.5In Bluetooth, there is a possible out of bounds read due to a missing bounds check. This could lead to remote informatio...
CVE-2023-21343HIGH7.8In ActivityStarter, there is a possible background activity launch due to an unsafe PendingIntent. This could lead to lo...
CVE-2023-21342HIGH7.8In RemoteSpeechRecognitionService of RemoteSpeechRecognitionService.java, there is a possible way to launch an activity ...
CVE-2023-21341HIGH7.8In Permission Manager, there is a possible way to bypass required permissions due to a missing permission check. This co...
CVE-2023-21339HIGH7.5In Minikin, there is a possible way to trigger ANR by showing a malicious message due to resource exhaustion. This could...
CVE-2023-21337HIGH7.8In InputMethod, there is a possible way to determine whether an app is installed, without query permissions, due to side...
CVE-2023-21328HIGH7.8In Package Installer, there is a possible way to determine whether an app is installed, without query permissions, due t...
CVE-2023-21324HIGH7.8In Package Installer, there is a possible way to determine whether an app is installed, without query permissions, due t...
CVE-2023-21313HIGH7.8In Core, there is a possible way to forward calls without user knowledge due to a missing permission check. This could l...
CVE-2023-21298HIGH7.8In Slice, there is a possible disclosure of installed applications due to side channel information disclosure. This coul...
CVE-2023-5583HIGH8.8The WP Simple Galleries plugin for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 1.3...
CVE-2023-5315HIGH8.8The Google Maps made Simple plugin for WordPress is vulnerable to SQL Injection via the plugin's shortcode in versions u...
CVE-2023-5250HIGH8.8The Grid Plus plugin for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.3.3 via a s...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now