2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-21309 | MEDIUM | 5.5 | 0.1% | Oct 30, 2023 | In libcore, there is a possible out of bounds read due to a missing bounds check. This could lead to local information d... |
| CVE-2023-21308 | MEDIUM | 5.5 | 0.1% | Oct 30, 2023 | In Composer, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation o... |
| CVE-2023-21307 | MEDIUM | 5 | 0.1% | Oct 30, 2023 | In Bluetooth, there is a possible way for a paired Bluetooth device to access a long term identifier for an Android devi... |
| CVE-2023-21306 | MEDIUM | 5.5 | 0.1% | Oct 30, 2023 | In ContentService, there is a possible way to read installed sync content providers due to side channel information disc... |
| CVE-2023-21305 | MEDIUM | 5.5 | 0.1% | Oct 30, 2023 | In Content, there is a possible way to determine whether an app is installed, without query permissions, due to side cha... |
| CVE-2023-21304 | MEDIUM | 5.5 | 0.1% | Oct 30, 2023 | In Content Service, there is a possible way to determine whether an app is installed, without query permissions, due to ... |
| CVE-2023-21303 | MEDIUM | 5.5 | 0.1% | Oct 30, 2023 | In Content, here is a possible way to determine whether an app is installed, without query permissions, due to side chan... |
| CVE-2023-21302 | MEDIUM | 5.5 | 0.1% | Oct 30, 2023 | In Package Manager, there is a possible way to determine whether an app is installed, without query permissions, due to ... |
| CVE-2023-21301 | MEDIUM | 5.5 | 0.1% | Oct 30, 2023 | In ActivityManagerService, there is a possible way to determine whether an app is installed, without query permissions, ... |
| CVE-2023-21300 | MEDIUM | 5.5 | 0.1% | Oct 30, 2023 | In PackageManager, there is a possible way to determine whether an app is installed, without query permissions, due to s... |
| CVE-2023-21299 | MEDIUM | 5.5 | 0.1% | Oct 30, 2023 | In Package Manager, there is a possible way to determine whether an app is installed, without query permissions, due to ... |
| CVE-2023-21297 | MEDIUM | 4.4 | 0.1% | Oct 30, 2023 | In SEPolicy, there is a possible way to access the factory MAC address due to a permissions bypass. This could lead to l... |
| CVE-2023-21296 | MEDIUM | 5.5 | 0.1% | Oct 30, 2023 | In Permission, there is a possible way to determine whether an app is installed, without query permissions, due to side ... |
| CVE-2023-21295 | MEDIUM | 5.5 | 0.1% | Oct 30, 2023 | In SliceManagerService, there is a possible way to check if a content provider is installed due to a missing null check.... |
| CVE-2023-21294 | MEDIUM | 5.5 | 0.1% | Oct 30, 2023 | In Slice, there is a possible disclosure of installed packages due to a missing permission check. This could lead to loc... |
| CVE-2023-21293 | MEDIUM | 5.5 | 0.1% | Oct 30, 2023 | In PackageManagerNative, there is a possible way to determine whether an app is installed, without query permissions, du... |
| CVE-2023-4964 | MEDIUM | 6.1 | 0.3% | Oct 30, 2023 | Potential open redirect vulnerability in opentext Service Management Automation X (SMAX) versions 2020.05, 2020.08, 202... |
| CVE-2023-44323 | MEDIUM | 5.5 | 1.4% | Oct 30, 2023 | Adobe Acrobat for Edge version 118.0.2088.46 (and earlier) is affected by a Use After Free vulnerability. An unauthentic... |
| CVE-2023-5666 | MEDIUM | 5.4 | 0.5% | Oct 30, 2023 | The Accordion plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'tcpaccordion' shortcod... |
| CVE-2023-5566 | MEDIUM | 5.4 | 0.6% | Oct 30, 2023 | The Simple Shortcodes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via shortcodes in versions up to... |
| CVE-2023-5565 | MEDIUM | 5.4 | 0.4% | Oct 30, 2023 | The Shortcode Menu plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'shortmenu' shortcode in versio... |
| CVE-2023-5362 | MEDIUM | 5.4 | 0.5% | Oct 30, 2023 | The Carousel, Recent Post Slider and Banner Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via... |
| CVE-2023-5335 | MEDIUM | 5.4 | 0.5% | Oct 30, 2023 | The Buzzsprout Podcasting plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'buzzsprout' shortcode i... |
| CVE-2023-5252 | MEDIUM | 5.4 | 0.4% | Oct 30, 2023 | The FareHarbor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via shortcodes in versions up to, and i... |
| CVE-2023-5251 | MEDIUM | 5.4 | 0.5% | Oct 30, 2023 | The Grid Plus plugin for WordPress is vulnerable to unauthorized modification of data and loss of data due to a missing ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now