2023 CVE Vulnerabilities
31,440 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-31084 | MEDIUM | 5.5 | 0.4% | Apr 24, 2023 | An issue was discovered in drivers/media/dvb-core/dvb_frontend.c in the Linux kernel 6.2. There is a blocking operation ... |
| CVE-2023-31083 | MEDIUM | 4.7 | 0.3% | Apr 24, 2023 | An issue was discovered in drivers/bluetooth/hci_ldisc.c in the Linux kernel 6.2. In hci_uart_tty_ioctl, there is a race... |
| CVE-2023-31082 | MEDIUM | 5.5 | 0.4% | Apr 24, 2023 | An issue was discovered in drivers/tty/n_gsm.c in the Linux kernel 6.2. There is a sleeping function called from an inva... |
| CVE-2023-31081 | MEDIUM | 5.5 | 0.4% | Apr 24, 2023 | An issue was discovered in drivers/media/test-drivers/vidtv/vidtv_bridge.c in the Linux kernel 6.2. There is a NULL poin... |
| CVE-2023-28131 | CRITICAL | 9.6 | 23.2% | Apr 24, 2023 | A vulnerability in the expo.io framework allows an attacker to take over accounts and steal credentials on an applicatio... |
| CVE-2023-31061 | HIGH | 8.8 | 0.5% | Apr 24, 2023 | Repetier Server through 1.4.10 does not have CSRF protection. |
| CVE-2023-31060 | CRITICAL | 9.8 | 1.2% | Apr 24, 2023 | Repetier Server through 1.4.10 executes as SYSTEM. This can be leveraged in conjunction with CVE-2023-31059 for full com... |
| CVE-2023-31059 | HIGH | 7.5 | 5.6% | Apr 24, 2023 | Repetier Server through 1.4.10 allows ..%5c directory traversal for reading files that contain credentials, as demonstra... |
| CVE-2023-31056 | MEDIUM | 6.5 | 0.6% | Apr 24, 2023 | CloverDX before 5.17.3 writes passwords to the audit log in certain situations, if the audit log is enabled and single s... |
| CVE-2023-23753 | CRITICAL | 9.8 | 0.8% | Apr 23, 2023 | The 'Visforms Base Package for Joomla 3' extension is vulnerable to SQL Injection as concatenation is used to construct ... |
| CVE-2023-31043 | HIGH | 7.5 | 0.4% | Apr 23, 2023 | EnterpriseDB EDB Postgres Advanced Server (EPAS) before 14.6.0 logs unredacted passwords in situations where optional pa... |
| CVE-2023-2246 | CRITICAL | 9.8 | 3.6% | Apr 23, 2023 | A vulnerability has been found in SourceCodester Online Pizza Ordering System 1.0 and classified as critical. This vulne... |
| CVE-2023-23879 | HIGH | 8.8 | 0.3% | Apr 23, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Nicolas Zeh PHP Execution plugin <= 1.0.0 versions. |
| CVE-2023-22686 | HIGH | 8.8 | 0.3% | Apr 23, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in TriniTronic Nice PayPal Button Lite plugin <= 1.3.5 versions. |
| CVE-2023-27614 | MEDIUM | 4.8 | 0.4% | Apr 23, 2023 | Auth. (admin+) Cross-Site Scripting (XSS) vulnerability in Ian Haycox Motor Racing League plugin <= 1.9.9 versions. |
| CVE-2023-27425 | MEDIUM | 4.8 | 0.4% | Apr 23, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in James Irving-Swift Electric Studio Client Login plugin... |
| CVE-2023-25451 | MEDIUM | 4.8 | 0.4% | Apr 23, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in WPChill CPO Content Types plugin <= 1.1.0 versions. |
| CVE-2023-23832 | MEDIUM | 5.4 | 0.4% | Apr 23, 2023 | Auth. (contributor+) Cross-Site Scripting (XSS) vulnerability in TC Ultimate WP Query Search Filter plugin <= 1.0.10 ver... |
| CVE-2023-23827 | MEDIUM | 5.4 | 0.4% | Apr 23, 2023 | Auth. (contributor+) Cross-Site Scripting (XSS) vulnerability in Google Maps v3 Shortcode plugin <= 1.2.1 versions. |
| CVE-2023-23817 | MEDIUM | 5.4 | 0.4% | Apr 23, 2023 | Auth. (contrinbutor+) Cross-Site Scripting (XSS) vulnerability in WebArea | Vera Nedvyzhenko Simple PDF Viewer plugin <=... |
| CVE-2023-23816 | MEDIUM | 4.8 | 0.4% | Apr 23, 2023 | Auth. (admin+) Cross-Site Scripting (XSS) vulnerability in Twardes Sitemap Index plugin <= 1.2.3 versions. |
| CVE-2023-23806 | MEDIUM | 4.8 | 0.4% | Apr 23, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Davinder Singh Custom Settings plugin <= 1.0 versions. |
| CVE-2023-23717 | MEDIUM | 5.4 | 0.4% | Apr 23, 2023 | Auth. (contributor+) Cross-Site Scripting (XSS) vulnerability in George Gecewicz Portfolio Slideshow plugin <= 1.13.0 ve... |
| CVE-2023-24404 | MEDIUM | 6.1 | 0.4% | Apr 23, 2023 | Reflected Cross-Site Scripting (XSS) vulnerability in VryaSage Marketing Performance plugin <= 2.0.0 versions. |
| CVE-2023-24386 | MEDIUM | 4.8 | 0.4% | Apr 23, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Karishma Arora AI Contact Us Form plugin <= 1.0 versio... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now