2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-21138 | HIGH | 7.8 | 0.1% | Jun 15, 2023 | In onNullBinding of CallRedirectionProcessor.java, there is a possible long lived connection due to improper input valid... |
| CVE-2023-21135 | HIGH | 7.8 | 0.1% | Jun 15, 2023 | In onCreate of NotificationAccessSettings.java, there is a possible failure to persist notifications settings due to imp... |
| CVE-2023-21131 | HIGH | 7.8 | 0.1% | Jun 15, 2023 | In checkKeyIntentParceledCorrectly() of ActivityManagerService.java, there is a possible bypass of Parcel Mismatch mitig... |
| CVE-2023-21129 | HIGH | 7.8 | 0.1% | Jun 15, 2023 | In getFullScreenIntentDecision of NotificationInterruptStateProviderImpl.java, there is a possible activity launch while... |
| CVE-2023-21128 | HIGH | 7.8 | 0.1% | Jun 15, 2023 | In various functions of AppStandbyController.java, there is a possible way to break manageability scenarios due to a log... |
| CVE-2023-21127 | HIGH | 8.8 | 0.5% | Jun 15, 2023 | In readSampleData of NuMediaExtractor.cpp, there is a possible out of bounds write due to uninitialized data. This could... |
| CVE-2023-21126 | HIGH | 7.8 | 0.1% | Jun 15, 2023 | In bindOutputSwitcherAndBroadcastButton of MediaControlPanel.java, there is a possible launch arbitrary activity under S... |
| CVE-2023-21124 | HIGH | 7.8 | 0.1% | Jun 15, 2023 | In run of multiple files, there is a possible escalation of privilege due to unsafe deserialization. This could lead to ... |
| CVE-2023-21123 | HIGH | 7.8 | 0.1% | Jun 15, 2023 | In multiple functions of multiple files, there is a possible way to bypass the DISALLOW_DEBUGGING_FEATURES restriction f... |
| CVE-2023-21122 | HIGH | 7.8 | 0.1% | Jun 15, 2023 | In various functions of various files, there is a possible way to bypass the DISALLOW_DEBUGGING_FEATURES restriction for... |
| CVE-2023-21121 | HIGH | 7.8 | 0.1% | Jun 15, 2023 | In onResume of AppManagementFragment.java, there is a possible way to prevent users from forgetting a previously connect... |
| CVE-2023-21120 | HIGH | 7.8 | 0.1% | Jun 15, 2023 | In multiple functions of cdm_engine.cpp, there is a possible use-after-free due to improper locking. This could lead to ... |
| CVE-2023-21115 | HIGH | 8.8 | 0.1% | Jun 15, 2023 | In btm_sec_encrypt_change of btm_sec.cc, there is a possible way to downgrade the link key type due to improperly used c... |
| CVE-2023-21108 | HIGH | 8.8 | 0.2% | Jun 15, 2023 | In sdpu_build_uuid_seq of sdp_discovery.cc, there is a possible out of bounds write due to a use after free. This could ... |
| CVE-2023-21101 | HIGH | 7 | 0.1% | Jun 15, 2023 | In multiple functions of WVDrmPlugin.cpp, there is a possible use after free due to a race condition. This could lead to... |
| CVE-2023-34455 | HIGH | 7.5 | 1.8% | Jun 15, 2023 | snappy-java is a fast compressor/decompressor for Java. Due to use of an unchecked chunk length, an unrecoverable fatal ... |
| CVE-2023-34454 | HIGH | 7.5 | 1.5% | Jun 15, 2023 | snappy-java is a fast compressor/decompressor for Java. Due to unchecked multiplications, an integer overflow may occur ... |
| CVE-2023-34453 | HIGH | 7.5 | 1.7% | Jun 15, 2023 | snappy-java is a fast compressor/decompressor for Java. Due to unchecked multiplications, an integer overflow may occur ... |
| CVE-2023-27634 | HIGH | 8.8 | 0.3% | Jun 15, 2023 | Cross-Site Request Forgery (CSRF) vulnerability allows arbitrary file upload in Shingo Intrepidity plugin <= 1.5.1 versi... |
| CVE-2023-25055 | HIGH | 8.8 | 0.3% | Jun 15, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Amit Agarwal Google XML Sitemap for Videos plugin <= 2.6.1 versions. |
| CVE-2023-3276 | HIGH | 7.5 | 0.7% | Jun 15, 2023 | A vulnerability, which was classified as problematic, has been found in Dromara HuTool up to 5.8.19. Affected by this is... |
| CVE-2023-3274 | HIGH | 8.8 | 0.9% | Jun 15, 2023 | A vulnerability classified as critical has been found in code-projects Supplier Management System 1.0. Affected is an un... |
| CVE-2023-25450 | HIGH | 8.8 | 0.3% | Jun 15, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in GiveWP GiveWP – Donation Plugin and Fundraising Platform plugin <= 2.... |
| CVE-2023-23802 | HIGH | 8.8 | 0.3% | Jun 15, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in HasThemes HT Easy GA4 ( Google Analytics 4 ) plugin <= 1.0.6 versions... |
| CVE-2023-25449 | HIGH | 8.8 | 0.3% | Jun 15, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Oliver Seidel, Bastian Germann cformsII plugin <= 15.0.4 versions. |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now