2023 CVE Vulnerabilities

31,442 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-27594HIGH7.3Cilium is a networking, observability, and security solution with an eBPF-based dataplane. Prior to versions 1.11.15, 1....
CVE-2023-27593MEDIUM5.5Cilium is a networking, observability, and security solution with an eBPF-based dataplane. Prior to versions 1.11.15, 1....
CVE-2023-27592MEDIUM5.4Miniflux is a feed reader. Since v2.0.25, Miniflux will automatically proxy images served over HTTP to prevent mixed con...
CVE-2023-27591HIGH7.5Miniflux is a feed reader. Prior to version 2.0.43, an unauthenticated user can retrieve Prometheus metrics from a publi...
CVE-2023-28112HIGH8.1Discourse is an open-source discussion platform. Prior to version 3.1.0.beta3 of the `beta` and `tests-passed` branches,...
CVE-2023-28111HIGH7.5Discourse is an open-source discussion platform. Prior to version 3.1.0.beta3 of the `beta` and `tests-passed` branches,...
CVE-2023-28107MEDIUM4.9Discourse is an open-source discussion platform. Prior to version 3.0.2 of the `stable` branch and version 3.1.0.beta3 o...
CVE-2023-25172MEDIUM5.4Discourse is an open-source discussion platform. Prior to version 3.0.1 of the `stable` branch and version 3.1.0.beta2 o...
CVE-2023-0027MEDIUM4.3Rockwell Automation Modbus TCP Server AOI prior to 2.04.00 is vulnerable to an unauthorized user sending a malformed mes...
CVE-2023-26040MEDIUM6.1Discourse is an open-source discussion platform. Between versions 3.1.0.beta2 and 3.1.0.beta3 of the `tests-passed` bran...
CVE-2023-23622MEDIUM4.3Discourse is an open-source discussion platform. Prior to version 3.0.1 of the `stable` branch and version 3.1.0.beta2 o...
CVE-2023-1475CRITICAL9.8A vulnerability, which was classified as critical, has been found in SourceCodester Canteen Management System 1.0. This ...
CVE-2023-1474CRITICAL9.8A vulnerability classified as critical was found in SourceCodester Automatic Question Paper Generator System 1.0. This v...
CVE-2023-1472MEDIUM6.3The RapidLoad Power-Up for Autoptimize plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up t...
CVE-2023-1471MEDIUM6.5The WP Popup Banners plugin for WordPress is vulnerable to SQL Injection via the 'banner_id' parameter in versions up to...
CVE-2023-1470MEDIUM4.8The eCommerce Product Catalog plugin for WordPress is vulnerable to Stored Cross-Site Scripting via some of its settings...
CVE-2023-1469MEDIUM4.8The WP Express Checkout plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘pec_coupon[code]’ par...
CVE-2023-1172MEDIUM6.1The Bookly plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the full name value in versions up to, ...
CVE-2023-1468CRITICAL9.8A vulnerability classified as critical was found in SourceCodester Student Study Center Desk Management System 1.0. Affe...
CVE-2023-1467CRITICAL9.8A vulnerability classified as critical has been found in SourceCodester Student Study Center Desk Management System 1.0....
CVE-2023-1466MEDIUM6.3A vulnerability was found in SourceCodester Student Study Center Desk Management System 1.0. It has been rated as critic...
CVE-2023-1464CRITICAL9.8A vulnerability, which was classified as critical, was found in SourceCodester Medicine Tracker System 1.0. This affects...
CVE-2023-1463MEDIUM5.4Authorization Bypass Through User-Controlled Key in GitHub repository nilsteampassnet/teampass prior to 3.0.0.23.
CVE-2023-1461CRITICAL9.8A vulnerability was found in SourceCodester Canteen Management System 1.0. It has been declared as critical. This vulner...
CVE-2023-1152CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Utarit Information...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now