2023 CVE Vulnerabilities
31,442 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-0719 | MEDIUM | 4.3 | 0.6% | Feb 7, 2023 | The Wicked Folders plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the a... |
| CVE-2023-0712 | MEDIUM | 4.3 | 0.6% | Feb 7, 2023 | The Wicked Folders plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the a... |
| CVE-2023-0728 | MEDIUM | 4.3 | 0.3% | Feb 7, 2023 | The Wicked Folders plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2.... |
| CVE-2023-0713 | MEDIUM | 4.3 | 0.6% | Feb 7, 2023 | The Wicked Folders plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the a... |
| CVE-2023-23931 | MEDIUM | 6.5 | 1.3% | Feb 7, 2023 | cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. In affected vers... |
| CVE-2023-0705 | HIGH | 7.5 | 0.7% | Feb 7, 2023 | Integer overflow in Core in Google Chrome prior to 110.0.5481.77 allowed a remote attacker who had one a race condition ... |
| CVE-2023-0704 | MEDIUM | 6.5 | 0.9% | Feb 7, 2023 | Insufficient policy enforcement in DevTools in Google Chrome prior to 110.0.5481.77 allowed a remote attacker to bypass ... |
| CVE-2023-0703 | HIGH | 8.8 | 0.7% | Feb 7, 2023 | Type confusion in DevTools in Google Chrome prior to 110.0.5481.77 allowed a remote attacker who convinced a user to eng... |
| CVE-2023-0702 | HIGH | 8.8 | 0.7% | Feb 7, 2023 | Type confusion in Data Transfer in Google Chrome prior to 110.0.5481.77 allowed a remote attacker who convinced a user t... |
| CVE-2023-0701 | HIGH | 8.8 | 0.7% | Feb 7, 2023 | Heap buffer overflow in WebUI in Google Chrome prior to 110.0.5481.77 allowed a remote attacker who convinced a user to ... |
| CVE-2023-0700 | MEDIUM | 6.5 | 0.7% | Feb 7, 2023 | Inappropriate implementation in Download in Google Chrome prior to 110.0.5481.77 allowed a remote attacker to potentiall... |
| CVE-2023-0699 | HIGH | 8.8 | 0.8% | Feb 7, 2023 | Use after free in GPU in Google Chrome prior to 110.0.5481.77 allowed a remote attacker to potentially exploit heap corr... |
| CVE-2023-0698 | HIGH | 8.8 | 0.6% | Feb 7, 2023 | Out of bounds read in WebRTC in Google Chrome prior to 110.0.5481.77 allowed a remote attacker to perform an out of boun... |
| CVE-2023-0697 | MEDIUM | 6.5 | 0.5% | Feb 7, 2023 | Inappropriate implementation in Full screen mode in Google Chrome on Android prior to 110.0.5481.77 allowed a remote att... |
| CVE-2023-0696 | HIGH | 8.8 | 0.6% | Feb 7, 2023 | Type confusion in V8 in Google Chrome prior to 110.0.5481.77 allowed a remote attacker to potentially exploit heap corru... |
| CVE-2023-25194 | HIGH | 8.8 | 95.3% | Feb 7, 2023 | A possible security vulnerability has been identified in Apache Kafka Connect API. This requires access to a Kafka Conne... |
| CVE-2023-0732 | MEDIUM | 6.1 | 0.4% | Feb 7, 2023 | A vulnerability has been found in SourceCodester Online Eyewear Shop 1.0 and classified as problematic. Affected by this... |
| CVE-2023-24814 | MEDIUM | 6.1 | 0.8% | Feb 7, 2023 | TYPO3 is a free and open source Content Management Framework released under the GNU General Public License. In affected ... |
| CVE-2023-24813 | CRITICAL | 9.8 | 2.5% | Feb 7, 2023 | Dompdf is an HTML to PDF converter written in php. Due to the difference in the attribute parser of Dompdf and php-svg-l... |
| CVE-2023-22735 | MEDIUM | 4.6 | 0.5% | Feb 7, 2023 | Zulip is an open-source team collaboration tool. In versions of zulip prior to commit `2f6c5a8` but after commit `04cf68... |
| CVE-2023-0707 | CRITICAL | 9.8 | 0.3% | Feb 7, 2023 | A vulnerability was found in SourceCodester Medical Certificate Generator App 1.0. It has been rated as critical. Affect... |
| CVE-2023-23696 | HIGH | 7.8 | 0.5% | Feb 7, 2023 | Dell Command Intel vPro Out of Band, versions prior to 4.3.1, contain an Improper Authorization vulnerability. A locall... |
| CVE-2023-22643 | HIGH | 7.8 | 2.4% | Feb 7, 2023 | An Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in libzypp-p... |
| CVE-2023-0706 | HIGH | 8.8 | 0.3% | Feb 7, 2023 | A vulnerability, which was classified as critical, has been found in SourceCodester Medical Certificate Generator App 1.... |
| CVE-2023-24827 | HIGH | 7.5 | 0.8% | Feb 7, 2023 | syft is a a CLI tool and Go library for generating a Software Bill of Materials (SBOM) from container images and filesys... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now