2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-28176 | HIGH | 8.8 | 0.7% | Jun 2, 2023 | Memory safety bugs present in Firefox 110 and Firefox ESR 102.8. Some of these bugs showed evidence of memory corruption... |
| CVE-2023-28162 | HIGH | 8.8 | 0.7% | Jun 2, 2023 | While implementing AudioWorklets, some code may have casted one type to another, invalid, dynamic type. This could have ... |
| CVE-2023-28161 | HIGH | 8.8 | 0.6% | Jun 2, 2023 | If temporary "one-time" permissions, such as the ability to use the Camera, were granted to a document loaded using a fi... |
| CVE-2023-25746 | HIGH | 8.8 | 0.7% | Jun 2, 2023 | Memory safety bugs present in Firefox ESR 102.7. Some of these bugs showed evidence of memory corruption and we presume ... |
| CVE-2023-25745 | HIGH | 8.8 | 0.7% | Jun 2, 2023 | Memory safety bugs present in Firefox 109. Some of these bugs showed evidence of memory corruption and we presume that w... |
| CVE-2023-25744 | HIGH | 8.8 | 0.7% | Jun 2, 2023 | Mmemory safety bugs present in Firefox 109 and Firefox ESR 102.7. Some of these bugs showed evidence of memory corruptio... |
| CVE-2023-25743 | HIGH | 7.5 | 0.6% | Jun 2, 2023 | A lack of in app notification for entering fullscreen mode could have lead to a malicious website spoofing browser chrom... |
| CVE-2023-25740 | HIGH | 8.8 | 0.5% | Jun 2, 2023 | After downloading a Windows <code>.scf</code> script from the local filesystem, an attacker could supply a remote path t... |
| CVE-2023-25739 | HIGH | 8.8 | 0.7% | Jun 2, 2023 | Module load requests that failed were not being checked as to whether or not they were cancelled causing a use-after-fre... |
| CVE-2023-25737 | HIGH | 8.8 | 0.7% | Jun 2, 2023 | An invalid downcast from <code>nsTextNode</code> to <code>SVGElement</code> could have lead to undefined behavior. This ... |
| CVE-2023-25735 | HIGH | 8.8 | 0.7% | Jun 2, 2023 | Cross-compartment wrappers wrapping a scripted proxy could have caused objects from other compartments to be stored in t... |
| CVE-2023-25734 | HIGH | 8.1 | 0.8% | Jun 2, 2023 | After downloading a Windows <code>.url</code> shortcut from the local filesystem, an attacker could supply a remote path... |
| CVE-2023-25732 | HIGH | 8.8 | 0.7% | Jun 2, 2023 | When encoding data from an <code>inputStream</code> in <code>xpcom</code> the size of the input being encoded was not co... |
| CVE-2023-25731 | HIGH | 8.8 | 0.6% | Jun 2, 2023 | Due to URL previews in the network panel of developer tools improperly storing URLs, query parameters could potentially ... |
| CVE-2023-25729 | HIGH | 8.8 | 0.7% | Jun 2, 2023 | Permission prompts for opening external schemes were only shown for <code>ContentPrincipals</code> resulting in extensio... |
| CVE-2023-23606 | HIGH | 8.8 | 0.5% | Jun 2, 2023 | Mozilla developers and the Mozilla Fuzzing Team reported memory safety bugs present in Firefox 108. Some of these bugs s... |
| CVE-2023-23605 | HIGH | 8.8 | 0.7% | Jun 2, 2023 | Mozilla developers and the Mozilla Fuzzing Team reported memory safety bugs present in Firefox 108 and Firefox ESR 102.6... |
| CVE-2023-0767 | HIGH | 8.8 | 0.8% | Jun 2, 2023 | An attacker could construct a PKCS 12 cert bundle in such a way that could allow for arbitrary memory writes via PKCS 12... |
| CVE-2023-3033 | HIGH | 8.8 | 0.6% | Jun 2, 2023 | Incorrect Authorization vulnerability in Mobatime web application allows Privilege Escalation, Exploiting Incorrectly Co... |
| CVE-2023-3032 | HIGH | 8.8 | 0.8% | Jun 2, 2023 | Unrestricted Upload of File with Dangerous Type vulnerability in Mobatime web application (Documentary proof upload modu... |
| CVE-2023-30602 | HIGH | 7.5 | 0.5% | Jun 2, 2023 | Hitron Technologies CODA-5310’s Telnet function transfers sensitive data in plaintext. An unauthenticated remote attacke... |
| CVE-2023-28704 | HIGH | 8.8 | 1.0% | Jun 2, 2023 | Furbo dog camera has insufficient filtering for special parameter of device log management function. An unauthenticated ... |
| CVE-2023-28703 | HIGH | 7.2 | 0.9% | Jun 2, 2023 | ASUS RT-AC86U’s specific cgi function has a stack-based buffer overflow vulnerability due to insufficient validation for... |
| CVE-2023-28702 | HIGH | 8.8 | 1.2% | Jun 2, 2023 | ASUS RT-AC86U does not filter special characters for parameters in specific web URLs. A remote attacker with normal user... |
| CVE-2023-28699 | HIGH | 8.8 | 0.9% | Jun 2, 2023 | Wade Graphic Design FANTSY has a vulnerability of insufficient filtering for file type in its file update function. An a... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now