2023 CVE Vulnerabilities

31,442 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-0719MEDIUM4.3The Wicked Folders plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the a...
CVE-2023-0712MEDIUM4.3The Wicked Folders plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the a...
CVE-2023-0728MEDIUM4.3The Wicked Folders plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2....
CVE-2023-0713MEDIUM4.3The Wicked Folders plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the a...
CVE-2023-23931MEDIUM6.5cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. In affected vers...
CVE-2023-0705HIGH7.5Integer overflow in Core in Google Chrome prior to 110.0.5481.77 allowed a remote attacker who had one a race condition ...
CVE-2023-0704MEDIUM6.5Insufficient policy enforcement in DevTools in Google Chrome prior to 110.0.5481.77 allowed a remote attacker to bypass ...
CVE-2023-0703HIGH8.8Type confusion in DevTools in Google Chrome prior to 110.0.5481.77 allowed a remote attacker who convinced a user to eng...
CVE-2023-0702HIGH8.8Type confusion in Data Transfer in Google Chrome prior to 110.0.5481.77 allowed a remote attacker who convinced a user t...
CVE-2023-0701HIGH8.8Heap buffer overflow in WebUI in Google Chrome prior to 110.0.5481.77 allowed a remote attacker who convinced a user to ...
CVE-2023-0700MEDIUM6.5Inappropriate implementation in Download in Google Chrome prior to 110.0.5481.77 allowed a remote attacker to potentiall...
CVE-2023-0699HIGH8.8Use after free in GPU in Google Chrome prior to 110.0.5481.77 allowed a remote attacker to potentially exploit heap corr...
CVE-2023-0698HIGH8.8Out of bounds read in WebRTC in Google Chrome prior to 110.0.5481.77 allowed a remote attacker to perform an out of boun...
CVE-2023-0697MEDIUM6.5Inappropriate implementation in Full screen mode in Google Chrome on Android prior to 110.0.5481.77 allowed a remote att...
CVE-2023-0696HIGH8.8Type confusion in V8 in Google Chrome prior to 110.0.5481.77 allowed a remote attacker to potentially exploit heap corru...
CVE-2023-25194HIGH8.8A possible security vulnerability has been identified in Apache Kafka Connect API. This requires access to a Kafka Conne...
CVE-2023-0732MEDIUM6.1A vulnerability has been found in SourceCodester Online Eyewear Shop 1.0 and classified as problematic. Affected by this...
CVE-2023-24814MEDIUM6.1TYPO3 is a free and open source Content Management Framework released under the GNU General Public License. In affected ...
CVE-2023-24813CRITICAL9.8Dompdf is an HTML to PDF converter written in php. Due to the difference in the attribute parser of Dompdf and php-svg-l...
CVE-2023-22735MEDIUM4.6Zulip is an open-source team collaboration tool. In versions of zulip prior to commit `2f6c5a8` but after commit `04cf68...
CVE-2023-0707CRITICAL9.8A vulnerability was found in SourceCodester Medical Certificate Generator App 1.0. It has been rated as critical. Affect...
CVE-2023-23696HIGH7.8 Dell Command Intel vPro Out of Band, versions prior to 4.3.1, contain an Improper Authorization vulnerability. A locall...
CVE-2023-22643HIGH7.8An Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in libzypp-p...
CVE-2023-0706HIGH8.8A vulnerability, which was classified as critical, has been found in SourceCodester Medical Certificate Generator App 1....
CVE-2023-24827HIGH7.5syft is a a CLI tool and Go library for generating a Software Bill of Materials (SBOM) from container images and filesys...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now