2023 CVE Vulnerabilities
31,442 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-0168 | MEDIUM | 5.4 | 0.5% | Feb 27, 2023 | The Olevmedia Shortcodes WordPress plugin through 1.1.9 does not validate and escape some of its shortcode attributes be... |
| CVE-2023-0043 | MEDIUM | 6.1 | 0.5% | Feb 27, 2023 | The Custom Add User WordPress plugin through 2.0.2 does not sanitise and escape a parameter before outputting it back in... |
| CVE-2023-27266 | LOW | 2.7 | 0.5% | Feb 27, 2023 | Mattermost fails to honor the ShowEmailAddress setting when constructing a response to the /api/v4/users/me/teams API e... |
| CVE-2023-27265 | LOW | 2.7 | 0.5% | Feb 27, 2023 | Mattermost fails to honor the ShowEmailAddress setting when constructing a response to the "Regenerate Invite Id" API en... |
| CVE-2023-27264 | MEDIUM | 6.5 | 0.5% | Feb 27, 2023 | A missing permissions check in Mattermost Playbooks in Mattermost allows an attacker to modify a playbook via the /plugi... |
| CVE-2023-27263 | MEDIUM | 6.5 | 0.5% | Feb 27, 2023 | A missing permissions check in the /plugins/playbooks/api/v0/runs API in Mattermost allows an attacker to list and view ... |
| CVE-2023-26042 | MEDIUM | 6.1 | 0.5% | Feb 27, 2023 | Part-DB is an open source inventory management system for your electronic components. User input was found not being pro... |
| CVE-2023-22860 | MEDIUM | 5.4 | 0.4% | Feb 27, 2023 | IBM Cloud Pak for Business Automation 18.0.0, 18.0.1, 18.0.2, 19.0.1, 19.0.2, 19.0.3, 20.0.1, 20.0.2, 20.0.3, 21.0.1, 21... |
| CVE-2023-23109 | HIGH | 7.5 | 0.7% | Feb 27, 2023 | In crasm 1.8-3, invalid input validation, specific files passed to the command line application, can lead to a divide by... |
| CVE-2023-23108 | HIGH | 7.5 | 0.9% | Feb 27, 2023 | In crasm 1.8-3, invalid input validation, specific files passed to the command line application, can lead to a NULL poin... |
| CVE-2023-23080 | CRITICAL | 9.8 | 2.5% | Feb 27, 2023 | Certain Tenda products are vulnerable to command injection. This affects Tenda CP7 Tenda CP7<=V11.10.00.2211041403 and T... |
| CVE-2023-1068 | MEDIUM | 4.3 | 0.3% | Feb 27, 2023 | The Download Read More Excerpt Link plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, ... |
| CVE-2023-1067 | MEDIUM | 5.4 | 0.4% | Feb 27, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/pimcore prior to 10.5.18. |
| CVE-2023-24206 | CRITICAL | 9.8 | 0.7% | Feb 27, 2023 | Davinci v0.3.0-rc was discovered to contain a SQL injection vulnerability via the copyDisplay function. |
| CVE-2023-1063 | HIGH | 8.8 | 0.7% | Feb 27, 2023 | A vulnerability has been found in SourceCodester Doctors Appointment System 1.0 and classified as critical. Affected by ... |
| CVE-2023-1062 | HIGH | 8.8 | 0.7% | Feb 27, 2023 | A vulnerability, which was classified as critical, was found in SourceCodester Doctors Appointment System 1.0. Affected ... |
| CVE-2023-1061 | HIGH | 8.8 | 0.8% | Feb 27, 2023 | A vulnerability, which was classified as critical, has been found in SourceCodester Doctors Appointment System 1.0. This... |
| CVE-2023-1059 | HIGH | 8.8 | 0.8% | Feb 27, 2023 | A vulnerability classified as critical was found in SourceCodester Doctors Appointment System 1.0. This vulnerability af... |
| CVE-2023-1058 | HIGH | 8.8 | 0.8% | Feb 27, 2023 | A vulnerability classified as critical has been found in SourceCodester Doctors Appointment System 1.0. This affects an ... |
| CVE-2023-1057 | HIGH | 8.8 | 0.7% | Feb 27, 2023 | A vulnerability was found in SourceCodester Doctors Appointment System 1.0. It has been rated as critical. Affected by t... |
| CVE-2023-1056 | HIGH | 8.8 | 0.7% | Feb 27, 2023 | A vulnerability was found in SourceCodester Doctors Appointment System 1.0. It has been declared as critical. Affected b... |
| CVE-2023-1054 | CRITICAL | 9.8 | 0.5% | Feb 27, 2023 | A vulnerability was found in SourceCodester Music Gallery Site 1.0. It has been classified as critical. Affected is an u... |
| CVE-2023-1053 | CRITICAL | 9.8 | 0.5% | Feb 27, 2023 | A vulnerability was found in SourceCodester Music Gallery Site 1.0 and classified as critical. This issue affects some u... |
| CVE-2023-22636 | LOW | 3.3 | 0.2% | Feb 27, 2023 | An unauthorized configuration download vulnerability in FortiWeb 6.3.6 through 6.3.21, 6.4.0 through 6.4.2 and 7.0.0 thr... |
| CVE-2023-26257 | HIGH | 7.5 | 1.2% | Feb 27, 2023 | An issue was discovered in the Connected Vehicle Systems Alliance (COVESA; formerly GENIVI) dlt-daemon through 2.18.8. D... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now