2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-25751 | MEDIUM | 6.5 | 0.7% | Jun 2, 2023 | Sometimes, when invalidating JIT code while following an iterator, the newly generated code could be overwritten incorre... |
| CVE-2023-25750 | MEDIUM | 4.3 | 0.5% | Jun 2, 2023 | Under certain circumstances, a ServiceWorker's offline cache may have leaked to the file system when using private brows... |
| CVE-2023-25749 | MEDIUM | 4.3 | 0.4% | Jun 2, 2023 | Android applications with unpatched vulnerabilities can be launched from a browser using Intents, exposing users to thes... |
| CVE-2023-25748 | MEDIUM | 4.3 | 0.3% | Jun 2, 2023 | By displaying a prompt with a long description, the fullscreen notification could have been hidden, resulting in potenti... |
| CVE-2023-25746 | HIGH | 8.8 | 0.7% | Jun 2, 2023 | Memory safety bugs present in Firefox ESR 102.7. Some of these bugs showed evidence of memory corruption and we presume ... |
| CVE-2023-25745 | HIGH | 8.8 | 0.7% | Jun 2, 2023 | Memory safety bugs present in Firefox 109. Some of these bugs showed evidence of memory corruption and we presume that w... |
| CVE-2023-25744 | HIGH | 8.8 | 0.7% | Jun 2, 2023 | Mmemory safety bugs present in Firefox 109 and Firefox ESR 102.7. Some of these bugs showed evidence of memory corruptio... |
| CVE-2023-25743 | HIGH | 7.5 | 0.6% | Jun 2, 2023 | A lack of in app notification for entering fullscreen mode could have lead to a malicious website spoofing browser chrom... |
| CVE-2023-25742 | MEDIUM | 6.5 | 0.6% | Jun 2, 2023 | When importing a SPKI RSA public key as ECDSA P-256, the key would be handled incorrectly causing the tab to crash. This... |
| CVE-2023-25741 | MEDIUM | 6.5 | 0.8% | Jun 2, 2023 | When dragging and dropping an image cross-origin, the image's size could potentially be leaked. This behavior was shippe... |
| CVE-2023-25740 | HIGH | 8.8 | 0.5% | Jun 2, 2023 | After downloading a Windows <code>.scf</code> script from the local filesystem, an attacker could supply a remote path t... |
| CVE-2023-25739 | HIGH | 8.8 | 0.7% | Jun 2, 2023 | Module load requests that failed were not being checked as to whether or not they were cancelled causing a use-after-fre... |
| CVE-2023-25738 | MEDIUM | 6.5 | 0.6% | Jun 2, 2023 | Members of the <code>DEVMODEW</code> struct set by the printer device driver weren't being validated and could have resu... |
| CVE-2023-25737 | HIGH | 8.8 | 0.7% | Jun 2, 2023 | An invalid downcast from <code>nsTextNode</code> to <code>SVGElement</code> could have lead to undefined behavior. This ... |
| CVE-2023-25735 | HIGH | 8.8 | 0.7% | Jun 2, 2023 | Cross-compartment wrappers wrapping a scripted proxy could have caused objects from other compartments to be stored in t... |
| CVE-2023-25734 | HIGH | 8.1 | 0.8% | Jun 2, 2023 | After downloading a Windows <code>.url</code> shortcut from the local filesystem, an attacker could supply a remote path... |
| CVE-2023-25732 | HIGH | 8.8 | 0.7% | Jun 2, 2023 | When encoding data from an <code>inputStream</code> in <code>xpcom</code> the size of the input being encoded was not co... |
| CVE-2023-25731 | HIGH | 8.8 | 0.6% | Jun 2, 2023 | Due to URL previews in the network panel of developer tools improperly storing URLs, query parameters could potentially ... |
| CVE-2023-25730 | MEDIUM | 5.4 | 0.5% | Jun 2, 2023 | A background script invoking <code>requestFullscreen</code> and then blocking the main thread could force the browser in... |
| CVE-2023-25729 | HIGH | 8.8 | 0.7% | Jun 2, 2023 | Permission prompts for opening external schemes were only shown for <code>ContentPrincipals</code> resulting in extensio... |
| CVE-2023-25728 | MEDIUM | 6.5 | 0.7% | Jun 2, 2023 | The <code>Content-Security-Policy-Report-Only</code> header could allow an attacker to leak a child iframe's unredacted ... |
| CVE-2023-23606 | HIGH | 8.8 | 0.5% | Jun 2, 2023 | Mozilla developers and the Mozilla Fuzzing Team reported memory safety bugs present in Firefox 108. Some of these bugs s... |
| CVE-2023-23605 | HIGH | 8.8 | 0.7% | Jun 2, 2023 | Mozilla developers and the Mozilla Fuzzing Team reported memory safety bugs present in Firefox 108 and Firefox ESR 102.6... |
| CVE-2023-23604 | MEDIUM | 6.5 | 0.5% | Jun 2, 2023 | A duplicate `SystemPrincipal` object could be created when parsing a non-system html document via `DOMParser::ParseFromS... |
| CVE-2023-23603 | MEDIUM | 6.5 | 0.6% | Jun 2, 2023 | Regular expressions used to filter out forbidden properties and values from style directives in calls to `console.log` w... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now