2023 CVE Vulnerabilities

31,411 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-23884MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Kanban for WordPress Kanban Boards for WordPress plugi...
CVE-2023-23883MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in David Gwyer WP Content Filter plugin <= 3.0.1 versions...
CVE-2023-23862MEDIUM5.4Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Gopi Ramasamy Vertical scroll recent post plugin...
CVE-2023-23734MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in David Voswinkel Userlike – WordPress Live Chat plugin ...
CVE-2023-23733MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Joel James Lazy Social Comments plugin <= 2.0.4 versio...
CVE-2023-23732MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Joel James Disqus Conditional Load plugin <= 11.0.6 ve...
CVE-2023-2591MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in GitHub repository nilsteampassne...
CVE-2023-23793MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Eightweb Interactive Read More Without Refresh plugin ...
CVE-2023-23664MEDIUM5.4Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in ConvertBox ConvertBox Auto Embed WordPress plugi...
CVE-2023-23863MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Black and White Digital Ltd TreePress – Easy Family Tr...
CVE-2023-2590LOW3.5Missing Authorization in GitHub repository answerdev/answer prior to 1.0.9.
CVE-2023-30237HIGH7.8CyberGhostVPN Windows Client before v8.3.10.10015 was discovered to contain a DLL injection vulnerability via the compon...
CVE-2023-32113CRITICAL9.3SAP GUI for Windows - version 7.70, 8.0, allows an unauthorized attacker to gain NTLM authentication information of a vi...
CVE-2023-32112MEDIUM5.5Vendor Master Hierarchy - versions SAP_APPL 500, SAP_APPL 600, SAP_APPL 602, SAP_APPL 603, SAP_APPL 604, SAP_APPL 605, S...
CVE-2023-32111HIGH7.5In SAP PowerDesigner (Proxy) - version 16.7, an attacker can send a crafted request from a remote host to the proxy mach...
CVE-2023-31407MEDIUM5.4SAP Business Planning and Consolidation - versions 740, 750, allows an authorized attacker to upload a malicious file, r...
CVE-2023-31406MEDIUM6.1Due to insufficient input validation, SAP BusinessObjects Business Intelligence Platform - versions 420, 430, allows an ...
CVE-2023-31404MEDIUM5Under certain conditions, SAP BusinessObjects Business Intelligence Platform (Central Management Service) - versions 420...
CVE-2023-30744CRITICAL9.1In SAP AS NetWeaver JAVA - versions SERVERCORE 7.50, J2EE-FRMW 7.50, CORE-TOOLS 7.50, an unauthenticated attacker can at...
CVE-2023-30743MEDIUM6.1Due to improper neutralization of input in SAPUI5 - versions SAP_UI 750, SAP_UI 754, SAP_UI 755, SAP_UI 756, SAP_UI 757,...
CVE-2023-30742MEDIUM6.1SAP CRM (WebClient UI) - versions S4FND 102, S4FND 103, S4FND 104, S4FND 105, S4FND 106, S4FND 107, WEBCUIF 700, WEBCUIF...
CVE-2023-30741MEDIUM6.1Due to insufficient input validation, SAP BusinessObjects Business Intelligence Platform - versions 420, 430, allows an ...
CVE-2023-30740HIGH7.6SAP BusinessObjects Business Intelligence Platform - versions 420, 430, allows an authenticated attacker to access sensi...
CVE-2023-29092HIGH7.8An issue was discovered in Exynos Mobile Processor and Modem for Exynos Modem 5123, Exynos Modem 5300, Exynos 980, and E...
CVE-2023-29188MEDIUM5.4SAP CRM WebClient UI - versions SAPSCORE 129, S4FND 102, S4FND 103, S4FND 104, S4FND 105, S4FND 106, S4FND 107, WEBCUIF ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now