2023 CVE Vulnerabilities

31,442 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-0168MEDIUM5.4The Olevmedia Shortcodes WordPress plugin through 1.1.9 does not validate and escape some of its shortcode attributes be...
CVE-2023-0043MEDIUM6.1The Custom Add User WordPress plugin through 2.0.2 does not sanitise and escape a parameter before outputting it back in...
CVE-2023-27266LOW2.7Mattermost fails to honor the ShowEmailAddress setting when constructing a response to the /api/v4/users/me/teams API e...
CVE-2023-27265LOW2.7Mattermost fails to honor the ShowEmailAddress setting when constructing a response to the "Regenerate Invite Id" API en...
CVE-2023-27264MEDIUM6.5A missing permissions check in Mattermost Playbooks in Mattermost allows an attacker to modify a playbook via the /plugi...
CVE-2023-27263MEDIUM6.5A missing permissions check in the /plugins/playbooks/api/v0/runs API in Mattermost allows an attacker to list and view ...
CVE-2023-26042MEDIUM6.1Part-DB is an open source inventory management system for your electronic components. User input was found not being pro...
CVE-2023-22860MEDIUM5.4IBM Cloud Pak for Business Automation 18.0.0, 18.0.1, 18.0.2, 19.0.1, 19.0.2, 19.0.3, 20.0.1, 20.0.2, 20.0.3, 21.0.1, 21...
CVE-2023-23109HIGH7.5In crasm 1.8-3, invalid input validation, specific files passed to the command line application, can lead to a divide by...
CVE-2023-23108HIGH7.5In crasm 1.8-3, invalid input validation, specific files passed to the command line application, can lead to a NULL poin...
CVE-2023-23080CRITICAL9.8Certain Tenda products are vulnerable to command injection. This affects Tenda CP7 Tenda CP7<=V11.10.00.2211041403 and T...
CVE-2023-1068MEDIUM4.3The Download Read More Excerpt Link plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, ...
CVE-2023-1067MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/pimcore prior to 10.5.18.
CVE-2023-24206CRITICAL9.8Davinci v0.3.0-rc was discovered to contain a SQL injection vulnerability via the copyDisplay function.
CVE-2023-1063HIGH8.8A vulnerability has been found in SourceCodester Doctors Appointment System 1.0 and classified as critical. Affected by ...
CVE-2023-1062HIGH8.8A vulnerability, which was classified as critical, was found in SourceCodester Doctors Appointment System 1.0. Affected ...
CVE-2023-1061HIGH8.8A vulnerability, which was classified as critical, has been found in SourceCodester Doctors Appointment System 1.0. This...
CVE-2023-1059HIGH8.8A vulnerability classified as critical was found in SourceCodester Doctors Appointment System 1.0. This vulnerability af...
CVE-2023-1058HIGH8.8A vulnerability classified as critical has been found in SourceCodester Doctors Appointment System 1.0. This affects an ...
CVE-2023-1057HIGH8.8A vulnerability was found in SourceCodester Doctors Appointment System 1.0. It has been rated as critical. Affected by t...
CVE-2023-1056HIGH8.8A vulnerability was found in SourceCodester Doctors Appointment System 1.0. It has been declared as critical. Affected b...
CVE-2023-1054CRITICAL9.8A vulnerability was found in SourceCodester Music Gallery Site 1.0. It has been classified as critical. Affected is an u...
CVE-2023-1053CRITICAL9.8A vulnerability was found in SourceCodester Music Gallery Site 1.0 and classified as critical. This issue affects some u...
CVE-2023-22636LOW3.3An unauthorized configuration download vulnerability in FortiWeb 6.3.6 through 6.3.21, 6.4.0 through 6.4.2 and 7.0.0 thr...
CVE-2023-26257HIGH7.5An issue was discovered in the Connected Vehicle Systems Alliance (COVESA; formerly GENIVI) dlt-daemon through 2.18.8. D...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now