2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-37202 | HIGH | 8.8 | 0.7% | Jul 5, 2023 | Cross-compartment wrappers wrapping a scripted proxy could have caused objects from other compartments to be stored in t... |
| CVE-2023-37201 | HIGH | 8.8 | 0.7% | Jul 5, 2023 | An attacker could have triggered a use-after-free condition when creating a WebRTC connection over HTTPS. This vulnerabi... |
| CVE-2023-31999 | HIGH | 8.8 | 0.6% | Jul 4, 2023 | All versions of @fastify/oauth2 used a statically generated state parameter at startup time and were used across all req... |
| CVE-2023-3503 | HIGH | 8.8 | 0.8% | Jul 4, 2023 | A vulnerability has been found in SourceCodester Shopping Website 1.0 and classified as critical. Affected by this vulne... |
| CVE-2023-3502 | HIGH | 7.5 | 0.5% | Jul 4, 2023 | A vulnerability, which was classified as critical, was found in SourceCodester Shopping Website 1.0. Affected is an unkn... |
| CVE-2023-2974 | HIGH | 8.1 | 0.7% | Jul 4, 2023 | A vulnerability was found in quarkus-core. This vulnerability occurs because the TLS protocol configured with quarkus.ht... |
| CVE-2023-3133 | HIGH | 7.5 | 1.0% | Jul 4, 2023 | The Tutor LMS WordPress plugin before 2.2.1 does not implement adequate permission checks for REST API endpoints, allowi... |
| CVE-2023-1273 | HIGH | 8.8 | 1.7% | Jul 4, 2023 | The ND Shortcodes WordPress plugin before 7.0 does not validate some shortcode attributes before using them to generate ... |
| CVE-2023-28542 | HIGH | 7.8 | 0.1% | Jul 4, 2023 | Memory Corruption in WLAN HOST while fetching TX status information. |
| CVE-2023-28541 | HIGH | 7.8 | 0.1% | Jul 4, 2023 | Memory Corruption in Data Modem while processing DMA buffer release event about CFR data. |
| CVE-2023-24854 | HIGH | 7.8 | 0.1% | Jul 4, 2023 | Memory Corruption in WLAN HOST while parsing QMI WLAN Firmware response message. |
| CVE-2023-24851 | HIGH | 7.8 | 0.1% | Jul 4, 2023 | Memory Corruption in WLAN HOST while parsing QMI response message from firmware. |
| CVE-2023-22667 | HIGH | 7.8 | 0.1% | Jul 4, 2023 | Memory Corruption in Audio while allocating the ion buffer during the music playback. |
| CVE-2023-22387 | HIGH | 7.8 | 0.1% | Jul 4, 2023 | Arbitrary memory overwrite when VM gets compromised in TX write leading to Memory Corruption. |
| CVE-2023-22386 | HIGH | 7.8 | 0.1% | Jul 4, 2023 | Memory Corruption in WLAN HOST while processing WLAN FW request to allocate memory. |
| CVE-2023-21672 | HIGH | 7.8 | 0.1% | Jul 4, 2023 | Memory corruption in Audio while running concurrent tunnel playback or during concurrent audio tunnel recording sessions... |
| CVE-2023-21641 | HIGH | 7.8 | 0.1% | Jul 4, 2023 | An app with non-privileged access can change global system brightness and cause undesired system behavior. |
| CVE-2023-21640 | HIGH | 7.8 | 0.1% | Jul 4, 2023 | Memory corruption in Linux when the file upload API is called with parameters having large buffer. |
| CVE-2023-21639 | HIGH | 7.8 | 0.1% | Jul 4, 2023 | Memory corruption in Audio while processing sva_model_serializer using memory size passed by HIDL client. |
| CVE-2023-21638 | HIGH | 7.8 | 0.1% | Jul 4, 2023 | Memory corruption in Video while calling APIs with different instance ID than the one received in initialization. |
| CVE-2023-21637 | HIGH | 7.8 | 0.1% | Jul 4, 2023 | Memory corruption in Linux while calling system configuration APIs. |
| CVE-2023-21635 | HIGH | 7.8 | 0.1% | Jul 4, 2023 | Memory Corruption in Data Network Stack & Connectivity when sim gets detected on telephony. |
| CVE-2023-21633 | HIGH | 7.8 | 0.1% | Jul 4, 2023 | Memory Corruption in Linux while processing QcRilRequestImsRegisterMultiIdentityMessage request. |
| CVE-2023-20773 | HIGH | 7.8 | 0.1% | Jul 4, 2023 | In vow, there is a possible escalation of privilege due to a missing permission check. This could lead to local escalati... |
| CVE-2023-20693 | HIGH | 7.5 | 0.4% | Jul 4, 2023 | In wlan firmware, there is possible system crash due to an uncaught exception. This could lead to remote denial of servi... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now