2023 CVE Vulnerabilities

31,442 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-1736HIGH8.8A vulnerability, which was classified as critical, has been found in SourceCodester Young Entrepreneur E-Negosyo System ...
CVE-2023-1735CRITICAL9.8A vulnerability classified as critical was found in SourceCodester Young Entrepreneur E-Negosyo System 1.0. Affected by ...
CVE-2023-28835HIGH7.5Nextcloud server is an open source home cloud implementation. In affected versions the generated fallback password when ...
CVE-2023-28833HIGH8.8Nextcloud server is an open source home cloud implementation. In affected versions admins of a server were able to uploa...
CVE-2023-28647MEDIUM6.8Nextcloud iOS is an ios application used to interface with the nextcloud home cloud ecosystem. In versions prior to 4.7....
CVE-2023-28646LOW2.4Nextcloud android is an android app for interfacing with the nextcloud home server ecosystem. In versions from 3.7.0 and...
CVE-2023-28644HIGH7.5Nextcloud server is an open source home cloud implementation. In releases of the 25.0.x branch before 25.0.3 an ineffici...
CVE-2023-28643HIGH8.8Nextcloud server is an open source home cloud implementation. In affected versions when a recipient receives 2 shares wi...
CVE-2023-26482HIGH8.8Nextcloud server is an open source home cloud implementation. In affected versions a missing scope validation allowed us...
CVE-2023-1734CRITICAL9.8A vulnerability classified as critical has been found in SourceCodester Young Entrepreneur E-Negosyo System 1.0. Affecte...
CVE-2023-29059HIGH7.83CX DesktopApp through 18.12.416 has embedded malicious code, as exploited in the wild in March 2023. This affects versi...
CVE-2023-24473HIGH7.5An information disclosure vulnerability exists in the TGAInput::read_tga2_header functionality of OpenImageIO Project Op...
CVE-2023-24472HIGH7.5A denial of service vulnerability exists in the FitsOutput::close() functionality of OpenImageIO Project OpenImageIO v2....
CVE-2023-22845HIGH7.5An out-of-bounds read vulnerability exists in the TGAInput::decode_pixel() functionality of OpenImageIO Project OpenImag...
CVE-2023-25076CRITICAL9.8A buffer overflow vulnerability exists in the handling of wildcard backend hosts of SNIProxy 0.6.0-2 and the master bran...
CVE-2023-1725CRITICAL9.8Server-Side Request Forgery (SSRF) vulnerability in Infoline Project Management System allows Server Side Request Forger...
CVE-2023-28733MEDIUM6.1AnyMailing Joomla Plugin is vulnerable to stored cross site scripting (XSS) in templates and emails of AcyMailing, explo...
CVE-2023-28732HIGH7.5Missing access control in AnyMailing Joomla Plugin allows to list and access files containing sensitive information from...
CVE-2023-28731CRITICAL9.8AnyMailing Joomla Plugin is vulnerable to unauthenticated remote code execution, when being granted access to the campai...
CVE-2023-25040MEDIUM5.4Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Vova Anokhin WordPress Shortcodes Plugin — Short...
CVE-2023-24399MEDIUM5.4Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in OceanWP Ocean Extra plugin <= 2.1.2 versions.
CVE-2023-23681MEDIUM5.4Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Labib Ahmed Image Hover Effects For WPBakery Pag...
CVE-2023-23677MEDIUM6.1Reflected Cross-Site Scripting (XSS) vulnerability in GTmetrix GTmetrix for WordPress plugin <= 0.4.5 versions.
CVE-2023-23675MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Catchsquare WP Smart Preloader plugin <= 1.15 versions...
CVE-2023-23670MEDIUM5.4Auth. (contributor+) Cross-Site Scripting (XSS) vulnerability in Team Heateor Fancy Comments WordPress plugin <= 1.2.10 ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now