2023 CVE Vulnerabilities
31,399 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-40416 | MEDIUM | 6.5 | 1.3% | Oct 25, 2023 | The issue was addressed with improved memory handling. This issue is fixed in iOS 17.1 and iPadOS 17.1, macOS Monterey 1... |
| CVE-2023-40413 | MEDIUM | 5.5 | 0.5% | Oct 25, 2023 | The issue was addressed with improved handling of caches. This issue is fixed in iOS 17.1 and iPadOS 17.1, macOS Montere... |
| CVE-2023-40408 | MEDIUM | 5.3 | 1.0% | Oct 25, 2023 | An inconsistent user interface issue was addressed with improved state management. This issue is fixed in macOS Sonoma 1... |
| CVE-2023-40405 | LOW | 3.3 | 0.3% | Oct 25, 2023 | A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Sonoma ... |
| CVE-2023-40404 | HIGH | 7.8 | 1.1% | Oct 25, 2023 | A use-after-free issue was addressed with improved memory management. This issue is fixed in macOS Sonoma 14.1. An app m... |
| CVE-2023-40401 | HIGH | 7.5 | 1.0% | Oct 25, 2023 | The issue was addressed with additional permissions checks. This issue is fixed in macOS Ventura 13.6.1. An attacker may... |
| CVE-2023-32359 | HIGH | 7.5 | 0.9% | Oct 25, 2023 | This issue was addressed with improved redaction of sensitive information. This issue is fixed in iOS 16.7.2 and iPadOS ... |
| CVE-2023-5758 | MEDIUM | 6.1 | 0.4% | Oct 25, 2023 | When opening a page in reader mode, the redirect URL could have caused attacker-controlled script to execute in a reflec... |
| CVE-2023-5753 | HIGH | 8.8 | 0.9% | Oct 25, 2023 | Potential buffer overflows in the Bluetooth subsystem due to asserts being disabled in /subsys/bluetooth/host/hci_core.c |
| CVE-2023-5752 | LOW | 3.3 | 0.5% | Oct 25, 2023 | When installing a package from a Mercurial VCS URL (ie "pip install hg+...") with pip prior to v23.3, the specified Me... |
| CVE-2023-5746 | CRITICAL | 9.8 | 1.7% | Oct 25, 2023 | A vulnerability regarding use of externally-controlled format string is found in the cgi component. This allows remote a... |
| CVE-2023-5745 | MEDIUM | 5.4 | 0.4% | Oct 25, 2023 | The Reusable Text Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'text-blocks' shortcode i... |
| CVE-2023-5744 | MEDIUM | 5.4 | 0.6% | Oct 25, 2023 | The Very Simple Google Maps plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'vsgmap' ... |
| CVE-2023-5740 | MEDIUM | 5.4 | 0.5% | Oct 25, 2023 | The Live Chat with Facebook Messenger plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's... |
| CVE-2023-5732 | MEDIUM | 6.5 | 1.0% | Oct 25, 2023 | An attacker could have created a malicious link using bidirectional characters to spoof the location in the address bar ... |
| CVE-2023-5731 | CRITICAL | 9.8 | 1.0% | Oct 25, 2023 | Memory safety bugs present in Firefox 118. Some of these bugs showed evidence of memory corruption and we presume that w... |
| CVE-2023-5730 | CRITICAL | 9.8 | 1.5% | Oct 25, 2023 | Memory safety bugs present in Firefox 118, Firefox ESR 115.3, and Thunderbird 115.3. Some of these bugs showed evidence ... |
| CVE-2023-5729 | MEDIUM | 4.3 | 0.6% | Oct 25, 2023 | A malicious web site can enter fullscreen mode while simultaneously triggering a WebAuthn prompt. This could have obscur... |
| CVE-2023-5728 | HIGH | 7.5 | 1.2% | Oct 25, 2023 | During garbage collection extra operations were performed on a object that should not be. This could have led to a poten... |
| CVE-2023-5727 | MEDIUM | 6.5 | 0.9% | Oct 25, 2023 | The executable file warning was not presented when downloading .msix, .msixbundle, .appx, and .appxbundle files, which c... |
| CVE-2023-5726 | MEDIUM | 4.3 | 0.6% | Oct 25, 2023 | A website could have obscured the full screen notification by using the file open dialog. This could have led to user co... |
| CVE-2023-5725 | MEDIUM | 4.3 | 0.9% | Oct 25, 2023 | A malicious installed WebExtension could open arbitrary URLs, which under the right circumstance could be leveraged to c... |
| CVE-2023-5724 | HIGH | 7.5 | 1.6% | Oct 25, 2023 | Drivers are not always robust to extremely large draw calls and in some cases this scenario could have led to a crash. T... |
| CVE-2023-5723 | MEDIUM | 5.3 | 0.7% | Oct 25, 2023 | An attacker with temporary script access to a site could have set a cookie containing invalid characters using `document... |
| CVE-2023-5722 | MEDIUM | 5.3 | 0.6% | Oct 25, 2023 | Using iterative requests an attacker was able to learn the size of an opaque response, as well as the contents of a serv... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now