2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-23884 | MEDIUM | 4.8 | 0.4% | May 9, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Kanban for WordPress Kanban Boards for WordPress plugi... |
| CVE-2023-23883 | MEDIUM | 4.8 | 0.4% | May 9, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in David Gwyer WP Content Filter plugin <= 3.0.1 versions... |
| CVE-2023-23862 | MEDIUM | 5.4 | 0.4% | May 9, 2023 | Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Gopi Ramasamy Vertical scroll recent post plugin... |
| CVE-2023-23734 | MEDIUM | 4.8 | 0.4% | May 9, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in David Voswinkel Userlike – WordPress Live Chat plugin ... |
| CVE-2023-23733 | MEDIUM | 4.8 | 0.4% | May 9, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Joel James Lazy Social Comments plugin <= 2.0.4 versio... |
| CVE-2023-23732 | MEDIUM | 4.8 | 0.4% | May 9, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Joel James Disqus Conditional Load plugin <= 11.0.6 ve... |
| CVE-2023-2591 | MEDIUM | 5.4 | 0.6% | May 9, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in GitHub repository nilsteampassne... |
| CVE-2023-23793 | MEDIUM | 4.8 | 0.4% | May 9, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Eightweb Interactive Read More Without Refresh plugin ... |
| CVE-2023-23664 | MEDIUM | 5.4 | 0.4% | May 9, 2023 | Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in ConvertBox ConvertBox Auto Embed WordPress plugi... |
| CVE-2023-23863 | MEDIUM | 4.8 | 0.4% | May 9, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Black and White Digital Ltd TreePress – Easy Family Tr... |
| CVE-2023-2590 | LOW | 3.5 | 0.5% | May 9, 2023 | Missing Authorization in GitHub repository answerdev/answer prior to 1.0.9. |
| CVE-2023-30237 | HIGH | 7.8 | 0.4% | May 9, 2023 | CyberGhostVPN Windows Client before v8.3.10.10015 was discovered to contain a DLL injection vulnerability via the compon... |
| CVE-2023-32113 | CRITICAL | 9.3 | 0.5% | May 9, 2023 | SAP GUI for Windows - version 7.70, 8.0, allows an unauthorized attacker to gain NTLM authentication information of a vi... |
| CVE-2023-32112 | MEDIUM | 5.5 | 0.1% | May 9, 2023 | Vendor Master Hierarchy - versions SAP_APPL 500, SAP_APPL 600, SAP_APPL 602, SAP_APPL 603, SAP_APPL 604, SAP_APPL 605, S... |
| CVE-2023-32111 | HIGH | 7.5 | 0.6% | May 9, 2023 | In SAP PowerDesigner (Proxy) - version 16.7, an attacker can send a crafted request from a remote host to the proxy mach... |
| CVE-2023-31407 | MEDIUM | 5.4 | 0.3% | May 9, 2023 | SAP Business Planning and Consolidation - versions 740, 750, allows an authorized attacker to upload a malicious file, r... |
| CVE-2023-31406 | MEDIUM | 6.1 | 0.5% | May 9, 2023 | Due to insufficient input validation, SAP BusinessObjects Business Intelligence Platform - versions 420, 430, allows an ... |
| CVE-2023-31404 | MEDIUM | 5 | 0.5% | May 9, 2023 | Under certain conditions, SAP BusinessObjects Business Intelligence Platform (Central Management Service) - versions 420... |
| CVE-2023-30744 | CRITICAL | 9.1 | 0.6% | May 9, 2023 | In SAP AS NetWeaver JAVA - versions SERVERCORE 7.50, J2EE-FRMW 7.50, CORE-TOOLS 7.50, an unauthenticated attacker can at... |
| CVE-2023-30743 | MEDIUM | 6.1 | 0.4% | May 9, 2023 | Due to improper neutralization of input in SAPUI5 - versions SAP_UI 750, SAP_UI 754, SAP_UI 755, SAP_UI 756, SAP_UI 757,... |
| CVE-2023-30742 | MEDIUM | 6.1 | 0.4% | May 9, 2023 | SAP CRM (WebClient UI) - versions S4FND 102, S4FND 103, S4FND 104, S4FND 105, S4FND 106, S4FND 107, WEBCUIF 700, WEBCUIF... |
| CVE-2023-30741 | MEDIUM | 6.1 | 0.4% | May 9, 2023 | Due to insufficient input validation, SAP BusinessObjects Business Intelligence Platform - versions 420, 430, allows an ... |
| CVE-2023-30740 | HIGH | 7.6 | 0.5% | May 9, 2023 | SAP BusinessObjects Business Intelligence Platform - versions 420, 430, allows an authenticated attacker to access sensi... |
| CVE-2023-29092 | HIGH | 7.8 | 0.2% | May 9, 2023 | An issue was discovered in Exynos Mobile Processor and Modem for Exynos Modem 5123, Exynos Modem 5300, Exynos 980, and E... |
| CVE-2023-29188 | MEDIUM | 5.4 | 0.4% | May 9, 2023 | SAP CRM WebClient UI - versions SAPSCORE 129, S4FND 102, S4FND 103, S4FND 104, S4FND 105, S4FND 106, S4FND 107, WEBCUIF ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now