2023 CVE Vulnerabilities

31,404 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-23826MEDIUM5.4Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Arsham Mirshah Add Posts to Pages plugin <= 1.4....
CVE-2023-31209HIGH8.8Improper neutralization of active check command arguments in Checkmk < 2.1.0p32, < 2.0.0p38, < 2.2.0p4 leads to arbitrar...
CVE-2023-26309CRITICAL9.8A remote code execution vulnerability in the webview component of OnePlus Store app.
CVE-2023-4277MEDIUM6.5The Realia plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.4.0. Thi...
CVE-2023-4276HIGH8.8The Absolute Privacy plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, ...
CVE-2023-30705MEDIUM5.5Improper sanitization of incoming intent in Galaxy Store prior to version 4.5.56.6?allows local attackers to access priv...
CVE-2023-30704MEDIUM4.6Improper Authorization vulnerability in Samsung Internet prior to version 22.0.0.35 allows physical attacker access down...
CVE-2023-30703MEDIUM4.3Improper URL validation vulnerability in Samsung Members prior to version 14.0.07.1 allows attackers to access sensitive...
CVE-2023-30702HIGH7.8Stack overflow vulnerability in SSHDCPAPP TA prior to &quot;SAMSUNG ELECTONICS, CO, LTD. - System Hardware Update - 7/13...
CVE-2023-30701MEDIUM5.5PendingIntent hijacking in WifiGeofenceManager prior to SMR Aug-2023 Release 1 allows local attacker to arbitrary file a...
CVE-2023-30700LOW3.3PendingIntent hijacking vulnerability in SemWifiApTimeOutImpl in framework prior to SMR Aug-2023 Release 1 allows local ...
CVE-2023-30699CRITICAL9.8Out-of-bounds write vulnerability in parser_hvcC function of libsimba library prior to SMR Aug-2023 Release 1 allows cod...
CVE-2023-30698MEDIUM5.5Improper access control vulnerability in TelephonyUI prior to SMR Aug-2023 Release 1 allows local attacker to connect BL...
CVE-2023-30697HIGH7.8An improper input validation in IpcTxCfgSetSimlockPayload in libsec-ril prior to SMR Aug-2023 Release 1 allows attacker ...
CVE-2023-30696HIGH7.8An improper input validation in IpcTxGetVerifyAkey in libsec-ril prior to SMR Aug-2023 Release 1 allows attacker to caus...
CVE-2023-30695HIGH7.8Out-of-bounds Write vulnerability in SSHDCPAPP TA prior to &quot;SAMSUNG ELECTONICS, CO, LTD. - System Hardware Update -...
CVE-2023-30694HIGH7.8Out-of-bounds Write in IpcTxPcscTransmitApdu of libsec-ril prior to SMR Aug-2023 Release 1 allows local attacker to exec...
CVE-2023-30693HIGH7.8Out-of-bounds Write in DoOemFactorySendFactoryBypassCommand of libsec-ril prior to SMR Aug-2023 Release 1 allows local a...
CVE-2023-30691HIGH7.8Parcel mismatch in AuthenticationConfig prior to SMR Aug-2023 Release 1 allows local attacker to privilege escalation.
CVE-2023-30689HIGH7.8Out-of-bounds Write in BuildOemEmbmsGetSigStrengthResponse of libsec-ril prior to SMR Aug-2023 Release 1 allows local at...
CVE-2023-30688HIGH7.8Out-of-bounds Write in MakeUiccAuthForOem of libsec-ril prior to SMR Aug-2023 Release 1 allows local attacker to execute...
CVE-2023-30687HIGH7.8Out-of-bounds Write in RmtUimApdu of libsec-ril prior to SMR Aug-2023 Release 1 allows local attacker to execute arbitra...
CVE-2023-30686HIGH7.8Out-of-bounds Write in ReqDataRaw of libsec-ril prior to SMR Aug-2023 Release 1 allows local attacker to execute arbitra...
CVE-2023-30685LOW3.3Improper access control vulnerability in Telecom prior to SMR Aug-2023 Release 1 allows local attakcers to change TTY mo...
CVE-2023-30684LOW3.3Improper access control in Samsung Telecom prior to SMR Aug-2023 Release 1 allows local attackers to call acceptRingingC...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now