2023 CVE Vulnerabilities
31,440 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-29007 | HIGH | 7.8 | 6.1% | Apr 25, 2023 | Git is a revision control system. Prior to versions 2.30.9, 2.31.8, 2.32.7, 2.33.8, 2.34.8, 2.35.8, 2.36.6, 2.37.7, 2.38... |
| CVE-2023-24512 | MEDIUM | 6.5 | 0.6% | Apr 25, 2023 | On affected platforms running Arista EOS, an authorized attacker with permissions to perform gNMI requests could craft a... |
| CVE-2023-23839 | MEDIUM | 6.5 | 1.1% | Apr 25, 2023 | The SolarWinds Platform was susceptible to the Exposure of Sensitive Information Vulnerability. This vulnerability allow... |
| CVE-2023-20872 | HIGH | 8.8 | 0.9% | Apr 25, 2023 | VMware Workstation and Fusion contain an out-of-bounds read/write vulnerability in SCSI CD/DVD device emulation. |
| CVE-2023-20871 | HIGH | 7.8 | 0.4% | Apr 25, 2023 | VMware Fusion contains a local privilege escalation vulnerability. A malicious actor with read/write access to the host ... |
| CVE-2023-28084 | MEDIUM | 5.5 | 0.2% | Apr 25, 2023 | HPE OneView and HPE OneView Global Dashboard appliance dumps may expose authentication tokens |
| CVE-2023-25815 | LOW | 2.2 | 1.1% | Apr 25, 2023 | In Git for Windows, the Windows port of Git, no localized messages are shipped with the installer. As a consequence, Git... |
| CVE-2023-25652 | HIGH | 7.5 | 52.2% | Apr 25, 2023 | Git is a revision control system. Prior to versions 2.30.9, 2.31.8, 2.32.7, 2.33.8, 2.34.8, 2.35.8, 2.36.6, 2.37.7, 2.38... |
| CVE-2023-25461 | MEDIUM | 4.8 | 0.4% | Apr 25, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in namithjawahar Wp-Insert plugin <= 2.5.0 versions. |
| CVE-2023-24005 | MEDIUM | 4.8 | 0.4% | Apr 25, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Winwar Media Inline Tweet Sharer – Twitter Sharing Plu... |
| CVE-2023-23995 | MEDIUM | 4.8 | 0.4% | Apr 25, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Tim Reeves & David Stöckl TinyMCE Custom Styles plugin... |
| CVE-2023-23889 | MEDIUM | 5.4 | 0.4% | Apr 25, 2023 | Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Fullworks Quick Paypal Payments plugin <= 5.7.25... |
| CVE-2023-23866 | MEDIUM | 5.4 | 0.4% | Apr 25, 2023 | Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Carlos Moreira Interactive Geo Maps plugin <= 1.... |
| CVE-2023-23710 | MEDIUM | 4.8 | 0.4% | Apr 25, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in miniOrange WordPress Social Login and Register (Discor... |
| CVE-2023-30839 | HIGH | 8.8 | 1.7% | Apr 25, 2023 | PrestaShop is an Open Source e-commerce web application. Versions prior to 8.0.4 and 1.7.8.9 contain a SQL filtering vul... |
| CVE-2023-30838 | CRITICAL | 9.9 | 1.0% | Apr 25, 2023 | PrestaShop is an Open Source e-commerce web application. Prior to versions 8.0.4 and 1.7.8.9, the `ValidateCore::isClean... |
| CVE-2023-2282 | MEDIUM | 6.5 | 0.4% | Apr 25, 2023 | Improper access control in the Web Login listener in Devolutions Remote Desktop Manager 2023.1.22 and earlier on Windows... |
| CVE-2023-28090 | MEDIUM | 5.5 | 0.2% | Apr 25, 2023 | An HPE OneView appliance dump may expose SNMPv3 read credentials |
| CVE-2023-28089 | HIGH | 7.1 | 0.2% | Apr 25, 2023 | An HPE OneView appliance dump may expose FTP credentials for c7000 Interconnect Modules |
| CVE-2023-28088 | HIGH | 7.8 | 0.2% | Apr 25, 2023 | An HPE OneView appliance dump may expose SAN switch administrative credentials |
| CVE-2023-28087 | MEDIUM | 5.5 | 0.2% | Apr 25, 2023 | An HPE OneView appliance dump may expose OneView user accounts |
| CVE-2023-28086 | MEDIUM | 5.5 | 0.2% | Apr 25, 2023 | An HPE OneView appliance dump may expose proxy credential settings |
| CVE-2023-25793 | MEDIUM | 4.8 | 0.4% | Apr 25, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in George Pattihis Link Juice Keeper plugin <= 2.0.2 vers... |
| CVE-2023-25485 | MEDIUM | 4.8 | 0.4% | Apr 25, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Bernhard Kux JSON Content Importer plugin <= 1.3.15 ve... |
| CVE-2023-30545 | MEDIUM | 6.5 | 0.9% | Apr 25, 2023 | PrestaShop is an Open Source e-commerce web application. Prior to versions 8.0.4 and 1.7.8.9, it is possible for a user ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now