2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-6421 | HIGH | 7.5 | 2.4% | Jan 1, 2024 | The Download Manager WordPress plugin before 3.2.83 does not protect file download's passwords, leaking it upon receivin... |
| CVE-2023-6271 | HIGH | 7.5 | 0.7% | Jan 1, 2024 | The Backup Migration WordPress plugin before 1.3.6 stores in-progress backups information in easy to find, publicly-acce... |
| CVE-2023-6113 | HIGH | 7.5 | 0.8% | Jan 1, 2024 | The WP STAGING WordPress Backup Plugin before 3.1.3 and WP STAGING Pro WordPress Backup Plugin before 5.1.3 do not preve... |
| CVE-2023-6064 | HIGH | 7.5 | 0.7% | Jan 1, 2024 | The PayHere Payment Gateway WordPress plugin before 2.2.12 automatically creates publicly-accessible log files containin... |
| CVE-2023-52133 | HIGH | 8.8 | 0.5% | Dec 31, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WhileTrue Most And... |
| CVE-2023-52132 | HIGH | 7.2 | 0.5% | Dec 31, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Jewel Theme WP Adm... |
| CVE-2023-52131 | HIGH | 7.2 | 0.5% | Dec 31, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WP Zinc Page Gener... |
| CVE-2023-51547 | HIGH | 7.2 | 0.5% | Dec 31, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WPManageNinja LLC ... |
| CVE-2023-51503 | HIGH | 7.5 | 0.5% | Dec 31, 2023 | Authorization Bypass Through User-Controlled Key vulnerability in Automattic WooPayments – Fully Integrated Solution Bui... |
| CVE-2023-7193 | HIGH | 8.1 | 0.4% | Dec 31, 2023 | A vulnerability was found in MTab Bookmark up to 1.2.6 and classified as critical. This issue affects some unknown proce... |
| CVE-2023-52185 | HIGH | 7.5 | 0.5% | Dec 31, 2023 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Everestthemes Everest Backup – WordPress Clo... |
| CVE-2023-52134 | HIGH | 7.2 | 0.5% | Dec 31, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Eyal Fitoussi GEO ... |
| CVE-2023-7191 | HIGH | 8.8 | 0.5% | Dec 31, 2023 | A vulnerability, which was classified as critical, was found in S-CMS up to 2.0_build20220529-20231006. This affects an ... |
| CVE-2023-7190 | HIGH | 8.8 | 0.5% | Dec 31, 2023 | A vulnerability, which was classified as critical, has been found in S-CMS up to 2.0_build20220529-20231006. Affected by... |
| CVE-2023-7189 | HIGH | 8.8 | 0.5% | Dec 31, 2023 | A vulnerability classified as critical was found in S-CMS up to 2.0_build20220529-20231006. Affected by this vulnerabili... |
| CVE-2023-7188 | HIGH | 8.1 | 0.5% | Dec 31, 2023 | A vulnerability classified as critical has been found in Shipping 100 Fahuo100 up to 1.1. Affected is an unknown functio... |
| CVE-2023-7187 | HIGH | 8.8 | 0.7% | Dec 31, 2023 | A vulnerability was found in Totolink N350RT 9.3.5u.6139_B20201216. It has been rated as critical. This issue affects so... |
| CVE-2023-7186 | HIGH | 8.8 | 0.5% | Dec 31, 2023 | A vulnerability was found in 7-card Fakabao up to 1.0_build20230805. It has been declared as critical. This vulnerabilit... |
| CVE-2023-7185 | HIGH | 8.8 | 0.5% | Dec 31, 2023 | A vulnerability was found in 7-card Fakabao up to 1.0_build20230805. It has been classified as critical. This affects an... |
| CVE-2023-7184 | HIGH | 8.8 | 0.5% | Dec 31, 2023 | A vulnerability was found in 7-card Fakabao up to 1.0_build20230805 and classified as critical. Affected by this issue i... |
| CVE-2023-7183 | HIGH | 8.8 | 0.5% | Dec 31, 2023 | A vulnerability has been found in 7-card Fakabao up to 1.0_build20230805 and classified as critical. Affected by this vu... |
| CVE-2023-52180 | HIGH | 8.1 | 0.5% | Dec 31, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Really Simple Plug... |
| CVE-2023-49777 | HIGH | 8.8 | 0.7% | Dec 31, 2023 | Deserialization of Untrusted Data vulnerability in YITH YITH WooCommerce Product Add-Ons.This issue affects YITH WooComm... |
| CVE-2023-52182 | HIGH | 8.8 | 0.6% | Dec 31, 2023 | Deserialization of Untrusted Data vulnerability in ARI Soft ARI Stream Quiz – WordPress Quizzes Builder.This issue affec... |
| CVE-2023-39157 | HIGH | 8.8 | 0.6% | Dec 31, 2023 | Improper Control of Generation of Code ('Code Injection') vulnerability in Crocoblock JetElements For Elementor.This iss... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now