2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-21138HIGH7.8In onNullBinding of CallRedirectionProcessor.java, there is a possible long lived connection due to improper input valid...
CVE-2023-21135HIGH7.8In onCreate of NotificationAccessSettings.java, there is a possible failure to persist notifications settings due to imp...
CVE-2023-21131HIGH7.8In checkKeyIntentParceledCorrectly() of ActivityManagerService.java, there is a possible bypass of Parcel Mismatch mitig...
CVE-2023-21129HIGH7.8In getFullScreenIntentDecision of NotificationInterruptStateProviderImpl.java, there is a possible activity launch while...
CVE-2023-21128HIGH7.8In various functions of AppStandbyController.java, there is a possible way to break manageability scenarios due to a log...
CVE-2023-21127HIGH8.8In readSampleData of NuMediaExtractor.cpp, there is a possible out of bounds write due to uninitialized data. This could...
CVE-2023-21126HIGH7.8In bindOutputSwitcherAndBroadcastButton of MediaControlPanel.java, there is a possible launch arbitrary activity under S...
CVE-2023-21124HIGH7.8In run of multiple files, there is a possible escalation of privilege due to unsafe deserialization. This could lead to ...
CVE-2023-21123HIGH7.8In multiple functions of multiple files, there is a possible way to bypass the DISALLOW_DEBUGGING_FEATURES restriction f...
CVE-2023-21122HIGH7.8In various functions of various files, there is a possible way to bypass the DISALLOW_DEBUGGING_FEATURES restriction for...
CVE-2023-21121HIGH7.8In onResume of AppManagementFragment.java, there is a possible way to prevent users from forgetting a previously connect...
CVE-2023-21120HIGH7.8In multiple functions of cdm_engine.cpp, there is a possible use-after-free due to improper locking. This could lead to ...
CVE-2023-21115HIGH8.8In btm_sec_encrypt_change of btm_sec.cc, there is a possible way to downgrade the link key type due to improperly used c...
CVE-2023-21108HIGH8.8In sdpu_build_uuid_seq of sdp_discovery.cc, there is a possible out of bounds write due to a use after free. This could ...
CVE-2023-21101HIGH7In multiple functions of WVDrmPlugin.cpp, there is a possible use after free due to a race condition. This could lead to...
CVE-2023-34455HIGH7.5snappy-java is a fast compressor/decompressor for Java. Due to use of an unchecked chunk length, an unrecoverable fatal ...
CVE-2023-34454HIGH7.5snappy-java is a fast compressor/decompressor for Java. Due to unchecked multiplications, an integer overflow may occur ...
CVE-2023-34453HIGH7.5snappy-java is a fast compressor/decompressor for Java. Due to unchecked multiplications, an integer overflow may occur ...
CVE-2023-27634HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability allows arbitrary file upload in Shingo Intrepidity plugin <= 1.5.1 versi...
CVE-2023-25055HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Amit Agarwal Google XML Sitemap for Videos plugin <= 2.6.1 versions.
CVE-2023-3276HIGH7.5A vulnerability, which was classified as problematic, has been found in Dromara HuTool up to 5.8.19. Affected by this is...
CVE-2023-3274HIGH8.8A vulnerability classified as critical has been found in code-projects Supplier Management System 1.0. Affected is an un...
CVE-2023-25450HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in GiveWP GiveWP – Donation Plugin and Fundraising Platform plugin <= 2....
CVE-2023-23802HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in HasThemes HT Easy GA4 ( Google Analytics 4 ) plugin <= 1.0.6 versions...
CVE-2023-25449HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Oliver Seidel, Bastian Germann cformsII plugin <= 15.0.4 versions.

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now