2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-52362HIGH7.5Permission management vulnerability in the lock screen module.Successful exploitation of this vulnerability may affect a...
CVE-2023-52361HIGH7.5The VerifiedBoot module has a vulnerability that may cause authentication errors.Successful exploitation of this vulnera...
CVE-2023-52360HIGH7.5Logic vulnerabilities in the baseband.Successful exploitation of this vulnerability may affect service integrity.
CVE-2023-52358MEDIUM6.2Vulnerability of configuration defects in some APIs of the audio module.Successful exploitation of this vulnerability ma...
CVE-2023-52357HIGH7.5Vulnerability of serialization/deserialization mismatch in the vibration framework.Successful exploitation of this vulne...
CVE-2023-52097HIGH7.5Vulnerability of foreground service restrictions being bypassed in the NMS module.Successful exploitation of this vulner...
CVE-2023-50951MEDIUM4.3IBM QRadar Suite 1.10.12.0 through 1.10.17.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 in some circumsta...
CVE-2023-31728HIGH7Teltonika RUT240 devices with firmware before 07.04.2, when bridge mode is used, sometimes make SSH and HTTP services av...
CVE-2023-21833MEDIUM4.3Vulnerability in the Oracle ZFS Storage Appliance Kit product of Oracle Systems (component: Object Store). The support...
CVE-2023-45918Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2023-40085MEDIUM5.5In convertSubgraphFromHAL of ShimConverter.cpp, there is a possible out of bounds read due to a missing bounds check. Th...
CVE-2023-21165HIGH7.8In DevmemIntUnmapPMR of devicemem_server.c, there is a possible arbitrary code execution due to a use after free. This c...
CVE-2023-45860MEDIUM6.5In Hazelcast Platform through 5.3.4, a security issue exists within the SQL mapping for the CSV File Source connector. T...
CVE-2023-51931HIGH7.5An issue in alanclarke URLite v.3.1.0 allows an attacker to cause a denial of service (DoS) via a crafted payload to the...
CVE-2023-49508MEDIUM6.5Directory Traversal vulnerability in YetiForceCompany YetiForceCRM versions 6.4.0 and before allows a remote authenticat...
CVE-2023-6451HIGH7.5Publicly known cryptographic machine key in AlayaCare's Procura Portal before 9.0.1.2 allows attackers to forge their ow...
CVE-2023-40122LOW3.3In applyCustomDescription of SaveUi.java, there is a possible way to view other user's images due to a confused deputy. ...
CVE-2023-40093MEDIUM5.5In multiple files, there is a possible way that trimmed content could be included in PDF output due to a logic error in ...
CVE-2023-40124MEDIUM5.5In multiple locations, there is a possible cross-user read due to a confused deputy. This could lead to local informatio...
CVE-2023-40115HIGH7.8In readLogs of StatsService.cpp, there is a possible memory corruption due to a use after free. This could lead to local...
CVE-2023-40114HIGH7.8In multiple functions of MtpFfsHandle.cpp , there is a possible out of bounds write due to a use after free. This could ...
CVE-2023-40113MEDIUM5.5In multiple locations, there is a possible way for apps to access cross-user message data due to a missing permission ch...
CVE-2023-40112MEDIUM5.5In ippSetValueTag of ipp.c, there is a possible out of bounds read due to a missing bounds check. This could lead to loc...
CVE-2023-40111HIGH7.8In setMediaButtonReceiver of MediaSessionRecord.java, there is a possible way to send a pending intent on behalf of syst...
CVE-2023-40110HIGH7.8In multiple functions of MtpPacket.cpp, there is a possible out of bounds write due to a heap buffer overflow. This coul...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now