2023 CVE Vulnerabilities
31,442 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-25928 | MEDIUM | 5.4 | 0.4% | Feb 21, 2023 | IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed a... |
| CVE-2023-0938 | CRITICAL | 9.8 | 1.8% | Feb 21, 2023 | A vulnerability classified as critical has been found in SourceCodester Music Gallery Site 1.0. This affects an unknown ... |
| CVE-2023-0936 | MEDIUM | 6.5 | 0.9% | Feb 21, 2023 | A vulnerability was found in TP-Link Archer C50 V2_160801. It has been rated as problematic. Affected by this issue is s... |
| CVE-2023-0935 | CRITICAL | 9.8 | 4.8% | Feb 21, 2023 | A vulnerability was found in DolphinPHP up to 1.5.1. It has been declared as critical. Affected by this vulnerability is... |
| CVE-2023-26267 | MEDIUM | 6.5 | 0.5% | Feb 21, 2023 | php-saml-sp before 1.1.1 and 2.x before 2.1.1 allows reading arbitrary files as the webserver user because resolving XML... |
| CVE-2023-0559 | MEDIUM | 5.4 | 0.5% | Feb 21, 2023 | The GS Portfolio for Envato WordPress plugin before 1.4.0 does not validate and escape some of its shortcode attributes ... |
| CVE-2023-0541 | MEDIUM | 5.4 | 0.6% | Feb 21, 2023 | The GS Books Showcase WordPress plugin before 1.3.1 does not validate and escape some of its shortcode attributes before... |
| CVE-2023-0540 | MEDIUM | 5.4 | 0.5% | Feb 21, 2023 | The GS Filterable Portfolio WordPress plugin before 1.6.1 does not validate and escape some of its shortcode attributes ... |
| CVE-2023-0492 | MEDIUM | 5.4 | 0.5% | Feb 21, 2023 | The GS Products Slider for WooCommerce WordPress plugin before 1.5.9 does not validate and escape some of its shortcode ... |
| CVE-2023-0453 | MEDIUM | 4.3 | 0.6% | Feb 21, 2023 | The WP Private Message WordPress plugin (bundled with the Superio theme as a required plugin) before 1.0.6 does not ensu... |
| CVE-2023-0442 | MEDIUM | 6.1 | 0.5% | Feb 21, 2023 | The Loan Comparison WordPress plugin before 1.5.3 does not validate and escape some of its query parameters before outpu... |
| CVE-2023-0429 | MEDIUM | 4.8 | 0.5% | Feb 21, 2023 | The Watu Quiz WordPress plugin before 3.3.8.2 does not sanitise and escape some of its settings, which could allow high ... |
| CVE-2023-0428 | MEDIUM | 6.1 | 0.6% | Feb 21, 2023 | The Watu Quiz WordPress plugin before 3.3.8.2 does not sanitise and escape a parameter before outputting it back in the ... |
| CVE-2023-0419 | MEDIUM | 5.4 | 0.5% | Feb 21, 2023 | The Shortcode for Font Awesome WordPress plugin before 1.4.1 does not validate and escape some of its shortcode attribut... |
| CVE-2023-0380 | MEDIUM | 5.4 | 0.5% | Feb 21, 2023 | The Easy Digital Downloads WordPress plugin before 3.1.0.5 does not validate and escape some of its block options before... |
| CVE-2023-0378 | MEDIUM | 5.4 | 0.6% | Feb 21, 2023 | The Greenshift WordPress plugin before 5.0 does not validate and escape some of its block options before outputting them... |
| CVE-2023-0375 | MEDIUM | 5.4 | 0.7% | Feb 21, 2023 | The Easy Affiliate Links WordPress plugin before 3.7.1 does not validate and escape some of its block options before out... |
| CVE-2023-0372 | MEDIUM | 5.4 | 0.5% | Feb 21, 2023 | The EmbedStories WordPress plugin before 0.7.5 does not validate and escape some of its shortcode attributes before outp... |
| CVE-2023-0371 | MEDIUM | 5.4 | 0.5% | Feb 21, 2023 | The EmbedSocial WordPress plugin before 1.1.28 does not validate and escape some of its shortcode attributes before outp... |
| CVE-2023-0366 | MEDIUM | 5.4 | 0.5% | Feb 21, 2023 | The Loan Comparison WordPress plugin before 1.5.3 does not validate and escape some of its shortcode attributes before o... |
| CVE-2023-0285 | MEDIUM | 5.4 | 0.5% | Feb 21, 2023 | The Real Media Library WordPress plugin before 4.18.29 does not sanitise and escape the created folder names, which coul... |
| CVE-2023-0271 | MEDIUM | 5.4 | 0.5% | Feb 21, 2023 | The WP Font Awesome WordPress plugin before 1.7.9 does not validate and escape some of its shortcode attributes before o... |
| CVE-2023-0232 | CRITICAL | 9.8 | 3.3% | Feb 21, 2023 | The ShopLentor WordPress plugin before 2.5.4 unserializes user input from cookies in order to track viewed products and ... |
| CVE-2023-0231 | MEDIUM | 5.4 | 0.5% | Feb 21, 2023 | The ShopLentor WordPress plugin before 2.5.4 does not validate and escape some of its block options before outputting th... |
| CVE-2023-0067 | MEDIUM | 5.4 | 0.5% | Feb 21, 2023 | The Timed Content WordPress plugin before 2.73 does not validate and escape some of its shortcode attributes before outp... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now