2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-30652 | HIGH | 7.8 | 0.2% | Jul 6, 2023 | Out of bounds read and write in callrunTspCmdNoRead of sysinput HAL service prior to SMR Jul-2023 Release 1 allows local... |
| CVE-2023-30651 | HIGH | 7.8 | 0.2% | Jul 6, 2023 | Out of bounds read and write in callgetTspsysfs of sysinput HAL service prior to SMR Jul-2023 Release 1 allows local att... |
| CVE-2023-30650 | HIGH | 7.8 | 0.2% | Jul 6, 2023 | Out of bounds read and write in callrunTspCmd of sysinput HAL service prior to SMR Jul-2023 Release 1 allows local attac... |
| CVE-2023-30649 | HIGH | 7.8 | 0.2% | Jul 6, 2023 | Heap out of bound write vulnerability in RmtUimNeedApdu of RILD prior to SMR Jul-2023 Release 1 allows attackers to exec... |
| CVE-2023-30648 | MEDIUM | 5.5 | 0.2% | Jul 6, 2023 | Stack out-of-bounds write vulnerability in IpcRxImeiUpdateImeiNoti of RILD priro to SMR Jul-2023 Release 1 cause a denia... |
| CVE-2023-30647 | HIGH | 7.8 | 0.2% | Jul 6, 2023 | Heap out of bound write vulnerability in IpcRxUsimPhoneBookCapa of RILD prior to SMR Jul-2023 Release 1 allows attackers... |
| CVE-2023-30646 | HIGH | 7.8 | 0.2% | Jul 6, 2023 | Heap out of bound write vulnerability in BroadcastSmsConfig of RILD prior to SMR Jul-2023 Release 1 allows attackers to ... |
| CVE-2023-30645 | HIGH | 7.8 | 0.2% | Jul 6, 2023 | Heap out of bound write vulnerability in IpcRxIncomingCBMsg of RILD prior to SMR Jul-2023 Release 1 allows attackers to ... |
| CVE-2023-30644 | HIGH | 7.8 | 0.2% | Jul 6, 2023 | Stack out of bound write vulnerability in CdmaSmsParser of RILD prior to SMR Jul-2023 Release 1 allows attackers to exec... |
| CVE-2023-30643 | HIGH | 7.1 | 0.2% | Jul 6, 2023 | Missing authentication vulnerability in Galaxy Themes Service prior to SMR Jul-2023 Release 1 allows local attackers to ... |
| CVE-2023-30642 | MEDIUM | 5.5 | 0.1% | Jul 6, 2023 | Improper privilege management vulnerability in Galaxy Themes Service prior to SMR Jul-2023 Release 1 allows local attack... |
| CVE-2023-30641 | MEDIUM | 4.3 | 0.2% | Jul 6, 2023 | Improper access control vulnerability in Settings prior to SMR Jul-2023 Release 1 allows physical attacker to use restri... |
| CVE-2023-30640 | LOW | 3.3 | 0.1% | Jul 6, 2023 | Improper access control vulnerability in PersonaManagerService prior to SMR Jul-2023 Release 1 allows local attackers to... |
| CVE-2023-3521 | MEDIUM | 6.1 | 0.9% | Jul 6, 2023 | Cross-site Scripting (XSS) - Reflected in GitHub repository fossbilling/fossbilling prior to 0.5.4. |
| CVE-2023-29656 | MEDIUM | 6.1 | 0.2% | Jul 6, 2023 | An improper authorization vulnerability in Darktrace mobile app (Android) prior to version 6.0.15 allows disabled and lo... |
| CVE-2023-27225 | MEDIUM | 5.4 | 0.4% | Jul 6, 2023 | A cross-site scripting (XSS) vulnerability in User Registration & Login and User Management System with Admin Panel v3 a... |
| CVE-2023-24256 | HIGH | 7.8 | 0.3% | Jul 6, 2023 | An issue in the com.nextev.datastatistic component of NIO EC6 Aspen before v3.3.0 allows attackers to escalate privilege... |
| CVE-2023-3520 | MEDIUM | 4.6 | 0.3% | Jul 6, 2023 | Sensitive Cookie in HTTPS Session Without 'Secure' Attribute in GitHub repository it-novum/openitcockpit prior to 4.6.6. |
| CVE-2023-36828 | MEDIUM | 5.4 | 0.5% | Jul 5, 2023 | Statamic is a flat-first, Laravel and Git powered content management system. Prior to version 4.10.0, the SVG tag does n... |
| CVE-2023-36827 | HIGH | 7.5 | 1.1% | Jul 5, 2023 | Fides is an open-source privacy engineering platform for managing the fulfillment of data privacy requests in a runtime ... |
| CVE-2023-36822 | HIGH | 8.1 | 1.0% | Jul 5, 2023 | Uptime Kuma, a self-hosted monitoring tool, has a path traversal vulnerability in versions prior to 1.22.1. Uptime Kuma ... |
| CVE-2023-36821 | HIGH | 8.8 | 1.7% | Jul 5, 2023 | Uptime Kuma, a self-hosted monitoring tool, allows an authenticated attacker to install a maliciously crafted plugin in ... |
| CVE-2023-36813 | HIGH | 8.8 | 0.8% | Jul 5, 2023 | Kanboard is project management software that focuses on the Kanban methodology. In versions prior to 1.2.31authenticated... |
| CVE-2023-36809 | MEDIUM | 5.4 | 0.6% | Jul 5, 2023 | Kiwi TCMS, an open source test management system allows users to upload attachments to test plans, test cases, etc. Vers... |
| CVE-2023-36808 | CRITICAL | 9.8 | 44.6% | Jul 5, 2023 | GLPI is a free asset and IT management software package. Starting in version 0.80 and prior to version 10.0.8, Computer ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now