2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-51481 | CRITICAL | 9.8 | 0.5% | May 17, 2024 | Improper Privilege Management vulnerability in powerfulwp Local Delivery Drivers for WooCommerce allows Privilege Escala... |
| CVE-2023-51476 | CRITICAL | 9.8 | 0.5% | May 17, 2024 | Improper Privilege Management vulnerability in IOSS WP MLM Unilevel allows Privilege Escalation.This issue affects WP ML... |
| CVE-2023-51424 | CRITICAL | 9.8 | 0.7% | May 17, 2024 | Improper Privilege Management vulnerability in Saleswonder Team WebinarIgnition allows Privilege Escalation.This issue a... |
| CVE-2023-47868 | CRITICAL | 9.8 | 0.5% | May 17, 2024 | Improper Privilege Management vulnerability in wpForo wpForo Forum allows Privilege Escalation.This issue affects wpForo... |
| CVE-2023-47178 | CRITICAL | 9.8 | 0.6% | May 17, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in POSIMYTH Innovation The ... |
| CVE-2023-41957 | CRITICAL | 9.8 | 0.6% | May 17, 2024 | Improper Privilege Management vulnerability in smp7, wp.Insider Simple Membership allows Privilege Escalation.This issue... |
| CVE-2023-37999 | CRITICAL | 9.8 | 3.0% | May 17, 2024 | Improper Privilege Management vulnerability in HasThemes HT Mega allows Privilege Escalation.This issue affects HT Mega:... |
| CVE-2023-37888 | CRITICAL | 9.8 | 0.7% | May 17, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in By Averta Shortcodes and... |
| CVE-2023-32297 | CRITICAL | 9 | 0.6% | May 17, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in LWS LWS Affiliation allo... |
| CVE-2023-32244 | CRITICAL | 9.8 | 0.8% | May 17, 2024 | Improper Privilege Management vulnerability in xtemos Woodmart Core allows Privilege Escalation.This issue affects Woodm... |
| CVE-2023-26540 | CRITICAL | 9.8 | 2.7% | May 17, 2024 | Improper Privilege Management vulnerability in Favethemes Houzez allows Privilege Escalation.This issue affects Houzez: ... |
| CVE-2023-26009 | CRITICAL | 9.8 | 2.7% | May 17, 2024 | Improper Privilege Management vulnerability in Favethemes Houzez Login Register allows Privilege Escalation.This issue a... |
| CVE-2023-25701 | CRITICAL | 9.8 | 0.8% | May 17, 2024 | Improper Privilege Management vulnerability in WhatArmy WatchTowerHQ allows Privilege Escalation.This issue affects Watc... |
| CVE-2023-25444 | CRITICAL | 9.1 | 0.7% | May 17, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in JS Help Desk JS Help Desk – Best Help Desk & Support Pl... |
| CVE-2023-23645 | CRITICAL | 9.9 | 1.0% | May 17, 2024 | Improper Control of Generation of Code ('Code Injection') vulnerability in MainWP MainWP Code Snippets Extension allows ... |
| CVE-2023-48643 | CRITICAL | 9.8 | 1.1% | May 16, 2024 | Shrubbery tac_plus 2.x, 3.x. and 4.x through F4.0.4.28 allows unauthenticated Remote Command Execution. The product allo... |
| CVE-2023-43040 | CRITICAL | 9.8 | 2.5% | May 14, 2024 | IBM Spectrum Fusion HCI 2.5.2 through 2.7.2 could allow an attacker to perform unauthorized actions in RGW for Ceph due ... |
| CVE-2023-46012 | CRITICAL | 9.8 | 1.6% | May 7, 2024 | Buffer Overflow vulnerability LINKSYS EA7500 3.0.1.207964 allows a remote attacker to execute arbitrary code via an HTTP... |
| CVE-2023-38724 | CRITICAL | 9.8 | 0.5% | May 3, 2024 | IBM Cognos Controller 10.4.1, 10.4.2, and 11.0.0 is vulnerable to SQL injection. A remote attacker could send specially ... |
| CVE-2023-51633 | CRITICAL | 9.6 | 1.1% | May 3, 2024 | Centreon sysName Cross-Site Scripting Remote Code Execution Vulnerability. This vulnerability allows remote attackers to... |
| CVE-2023-51595 | CRITICAL | 9.8 | 48.2% | May 3, 2024 | Voltronic Power ViewPower Pro selectDeviceListBy SQL Injection Remote Code Execution Vulnerability. This vulnerability a... |
| CVE-2023-51593 | CRITICAL | 9.8 | 1.6% | May 3, 2024 | Voltronic Power ViewPower Pro Expression Language Injection Remote Code Execution Vulnerability. This vulnerability allo... |
| CVE-2023-51590 | CRITICAL | 9.8 | 1.5% | May 3, 2024 | Voltronic Power ViewPower Pro UpLoadAction Unrestricted File Upload Remote Code Execution Vulnerability. This vulnerabil... |
| CVE-2023-51586 | CRITICAL | 9.8 | 1.3% | May 3, 2024 | Voltronic Power ViewPower Pro selectEventConfig SQL Injection Remote Code Execution Vulnerability. This vulnerability al... |
| CVE-2023-51583 | CRITICAL | 9.8 | 1.5% | May 3, 2024 | Voltronic Power ViewPower UpsScheduler Exposed Dangerous Method Remote Code Execution Vulnerability. This vulnerability ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now