2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-21255 | HIGH | 7.8 | 0.2% | Jul 13, 2023 | In multiple functions of binder.c, there is a possible memory corruption due to a use after free. This could lead to loc... |
| CVE-2023-21254 | HIGH | 7.8 | 0.1% | Jul 13, 2023 | In getCurrentState of OneTimePermissionUserManager.java, there is a possible way to hold one-time permissions after the ... |
| CVE-2023-21251 | HIGH | 7.3 | 0.2% | Jul 13, 2023 | In onCreate of ConfirmDialog.java, there is a possible way to connect to VNP bypassing user's consent due to improper in... |
| CVE-2023-21250 | CRITICAL | 9.8 | 0.5% | Jul 13, 2023 | In gatt_end_operation of gatt_utils.cc, there is a possible out of bounds write due to a missing bounds check. This coul... |
| CVE-2023-21249 | MEDIUM | 5.5 | 0.1% | Jul 13, 2023 | In multiple functions of OneTimePermissionUserManager.java, there is a possible one-time permission retention due to a p... |
| CVE-2023-21248 | HIGH | 7.8 | 0.1% | Jul 13, 2023 | In getAvailabilityStatus of WifiScanningMainSwitchPreferenceController.java, there is a possible way to bypass a device ... |
| CVE-2023-21247 | HIGH | 7.8 | 0.1% | Jul 13, 2023 | In getAvailabilityStatus of BluetoothScanningMainSwitchPreferenceController.java, there is a possible way to bypass a de... |
| CVE-2023-21246 | LOW | 3.3 | 0.2% | Jul 13, 2023 | In ShortcutInfo of ShortcutInfo.java, there is a possible way for an app to retain notification listening access due to ... |
| CVE-2023-21245 | HIGH | 7.8 | 0.1% | Jul 13, 2023 | In showNextSecurityScreenOrFinish of KeyguardSecurityContainerController.java, there is a possible way to access the loc... |
| CVE-2023-21243 | MEDIUM | 5.5 | 0.1% | Jul 13, 2023 | In validateForCommonR1andR2 of PasspointConfiguration.java, there is a possible way to inflate the size of a config file... |
| CVE-2023-21241 | HIGH | 7.8 | 0.1% | Jul 13, 2023 | In rw_i93_send_to_upper of rw_i93.cc, there is a possible out of bounds write due to an integer overflow. This could lea... |
| CVE-2023-21240 | MEDIUM | 5.5 | 0.1% | Jul 13, 2023 | In Policy of Policy.java, there is a possible boot loop due to resource exhaustion. This could lead to local denial of s... |
| CVE-2023-21239 | MEDIUM | 5.5 | 0.1% | Jul 13, 2023 | In visitUris of Notification.java, there is a possible way to leak image data across user boundaries due to a confused d... |
| CVE-2023-21238 | MEDIUM | 5.5 | 0.2% | Jul 13, 2023 | In visitUris of RemoteViews.java, there is a possible leak of images between users due to a confused deputy. This could ... |
| CVE-2023-21145 | HIGH | 7.8 | 0.1% | Jul 13, 2023 | In updatePictureInPictureMode of ActivityRecord.java, there is a possible bypass of background launch restrictions due t... |
| CVE-2023-20942 | MEDIUM | 5.5 | 0.1% | Jul 13, 2023 | In openMmapStream of AudioFlinger.cpp, there is a possible way to record audio without displaying the microphone privacy... |
| CVE-2023-20918 | CRITICAL | 9.8 | 0.8% | Jul 13, 2023 | In getPendingIntentLaunchFlags of ActivityOptions.java, there is a possible elevation of privilege due to a confused dep... |
| CVE-2023-33274 | CRITICAL | 9.8 | 0.9% | Jul 12, 2023 | The authentication mechanism in PowerShield SNMP Web Pro 1.1 contains a vulnerability that allows unauthenticated users ... |
| CVE-2023-26564 | CRITICAL | 9.8 | 1.4% | Jul 12, 2023 | The Syncfusion EJ2 ASPCore File Provider 3ac357f is vulnerable to Models/PhysicalFileProvider.cs directory traversal. As... |
| CVE-2023-26563 | CRITICAL | 9.8 | 1.5% | Jul 12, 2023 | The Syncfusion EJ2 Node File Provider 0102271 is vulnerable to filesystem-server.js directory traversal. As a result, an... |
| CVE-2023-3635 | HIGH | 7.5 | 1.1% | Jul 12, 2023 | GzipSource does not handle an exception that might be raised when parsing a malformed gzip buffer. This may lead to deni... |
| CVE-2023-3644 | CRITICAL | 9.8 | 0.4% | Jul 12, 2023 | A vulnerability was found in SourceCodester Service Provider Management System 1.0. It has been declared as critical. Th... |
| CVE-2023-3643 | CRITICAL | 9.8 | 75.2% | Jul 12, 2023 | A vulnerability was found in Boss Mini 1.4.0 Build 6221. It has been classified as critical. This affects an unknown par... |
| CVE-2023-3642 | MEDIUM | 6.1 | 0.4% | Jul 12, 2023 | A vulnerability was found in GZ Scripts Vacation Rental Website 1.8 and classified as problematic. Affected by this issu... |
| CVE-2023-3641 | MEDIUM | 6.1 | 0.4% | Jul 12, 2023 | A vulnerability has been found in khodakhah NodCMS 3.4.1 and classified as problematic. Affected by this vulnerability i... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now