2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-51492 | MEDIUM | 5.4 | 0.3% | Feb 10, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in If So Plugin If-So... |
| CVE-2023-51488 | MEDIUM | 6.1 | 0.4% | Feb 10, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Automattic, Inc. C... |
| CVE-2023-51485 | MEDIUM | 5.4 | 0.3% | Feb 10, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WP Hosting Pay wit... |
| CVE-2023-51480 | MEDIUM | 5.4 | 0.3% | Feb 10, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in realmag777 Active ... |
| CVE-2023-51415 | MEDIUM | 5.4 | 0.3% | Feb 10, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in GiveWP GiveWP – Do... |
| CVE-2023-51404 | MEDIUM | 5.4 | 0.3% | Feb 10, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in MyAgilePrivacy My ... |
| CVE-2023-45698 | MEDIUM | 6.1 | 0.3% | Feb 10, 2024 | Sametime is impacted by lack of clickjacking protection in Outlook add-in. The application is not implementing appropria... |
| CVE-2023-28077 | MEDIUM | 4.4 | 0.2% | Feb 10, 2024 | Dell BSAFE SSL-J, versions prior to 6.5, and versions 7.0 and 7.1 contain a debug message revealing unnecessary informa... |
| CVE-2023-6935 | MEDIUM | 5.9 | 0.5% | Feb 9, 2024 | wolfSSL SP Math All RSA implementation is vulnerable to the Marvin Attack, new variation of a timing Bleichenbacher styl... |
| CVE-2023-45716 | MEDIUM | 4.1 | 0.1% | Feb 9, 2024 | Sametime is impacted by sensitive information passed in URL. |
| CVE-2023-39683 | MEDIUM | 6.1 | 0.5% | Feb 9, 2024 | Cross Site Scripting (XSS) vulnerability in EasyEmail v.4.12.2 and before allows a local attacker to execute arbitrary c... |
| CVE-2023-31506 | MEDIUM | 5.4 | 1.0% | Feb 9, 2024 | A cross-site scripting (XSS) vulnerability in Grav versions 1.7.44 and before, allows remote authenticated attackers to ... |
| CVE-2023-45190 | MEDIUM | 6.1 | 0.3% | Feb 9, 2024 | IBM Engineering Lifecycle Optimization 7.0.2 and 7.0.3 is vulnerable to HTTP header injection, caused by improper valida... |
| CVE-2023-42016 | MEDIUM | 4.3 | 0.3% | Feb 9, 2024 | IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.0.3.8 and 6.1.0.0 through 6.1.2.3 does not set the secure... |
| CVE-2023-32341 | MEDIUM | 6.5 | 0.6% | Feb 9, 2024 | IBM Sterling B2B Integrator 6.0.0.0 through 6.0.3.8 and 6.1.0.0 through 6.1.2.3 could allow an authenticated user to cau... |
| CVE-2023-51630 | MEDIUM | 6.1 | 1.7% | Feb 8, 2024 | Paessler PRTG Network Monitor Cross-Site Scripting Authentication Bypass Vulnerability. This vulnerability allows remote... |
| CVE-2023-40264 | MEDIUM | 4.3 | 0.5% | Feb 8, 2024 | An issue was discovered in Atos Unify OpenScape Voice Trace Manager V8 before V8 R0.9.11. It allows authenticated path t... |
| CVE-2023-40262 | MEDIUM | 6.1 | 0.3% | Feb 8, 2024 | An issue was discovered in Atos Unify OpenScape Voice Trace Manager V8 before V8 R0.9.11. It allows unauthenticated Stor... |
| CVE-2023-49101 | MEDIUM | 6.1 | 0.2% | Feb 8, 2024 | WebAdmin in Axigen 10.3.x before 10.3.3.61, 10.4.x before 10.4.24, and 10.5.x before 10.5.10 allows XSS attacks against ... |
| CVE-2023-7169 | MEDIUM | 5.5 | 0.2% | Feb 8, 2024 | Authentication Bypass by Spoofing vulnerability in Snow Software Snow Inventory Agent on Windows allows Signature Spoof.... |
| CVE-2023-6564 | MEDIUM | 6.5 | 0.4% | Feb 8, 2024 | An issue has been discovered in GitLab EE Premium and Ultimate affecting versions 16.4.3, 16.5.3, and 16.6.1. In project... |
| CVE-2023-5665 | MEDIUM | 5.4 | 0.5% | Feb 8, 2024 | The Payment Forms for Paystack plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortc... |
| CVE-2023-47798 | MEDIUM | 4.6 | 0.3% | Feb 8, 2024 | Account lockout in Liferay Portal 7.2.0 through 7.3.0, and older unsupported versions, and Liferay DXP 7.2 before fix pa... |
| CVE-2023-6840 | MEDIUM | 6.7 | 0.6% | Feb 7, 2024 | An issue has been discovered in GitLab EE affecting all versions from 16.4 prior to 16.6.7, 16.7 prior to 16.7.5, and 16... |
| CVE-2023-6736 | MEDIUM | 6.5 | 0.6% | Feb 7, 2024 | An issue has been discovered in GitLab EE affecting all versions starting from 11.3 before 16.7.6, all versions starting... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now