2023 CVE Vulnerabilities
31,404 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-41990 | HIGH | 7.8 | 1.1% | Sep 12, 2023 | The issue was addressed with improved handling of caches. This issue is fixed in tvOS 16.3, iOS 16.3 and iPadOS 16.3, ma... |
| CVE-2023-40442 | LOW | 3.3 | 0.2% | Sep 12, 2023 | A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Big Sur... |
| CVE-2023-40440 | HIGH | 7.5 | 0.4% | Sep 12, 2023 | This issue was addressed with improved state management of S/MIME encrypted emails. This issue is fixed in macOS Montere... |
| CVE-2023-39069 | CRITICAL | 9.8 | 0.7% | Sep 11, 2023 | An issue in StrangeBee TheHive v.5.0.8, v.4.1.21 and Cortex v.3.1.6 allows a remote attacker to gain privileges via Acti... |
| CVE-2023-41879 | HIGH | 7.5 | 0.8% | Sep 11, 2023 | Magento LTS is the official OpenMage LTS codebase. Guest orders may be viewed without authentication using a "guest-view... |
| CVE-2023-38878 | MEDIUM | 6.1 | 0.6% | Sep 11, 2023 | A reflected cross-site scripting (XSS) vulnerability in DevCode OpenSTAManager versions 2.4.24 to 2.4.47 may allow a rem... |
| CVE-2023-4897 | CRITICAL | 9.8 | 0.8% | Sep 11, 2023 | Relative Path Traversal in GitHub repository mintplex-labs/anything-llm prior to 0.0.1. |
| CVE-2023-35687 | HIGH | 7.8 | 0.2% | Sep 11, 2023 | In MtpPropertyValue of MtpProperty.h, there is a possible memory corruption due to a use after free. This could lead to ... |
| CVE-2023-35684 | HIGH | 8.8 | 0.1% | Sep 11, 2023 | In avdt_msg_asmbl of avdt_msg.cc, there is a possible out of bounds write due to an integer overflow. This could lead to... |
| CVE-2023-35683 | MEDIUM | 5.5 | 0.2% | Sep 11, 2023 | In bindSelection of DatabaseUtils.java, there is a possible way to access files from other applications due to SQL injec... |
| CVE-2023-35682 | HIGH | 7.8 | 0.1% | Sep 11, 2023 | In hasPermissionForActivity of PackageManagerHelper.java, there is a possible way to start arbitrary components due to a... |
| CVE-2023-35681 | CRITICAL | 9.8 | 0.5% | Sep 11, 2023 | In eatt_l2cap_reconfig_completed of eatt_impl.h, there is a possible out of bounds write due to an integer overflow. Thi... |
| CVE-2023-35680 | MEDIUM | 5.5 | 0.1% | Sep 11, 2023 | In multiple locations, there is a possible way to import contacts belonging to other users due to a confused deputy. Thi... |
| CVE-2023-35679 | MEDIUM | 5.5 | 0.1% | Sep 11, 2023 | In MtpPropertyValue of MtpProperty.h, there is a possible out of bounds read due to uninitialized data. This could lead ... |
| CVE-2023-35677 | MEDIUM | 5.5 | 0.1% | Sep 11, 2023 | In onCreate of DeviceAdminAdd.java, there is a possible way to forcibly add a device admin due to a missing permission c... |
| CVE-2023-35676 | HIGH | 7.8 | 0.1% | Sep 11, 2023 | In createQuickShareAction of SaveImageInBackgroundTask.java, there is a possible way to trigger a background activity la... |
| CVE-2023-35675 | MEDIUM | 5.5 | 0.1% | Sep 11, 2023 | In loadMediaResumptionControls of MediaResumeListener.kt, there is a possible way to play and listen to media files play... |
| CVE-2023-35674 | HIGH | 7.8 | 2.2% | Sep 11, 2023 | In onCreate of WindowState.java, there is a possible way to launch a background activity due to a logic error in the cod... |
| CVE-2023-35673 | HIGH | 8.8 | 0.2% | Sep 11, 2023 | In build_read_multi_rsp of gatt_sr.cc, there is a possible out of bounds write due to an integer overflow. This could le... |
| CVE-2023-35671 | MEDIUM | 5.5 | 0.2% | Sep 11, 2023 | In onHostEmulationData of HostEmulationManager.java, there is a possible way for a general purpose NFC reader to read th... |
| CVE-2023-35670 | HIGH | 7.8 | 0.1% | Sep 11, 2023 | In computeValuesFromData of FileUtils.java, there is a possible way to insert files to other apps' external private dire... |
| CVE-2023-35669 | HIGH | 7.8 | 0.1% | Sep 11, 2023 | In checkKeyIntentParceledCorrectly of AccountManagerService.java, there is a possible way to control other running activ... |
| CVE-2023-35667 | HIGH | 7.8 | 0.1% | Sep 11, 2023 | In updateList of NotificationAccessSettings.java, there is a possible way to hide approved notification listeners in the... |
| CVE-2023-35666 | HIGH | 7.8 | 0.1% | Sep 11, 2023 | In bta_av_rc_msg of bta_av_act.cc, there is a possible use after free due to a logic error in the code. This could lead ... |
| CVE-2023-35665 | HIGH | 7.8 | 0.1% | Sep 11, 2023 | In multiple files, there is a possible way to import a contact from another user due to a missing permission check. This... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now