2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-28176HIGH8.8Memory safety bugs present in Firefox 110 and Firefox ESR 102.8. Some of these bugs showed evidence of memory corruption...
CVE-2023-28162HIGH8.8While implementing AudioWorklets, some code may have casted one type to another, invalid, dynamic type. This could have ...
CVE-2023-28161HIGH8.8If temporary "one-time" permissions, such as the ability to use the Camera, were granted to a document loaded using a fi...
CVE-2023-25746HIGH8.8Memory safety bugs present in Firefox ESR 102.7. Some of these bugs showed evidence of memory corruption and we presume ...
CVE-2023-25745HIGH8.8Memory safety bugs present in Firefox 109. Some of these bugs showed evidence of memory corruption and we presume that w...
CVE-2023-25744HIGH8.8Mmemory safety bugs present in Firefox 109 and Firefox ESR 102.7. Some of these bugs showed evidence of memory corruptio...
CVE-2023-25743HIGH7.5A lack of in app notification for entering fullscreen mode could have lead to a malicious website spoofing browser chrom...
CVE-2023-25740HIGH8.8After downloading a Windows <code>.scf</code> script from the local filesystem, an attacker could supply a remote path t...
CVE-2023-25739HIGH8.8Module load requests that failed were not being checked as to whether or not they were cancelled causing a use-after-fre...
CVE-2023-25737HIGH8.8An invalid downcast from <code>nsTextNode</code> to <code>SVGElement</code> could have lead to undefined behavior. This ...
CVE-2023-25735HIGH8.8Cross-compartment wrappers wrapping a scripted proxy could have caused objects from other compartments to be stored in t...
CVE-2023-25734HIGH8.1After downloading a Windows <code>.url</code> shortcut from the local filesystem, an attacker could supply a remote path...
CVE-2023-25732HIGH8.8When encoding data from an <code>inputStream</code> in <code>xpcom</code> the size of the input being encoded was not co...
CVE-2023-25731HIGH8.8Due to URL previews in the network panel of developer tools improperly storing URLs, query parameters could potentially ...
CVE-2023-25729HIGH8.8Permission prompts for opening external schemes were only shown for <code>ContentPrincipals</code> resulting in extensio...
CVE-2023-23606HIGH8.8Mozilla developers and the Mozilla Fuzzing Team reported memory safety bugs present in Firefox 108. Some of these bugs s...
CVE-2023-23605HIGH8.8Mozilla developers and the Mozilla Fuzzing Team reported memory safety bugs present in Firefox 108 and Firefox ESR 102.6...
CVE-2023-0767HIGH8.8An attacker could construct a PKCS 12 cert bundle in such a way that could allow for arbitrary memory writes via PKCS 12...
CVE-2023-3033HIGH8.8Incorrect Authorization vulnerability in Mobatime web application allows Privilege Escalation, Exploiting Incorrectly Co...
CVE-2023-3032HIGH8.8Unrestricted Upload of File with Dangerous Type vulnerability in Mobatime web application (Documentary proof upload modu...
CVE-2023-30602HIGH7.5Hitron Technologies CODA-5310’s Telnet function transfers sensitive data in plaintext. An unauthenticated remote attacke...
CVE-2023-28704HIGH8.8Furbo dog camera has insufficient filtering for special parameter of device log management function. An unauthenticated ...
CVE-2023-28703HIGH7.2ASUS RT-AC86U’s specific cgi function has a stack-based buffer overflow vulnerability due to insufficient validation for...
CVE-2023-28702HIGH8.8ASUS RT-AC86U does not filter special characters for parameters in specific web URLs. A remote attacker with normal user...
CVE-2023-28699HIGH8.8Wade Graphic Design FANTSY has a vulnerability of insufficient filtering for file type in its file update function. An a...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now