2023 CVE Vulnerabilities
31,397 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-5830 | CRITICAL | 9.8 | 61.0% | Oct 27, 2023 | A vulnerability classified as critical has been found in ColumbiaSoft Document Locator. This affects an unknown part of ... |
| CVE-2023-46510 | CRITICAL | 9.8 | 0.8% | Oct 27, 2023 | An issue in ZIONCOM (Hong Kong) Technology Limited A7000R v.4.1cu.4154 allows an attacker to execute arbitrary code via ... |
| CVE-2023-46509 | CRITICAL | 9.8 | 0.8% | Oct 27, 2023 | An issue in Contec SolarView Compact v.6.0 and before allows an attacker to execute arbitrary code via the texteditor.ph... |
| CVE-2023-46211 | MEDIUM | 5.4 | 0.3% | Oct 27, 2023 | Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Brainstorm Force Ultimate Addons for WPBakery Pa... |
| CVE-2023-46209 | MEDIUM | 6.1 | 0.3% | Oct 27, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in G5Theme Grid Plus – Unlimited grid plugin <= 1.3.2 version... |
| CVE-2023-46208 | MEDIUM | 6.1 | 0.3% | Oct 27, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in StylemixThemes Motors – Car Dealer, Classifieds & Listing ... |
| CVE-2023-46200 | MEDIUM | 4.8 | 0.3% | Oct 27, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Stephen Darlington, Wandle Software Limited Smart App ... |
| CVE-2023-44480 | HIGH | 8.8 | 0.6% | Oct 27, 2023 | Leave Management System Project v1.0 is vulnerable to multiple Authenticated SQL Injection vulnerabilities. The 'setcasu... |
| CVE-2023-40140 | HIGH | 7.8 | 0.2% | Oct 27, 2023 | In android_view_InputDevice_create of android_view_InputDevice.cpp, there is a possible way to execute arbitrary code du... |
| CVE-2023-40139 | MEDIUM | 5.5 | 0.1% | Oct 27, 2023 | In FillUi of FillUi.java, there is a possible way to view another user's images due to a confused deputy. This could lea... |
| CVE-2023-40138 | LOW | 3.3 | 0.1% | Oct 27, 2023 | In FillUi of FillUi.java, there is a possible way to view another user's images due to a confused deputy. This could lea... |
| CVE-2023-40137 | LOW | 3.3 | 0.1% | Oct 27, 2023 | In multiple functions of DialogFillUi.java, there is a possible way to view another user's images due to a confused depu... |
| CVE-2023-40136 | LOW | 3.3 | 0.1% | Oct 27, 2023 | In setHeader of DialogFillUi.java, there is a possible way to view another user's images due to a confused deputy. This ... |
| CVE-2023-40135 | LOW | 3.3 | 0.1% | Oct 27, 2023 | In applyCustomDescription of SaveUi.java, there is a possible way to view another user's images due to a confused deputy... |
| CVE-2023-40134 | LOW | 3.3 | 0.1% | Oct 27, 2023 | In isFullScreen of FillUi.java, there is a possible way to view another user's images due to a confused deputy. This cou... |
| CVE-2023-40133 | MEDIUM | 5.5 | 0.2% | Oct 27, 2023 | In multiple locations of DialogFillUi.java, there is a possible way to view another user's images due to a confused depu... |
| CVE-2023-40131 | HIGH | 7 | 0.1% | Oct 27, 2023 | In GpuService of GpuService.cpp, there is a possible use after free due to a race condition. This could lead to local es... |
| CVE-2023-40130 | HIGH | 7.8 | 0.1% | Oct 27, 2023 | In notifyTimeout of CallRedirectionProcessor, there is a possible permission bypass due to a logic error in the code. Th... |
| CVE-2023-40129 | HIGH | 8.8 | 0.2% | Oct 27, 2023 | In build_read_multi_rsp of gatt_sr.cc, there is a possible out of bounds write due to a heap buffer overflow. This could... |
| CVE-2023-40128 | HIGH | 7.8 | 0.1% | Oct 27, 2023 | In several functions of xmlregexp.c, there is a possible out of bounds write due to a heap buffer overflow. This could l... |
| CVE-2023-40127 | LOW | 3.3 | 0.2% | Oct 27, 2023 | In multiple locations, there is a possible way to access screenshots due to a confused deputy. This could lead to local ... |
| CVE-2023-40125 | HIGH | 7.8 | 0.1% | Oct 27, 2023 | In onCreate of ApnEditor.java, there is a possible way for a Guest user to change the APN due to a permission bypass. Th... |
| CVE-2023-40123 | MEDIUM | 5.5 | 0.1% | Oct 27, 2023 | In updateActionViews of PipMenuView.java, there is a possible bypass of a multi user security boundary due to a confused... |
| CVE-2023-40121 | MEDIUM | 5.5 | 0.2% | Oct 27, 2023 | In appendEscapedSQLString of DatabaseUtils.java, there is a possible SQL injection due to unsafe deserialization. This c... |
| CVE-2023-40120 | HIGH | 7.8 | 0.1% | Oct 27, 2023 | In multiple locations, there is a possible way to bypass user notification of foreground services due to improper input ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now