2023 CVE Vulnerabilities

31,411 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-29304MEDIUM5.4Adobe Experience Manager versions 6.5.16.0 (and earlier) is affected by a reflected Cross-Site Scripting (XSS) vulnerabi...
CVE-2023-29302MEDIUM5.4Adobe Experience Manager versions 6.5.16.0 (and earlier) is affected by a reflected Cross-Site Scripting (XSS) vulnerabi...
CVE-2023-29297HIGH7.2Adobe Commerce versions 2.4.6 (and earlier), 2.4.5-p2 (and earlier) and 2.4.4-p3 (and earlier) are affected by a Imprope...
CVE-2023-29296MEDIUM4.3Adobe Commerce versions 2.4.6 (and earlier), 2.4.5-p2 (and earlier) and 2.4.4-p3 (and earlier) are affected by an Incorr...
CVE-2023-29295MEDIUM4.3Adobe Commerce versions 2.4.6 (and earlier), 2.4.5-p2 (and earlier) and 2.4.4-p3 (and earlier) are affected by an Incorr...
CVE-2023-29294MEDIUM4.3Adobe Commerce versions 2.4.6 (and earlier), 2.4.5-p2 (and earlier) and 2.4.4-p3 (and earlier) are affected by a Busines...
CVE-2023-29293LOW2.7Adobe Commerce versions 2.4.6 (and earlier), 2.4.5-p2 (and earlier) and 2.4.4-p3 (and earlier) are affected by an Improp...
CVE-2023-29292MEDIUM4.9Adobe Commerce versions 2.4.6 (and earlier), 2.4.5-p2 (and earlier) and 2.4.4-p3 (and earlier) are affected by a Server-...
CVE-2023-29291MEDIUM4.9Adobe Commerce versions 2.4.6 (and earlier), 2.4.5-p2 (and earlier) and 2.4.4-p3 (and earlier) are affected by a Server-...
CVE-2023-29290MEDIUM5.3Adobe Commerce versions 2.4.6 (and earlier), 2.4.5-p2 (and earlier) and 2.4.4-p3 (and earlier) are affected by an Incorr...
CVE-2023-29289MEDIUM6.5Adobe Commerce versions 2.4.6 (and earlier), 2.4.5-p2 (and earlier) and 2.4.4-p3 (and earlier) are affected by an XML In...
CVE-2023-29288MEDIUM4.3Adobe Commerce versions 2.4.6 (and earlier), 2.4.5-p2 (and earlier) and 2.4.4-p3 (and earlier) are affected by an Incorr...
CVE-2023-29287MEDIUM5.3Adobe Commerce versions 2.4.6 (and earlier), 2.4.5-p2 (and earlier) and 2.4.4-p3 (and earlier) are affected by an Inform...
CVE-2023-28809HIGH7.5Some access control products are vulnerable to a session hijacking attack because the product does not update the sessio...
CVE-2023-22248HIGH7.5Adobe Commerce versions 2.4.6 (and earlier), 2.4.5-p2 (and earlier) and 2.4.4-p3 (and earlier) are affected by an Incorr...
CVE-2023-21618HIGH7.8Adobe Substance 3D Designer version 12.4.1 (and earlier) is affected by an Access of Uninitialized Pointer vulnerability...
CVE-2023-21144HIGH7.5In doInBackground of NotificationContentInflater.java, there is a possible temporary denial or service due to long runni...
CVE-2023-21143MEDIUM5.5In multiple functions of multiple files, there is a possible way to make the device unusable due to improper input valid...
CVE-2023-21142MEDIUM5.5In multiple files, there is a possible way to access traces in the dev mode due to a permissions bypass. This could lead...
CVE-2023-21141MEDIUM5.5In several functions of several files, there is a possible way to access developer mode traces due to a permissions bypa...
CVE-2023-21139HIGH7.8In bindPlayer of MediaControlPanel.java, there is a possible launch arbitrary activity in SysUI due to Unsafe Intent. Th...
CVE-2023-21138HIGH7.8In onNullBinding of CallRedirectionProcessor.java, there is a possible long lived connection due to improper input valid...
CVE-2023-21137MEDIUM5.5In several methods of JobStore.java, uncaught exceptions in job map parsing could lead to local persistent denial of ser...
CVE-2023-21136MEDIUM5.5In multiple functions of JobStore.java, there is a possible way to cause a crash on startup due to improper input valida...
CVE-2023-21135HIGH7.8In onCreate of NotificationAccessSettings.java, there is a possible failure to persist notifications settings due to imp...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now