2023 CVE Vulnerabilities
31,397 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-23609 | HIGH | 7.4 | 0.4% | Jan 26, 2023 | Contiki-NG is an open-source, cross-platform operating system for Next-Generation IoT devices. Versions prior to and inc... |
| CVE-2023-22736 | HIGH | 8.5 | 0.8% | Jan 26, 2023 | Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. Versions starting with 2.5.0-rc1 and above, pr... |
| CVE-2023-22500 | HIGH | 7.5 | 0.8% | Jan 26, 2023 | GLPI is a Free Asset and IT Management Software package. Versions 10.0.0 and above, prior to 10.0.6 are vulnerable to In... |
| CVE-2023-22486 | HIGH | 7.5 | 1.1% | Jan 26, 2023 | cmark-gfm is GitHub's fork of cmark, a CommonMark parsing and rendering library and program in C. Versions prior to 0.29... |
| CVE-2023-22482 | HIGH | 8.8 | 0.9% | Jan 26, 2023 | Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. Versions of Argo CD starting with v1.8.2 and p... |
| CVE-2023-20928 | HIGH | 7.8 | 0.2% | Jan 26, 2023 | In binder_vma_close of binder.c, there is a possible use after free due to improper locking. This could lead to local es... |
| CVE-2023-20925 | HIGH | 7.8 | 0.1% | Jan 26, 2023 | In setUclampMinLocked of PowerSessionManager.cpp, there is a possible way to corrupt memory due to a use after free. Thi... |
| CVE-2023-20921 | HIGH | 7.3 | 0.3% | Jan 26, 2023 | In onPackageRemoved of AccessibilityManagerService.java, there is a possibility to automatically grant accessibility ser... |
| CVE-2023-20920 | HIGH | 7.8 | 0.1% | Jan 26, 2023 | In queue of UsbRequest.java, there is a possible way to corrupt memory due to a use after free. This could lead to local... |
| CVE-2023-20919 | HIGH | 7.8 | 0.1% | Jan 26, 2023 | In getStringsForPrefix of Settings.java, there is a possible prevention of package uninstallation due to a logic error i... |
| CVE-2023-20916 | HIGH | 7.8 | 0.1% | Jan 26, 2023 | In getMainActivityLaunchIntent of LauncherAppsService.java, there is a possible way to bypass the restrictions on starti... |
| CVE-2023-20915 | HIGH | 7.8 | 0.1% | Jan 26, 2023 | In addOrReplacePhoneAccount of PhoneAccountRegistrar.java, there is a possible way to enable a phone account without use... |
| CVE-2023-20913 | HIGH | 7.8 | 0.1% | Jan 26, 2023 | In onCreate of PhoneAccountSettingsActivity.java and related files, there is a possible way to mislead the user into ena... |
| CVE-2023-20912 | HIGH | 7.8 | 0.1% | Jan 26, 2023 | In onActivityResult of AvatarPickerActivity.java, there is a possible way to access images belonging to other users due ... |
| CVE-2023-20905 | HIGH | 7.8 | 0.1% | Jan 26, 2023 | In Mfc_Transceive of phNxpExtns_MifareStd.cpp, there is a possible out of bounds write due to a missing bounds check. Th... |
| CVE-2023-20904 | HIGH | 7.8 | 0.1% | Jan 26, 2023 | In getTrampolineIntent of SettingsActivity.java, there is a possible launch of arbitrary activity due to an Intent misma... |
| CVE-2023-0516 | HIGH | 7.2 | 1.0% | Jan 26, 2023 | A vulnerability was found in SourceCodester Online Tours & Travels Management System 1.0. It has been classified as crit... |
| CVE-2023-0515 | HIGH | 7.2 | 1.0% | Jan 26, 2023 | A vulnerability was found in SourceCodester Online Tours & Travels Management System 1.0 and classified as critical. Thi... |
| CVE-2023-0451 | HIGH | 7.5 | 0.8% | Jan 26, 2023 | Econolite EOS versions prior to 3.2.23 lack a password requirement for gaining “READONLY” access to log files and certai... |
| CVE-2023-0444 | HIGH | 8.8 | 1.0% | Jan 26, 2023 | A privilege escalation vulnerability exists in Delta Electronics InfraSuite Device Master 00.00.02a. A default user 'Use... |
| CVE-2023-0412 | HIGH | 7.1 | 0.8% | Jan 26, 2023 | TIPC dissector crash in Wireshark 4.0.0 to 4.0.2 and 3.6.0 to 3.6.10 and allows denial of service via packet injection o... |
| CVE-2023-0356 | HIGH | 7.5 | 0.5% | Jan 26, 2023 | SOCOMEC MODULYS GP Netvision versions 7.20 and prior lack strong encryption for credentials on HTTP connections, which ... |
| CVE-2023-0284 | HIGH | 8.1 | 0.9% | Jan 26, 2023 | Improper Input Validation of LDAP user IDs in Tribe29 Checkmk allows attackers that can control LDAP user IDs to manipul... |
| CVE-2023-21796 | HIGH | 8.3 | 1.0% | Jan 24, 2023 | Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability |
| CVE-2023-21795 | HIGH | 8.3 | 0.9% | Jan 24, 2023 | Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now