2023 CVE Vulnerabilities

31,442 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-0742CRITICAL9Cross-site Scripting (XSS) - Stored in GitHub repository answerdev/answer prior to 1.0.4.
CVE-2023-0741CRITICAL9Cross-site Scripting (XSS) - DOM in GitHub repository answerdev/answer prior to 1.0.4.
CVE-2023-0740CRITICAL9Cross-site Scripting (XSS) - Stored in GitHub repository answerdev/answer prior to 1.0.4.
CVE-2023-0739MEDIUM6.8Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') in GitHub repository answerd...
CVE-2023-0726MEDIUM4.3The Wicked Folders plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2....
CVE-2023-0725MEDIUM4.3The Wicked Folders plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2....
CVE-2023-0724MEDIUM4.3The Wicked Folders plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2....
CVE-2023-0722MEDIUM4.3The Wicked Folders plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2....
CVE-2023-0720MEDIUM4.3The Wicked Folders plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the a...
CVE-2023-0717MEDIUM4.3The Wicked Folders plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the a...
CVE-2023-0716MEDIUM4.3The Wicked Folders plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the a...
CVE-2023-0715MEDIUM4.3The Wicked Folders plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the a...
CVE-2023-0711MEDIUM4.3The Wicked Folders plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the a...
CVE-2023-0685MEDIUM4.3The Wicked Folders plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2....
CVE-2023-0684MEDIUM4.3The Wicked Folders plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the a...
CVE-2023-24828HIGH8.8Onedev is a self-hosted Git Server with CI/CD and Kanban. In versions prior to 7.9.12 the algorithm used to generate acc...
CVE-2023-0718MEDIUM4.3The Wicked Folders plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the a...
CVE-2023-23026MEDIUM6.1Cross site scripting (XSS) vulnerability in sourcecodester oretnom23 sales management system 1.0, allows attackers to ex...
CVE-2023-23011MEDIUM6.1Cross Site Scripting (XSS) vulnerability in InvoicePlane 1.6 via filter_product input to file modal_product_lookups.php.
CVE-2023-0736MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository wallabag/wallabag prior to 2.5.4.
CVE-2023-0735MEDIUM6.5Cross-Site Request Forgery (CSRF) in GitHub repository wallabag/wallabag prior to 2.5.4.
CVE-2023-0731MEDIUM5.4The Interactive Geo Maps plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the action content parame...
CVE-2023-0730MEDIUM4.3The Wicked Folders plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2....
CVE-2023-0727MEDIUM4.3The Wicked Folders plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2....
CVE-2023-0723MEDIUM4.3The Wicked Folders plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2....

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now