2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-31234 | MEDIUM | 6.3 | 0.3% | May 7, 2024 | Missing Authorization vulnerability in Tilda Publishing.This issue affects Tilda Publishing: from n/a through 0.3.23. |
| CVE-2023-6810 | MEDIUM | 4.3 | 0.4% | May 7, 2024 | The ClickCease Click Fraud Protection plugin for WordPress is vulnerable to unauthorized access of data due to an improp... |
| CVE-2023-33548 | MEDIUM | 6.8 | 0.5% | May 6, 2024 | Cross Site Scripting (XSS) vulnerability in ASUS RT-AC51U with firmware versions up to and including 3.0.0.4.380.8591 al... |
| CVE-2023-43528 | MEDIUM | 5.5 | 0.1% | May 6, 2024 | Information disclosure when the ADSP payload size received in HLOS in response to Audio Stream Manager matrix session is... |
| CVE-2023-43527 | MEDIUM | 5.5 | 0.1% | May 6, 2024 | Information disclosure while parsing dts header atom in Video. |
| CVE-2023-49676 | MEDIUM | 5.5 | 0.2% | May 6, 2024 | An unauthenticated local attacker may trick a user to open corrupted project files to crash the system due to use after ... |
| CVE-2023-6854 | MEDIUM | 6.4 | 0.3% | May 6, 2024 | The Breakdance plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's custom postmeta output... |
| CVE-2023-32873 | MEDIUM | 6.7 | 0.1% | May 6, 2024 | In keyInstall, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalatio... |
| CVE-2023-32871 | MEDIUM | 5.3 | 0.1% | May 6, 2024 | In DA, there is a possible permission bypass due to an incorrect status check. This could lead to local escalation of pr... |
| CVE-2023-27283 | MEDIUM | 5.3 | 0.5% | May 4, 2024 | IBM Aspera Orchestrator 4.0.1 could allow a remote attacker to enumerate usernames due to observable response discrepanc... |
| CVE-2023-7065 | MEDIUM | 5.4 | 0.2% | May 4, 2024 | The Stop Spammers Security | Block Spam Users, Comments, Forms plugin for WordPress is vulnerable to Cross-Site Request ... |
| CVE-2023-28952 | MEDIUM | 5.3 | 0.4% | May 3, 2024 | IBM Cognos Controller 10.4.1, 10.4.2, and 11.0.0 is vulnerable to injection attacks in application logging by not saniti... |
| CVE-2023-23474 | MEDIUM | 5.3 | 0.4% | May 3, 2024 | IBM Cognos Controller 10.4.1, 10.4.2, and 11.0.0 could allow a remote attacker to obtain sensitive information when a st... |
| CVE-2023-6363 | MEDIUM | 5.1 | 0.2% | May 3, 2024 | Use After Free vulnerability in Arm Ltd Valhall GPU Kernel Driver, Arm Ltd Arm 5th Gen GPU Architecture Kernel Driver al... |
| CVE-2023-41830 | MEDIUM | 6.5 | 0.2% | May 3, 2024 | An improper absolute path traversal vulnerability was reported for the Ready For application allowing a local applicati... |
| CVE-2023-41828 | MEDIUM | 4.4 | 0.2% | May 3, 2024 | An implicit intent export vulnerability was reported in the Motorola Phone application, that could allow unauthorized a... |
| CVE-2023-41826 | MEDIUM | 5.1 | 0.2% | May 3, 2024 | A PendingIntent hijacking vulnerability in Motorola Device Help (Genie) application that could allow local attackers to ... |
| CVE-2023-41823 | MEDIUM | 4.4 | 0.2% | May 3, 2024 | An improper export vulnerability was reported in the Motorola Phone Extension application, that could allow a local att... |
| CVE-2023-41822 | MEDIUM | 4.8 | 0.1% | May 3, 2024 | An improper export vulnerability was reported in the Motorola Interface Test Tool application that could allow a malici... |
| CVE-2023-41821 | MEDIUM | 5 | 0.1% | May 3, 2024 | A an improper export vulnerability was reported in the Motorola Setup application that could allow a local attacker to ... |
| CVE-2023-41820 | MEDIUM | 5 | 0.1% | May 3, 2024 | An implicit intent vulnerability was reported in the Motorola Ready For application that could allow a local attacker t... |
| CVE-2023-41819 | MEDIUM | 6.1 | 0.1% | May 3, 2024 | A PendingIntent hijacking vulnerability was reported in the Motorola Face Unlock application that could allow a local a... |
| CVE-2023-41818 | MEDIUM | 5 | 0.1% | May 3, 2024 | An improper use of the SD card for sensitive data vulnerability was reported in the Motorola Device Help application th... |
| CVE-2023-41816 | MEDIUM | 5 | 0.1% | May 3, 2024 | An improper export vulnerability was reported in the Motorola Services Main application that could allow a local attack... |
| CVE-2023-35701 | MEDIUM | 6.6 | 1.1% | May 3, 2024 | Improper Control of Generation of Code ('Code Injection') vulnerability in Apache Hive. The vulnerability affects the H... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now