2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-30659 | HIGH | 7.8 | 0.2% | Jul 6, 2023 | Improper input validation vulnerability in Transaction prior to SMR Jul-2023 Release 1 allows local attackers to launch ... |
| CVE-2023-30658 | HIGH | 7.8 | 0.2% | Jul 6, 2023 | Improper input validation vulnerability in DataProfile prior to SMR Jul-2023 Release 1 allows local attackers to launch ... |
| CVE-2023-30657 | HIGH | 7.8 | 0.2% | Jul 6, 2023 | Improper input validation vulnerability in EnhancedAttestationResult prior to SMR Jul-2023 Release 1 allows local attack... |
| CVE-2023-30656 | HIGH | 7.8 | 0.2% | Jul 6, 2023 | Improper input validation vulnerability in LSOItemData prior to SMR Jul-2023 Release 1 allows attackers to launch certai... |
| CVE-2023-30655 | HIGH | 7.8 | 0.2% | Jul 6, 2023 | Improper input validation vulnerability in SCEPProfile prior to SMR Jul-2023 Release 1 allows local attackers to launch ... |
| CVE-2023-30653 | HIGH | 7.8 | 0.2% | Jul 6, 2023 | Out of bounds read and write in enableTspDevice of sysinput HAL service prior to SMR Jul-2023 Release 1 allows local att... |
| CVE-2023-30652 | HIGH | 7.8 | 0.2% | Jul 6, 2023 | Out of bounds read and write in callrunTspCmdNoRead of sysinput HAL service prior to SMR Jul-2023 Release 1 allows local... |
| CVE-2023-30651 | HIGH | 7.8 | 0.2% | Jul 6, 2023 | Out of bounds read and write in callgetTspsysfs of sysinput HAL service prior to SMR Jul-2023 Release 1 allows local att... |
| CVE-2023-30650 | HIGH | 7.8 | 0.2% | Jul 6, 2023 | Out of bounds read and write in callrunTspCmd of sysinput HAL service prior to SMR Jul-2023 Release 1 allows local attac... |
| CVE-2023-30649 | HIGH | 7.8 | 0.2% | Jul 6, 2023 | Heap out of bound write vulnerability in RmtUimNeedApdu of RILD prior to SMR Jul-2023 Release 1 allows attackers to exec... |
| CVE-2023-30647 | HIGH | 7.8 | 0.2% | Jul 6, 2023 | Heap out of bound write vulnerability in IpcRxUsimPhoneBookCapa of RILD prior to SMR Jul-2023 Release 1 allows attackers... |
| CVE-2023-30646 | HIGH | 7.8 | 0.2% | Jul 6, 2023 | Heap out of bound write vulnerability in BroadcastSmsConfig of RILD prior to SMR Jul-2023 Release 1 allows attackers to ... |
| CVE-2023-30645 | HIGH | 7.8 | 0.2% | Jul 6, 2023 | Heap out of bound write vulnerability in IpcRxIncomingCBMsg of RILD prior to SMR Jul-2023 Release 1 allows attackers to ... |
| CVE-2023-30644 | HIGH | 7.8 | 0.2% | Jul 6, 2023 | Stack out of bound write vulnerability in CdmaSmsParser of RILD prior to SMR Jul-2023 Release 1 allows attackers to exec... |
| CVE-2023-30643 | HIGH | 7.1 | 0.2% | Jul 6, 2023 | Missing authentication vulnerability in Galaxy Themes Service prior to SMR Jul-2023 Release 1 allows local attackers to ... |
| CVE-2023-24256 | HIGH | 7.8 | 0.3% | Jul 6, 2023 | An issue in the com.nextev.datastatistic component of NIO EC6 Aspen before v3.3.0 allows attackers to escalate privilege... |
| CVE-2023-36827 | HIGH | 7.5 | 1.1% | Jul 5, 2023 | Fides is an open-source privacy engineering platform for managing the fulfillment of data privacy requests in a runtime ... |
| CVE-2023-36822 | HIGH | 8.1 | 1.0% | Jul 5, 2023 | Uptime Kuma, a self-hosted monitoring tool, has a path traversal vulnerability in versions prior to 1.22.1. Uptime Kuma ... |
| CVE-2023-36821 | HIGH | 8.8 | 1.7% | Jul 5, 2023 | Uptime Kuma, a self-hosted monitoring tool, allows an authenticated attacker to install a maliciously crafted plugin in ... |
| CVE-2023-36813 | HIGH | 8.8 | 0.8% | Jul 5, 2023 | Kanboard is project management software that focuses on the Kanban methodology. In versions prior to 1.2.31authenticated... |
| CVE-2023-36458 | HIGH | 8.8 | 2.0% | Jul 5, 2023 | 1Panel is an open source Linux server operation and maintenance management panel. Prior to version 1.3.6, an authenticat... |
| CVE-2023-36457 | HIGH | 8.8 | 2.0% | Jul 5, 2023 | 1Panel is an open source Linux server operation and maintenance management panel. Prior to version 1.3.6, an authenticat... |
| CVE-2023-35940 | HIGH | 7.5 | 0.6% | Jul 5, 2023 | GLPI is a free asset and IT management software package. Starting in version 9.5.0 and prior to version 10.0.8, an incor... |
| CVE-2023-35939 | HIGH | 8.1 | 0.5% | Jul 5, 2023 | GLPI is a free asset and IT management software package. Starting in version 9.5.0 and prior to version 10.0.8, an incor... |
| CVE-2023-36624 | HIGH | 7.8 | 0.3% | Jul 5, 2023 | Loxone Miniserver Go Gen.2 through 14.0.3.28 allows an authenticated operating system user to escalate privileges via th... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now