2023 CVE Vulnerabilities

31,397 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-46766HIGH7.5Out-of-bounds write vulnerability in the kernel driver module. Successful exploitation of this vulnerability may cause p...
CVE-2023-46765HIGH7.5Vulnerability of uncaught exceptions in the NFC module. Successful exploitation of this vulnerability can affect NFC ava...
CVE-2023-46764MEDIUM5.3Unauthorized startup vulnerability of background apps. Successful exploitation of this vulnerability may cause backgroun...
CVE-2023-46763MEDIUM5.3Vulnerability of background app permission management in the framework module. Successful exploitation of this vulnerabi...
CVE-2023-46762HIGH7.5Out-of-bounds write vulnerability in the kernel driver module. Successful exploitation of this vulnerability may cause p...
CVE-2023-46761HIGH7.5Out-of-bounds write vulnerability in the kernel driver module. Successful exploitation of this vulnerability may cause p...
CVE-2023-46760HIGH7.5Out-of-bounds write vulnerability in the kernel driver module. Successful exploitation of this vulnerability may cause p...
CVE-2023-46755MEDIUM5.3Vulnerability of input parameters being not strictly verified in the input. Successful exploitation of this vulnerabilit...
CVE-2023-5978HIGH7.5In versions of FreeBSD 13-RELEASE before 13-RELEASE-p5, under certain circumstances the cap_net libcasper(3) service inc...
CVE-2023-5941CRITICAL9.8In versions of FreeBSD 12.4-RELEASE prior to 12.4-RELEASE-p7 and FreeBSD 13.2-RELEASE prior to 13.2-RELEASE-p5 the __sfl...
CVE-2023-46771HIGH7.5Security vulnerability in the face unlock module. Successful exploitation of this vulnerability may affect service confi...
CVE-2023-44098HIGH7.5Vulnerability of missing encryption in the card management module. Successful exploitation of this vulnerability may aff...
CVE-2023-46483MEDIUM5.4Cross Site Scripting vulnerability in timetec AWDMS v.2.0 allows an attacker to obtain sensitive information via a craft...
CVE-2023-41112HIGH7.5An issue was discovered in Samsung Mobile Processor, Wearable Processor, Automotive Processor, and Modem (Exynos 9810, 9...
CVE-2023-41111HIGH7.5An issue was discovered in Samsung Mobile Processor, Wearable Processor, Automotive Processor, and Modem (Exynos 9810, 9...
CVE-2023-39913HIGH8.8Deserialization of Untrusted Data, Improper Input Validation vulnerability in Apache UIMA Java SDK, Apache UIMA Java SDK...
CVE-2023-41270MEDIUM4.3Improper Restriction of Excessive Authentication Attempts vulnerability in Samsung Smart TV UE40D7000 version T-GAPDEUC-...
CVE-2023-44115HIGH7.5Vulnerability of improper permission control in the Booster module. Impact: Successful exploitation of this vulnerabilit...
CVE-2023-5801CRITICAL9.1Vulnerability of identity verification being bypassed in the face unlock module. Successful exploitation of this vulnera...
CVE-2023-46770HIGH7.5Out-of-bounds vulnerability in the sensor module. Successful exploitation of this vulnerability may cause mistouch preve...
CVE-2023-46769HIGH7.5Use-After-Free (UAF) vulnerability in the dubai module. Successful exploitation of this vulnerability will affect avail...
CVE-2023-46768HIGH7.5Multi-thread vulnerability in the idmap module. Successful exploitation of this vulnerability may cause features to perf...
CVE-2023-4061MEDIUM6.5A flaw was found in wildfly-core. A management user could use the resolve-expression in the HAL Interface to read possib...
CVE-2023-6002MEDIUM6.1YugabyteDB is vulnerable to cross site scripting (XSS) via log injection. Writing invalidated user input to log files ca...
CVE-2023-6001HIGH7.5Prometheus metrics are available without authentication. These expose detailed and sensitive information about the Yugab...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now