2023 CVE Vulnerabilities
31,442 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-0070 | MEDIUM | 5.4 | 0.6% | Feb 6, 2023 | The ResponsiveVoice Text To Speech WordPress plugin before 1.7.7 does not validate and escape some of its shortcode attr... |
| CVE-2023-0062 | MEDIUM | 5.4 | 0.6% | Feb 6, 2023 | The EAN for WooCommerce WordPress plugin before 4.4.3 does not validate and escape some of its shortcode attributes befo... |
| CVE-2023-0687 | CRITICAL | 9.8 | 1.1% | Feb 6, 2023 | A vulnerability was found in GNU C Library 2.38. It has been declared as critical. This vulnerability affects the functi... |
| CVE-2023-24276 | CRITICAL | 9.8 | 1.9% | Feb 6, 2023 | TOTOlink A7100RU(V7.4cu.2313_B20191024) was discovered to contain a command injection vulnerability via the country para... |
| CVE-2023-24202 | CRITICAL | 9.8 | 1.0% | Feb 6, 2023 | Raffle Draw System v1.0 was discovered to contain a local file inclusion vulnerability via the page parameter in index.p... |
| CVE-2023-24201 | CRITICAL | 9.8 | 0.9% | Feb 6, 2023 | Raffle Draw System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at get_ticket.php. |
| CVE-2023-24200 | CRITICAL | 9.8 | 0.9% | Feb 6, 2023 | Raffle Draw System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at save_ticket.php. |
| CVE-2023-24199 | CRITICAL | 9.8 | 0.9% | Feb 6, 2023 | Raffle Draw System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at delete_ticket.ph... |
| CVE-2023-24198 | CRITICAL | 9.8 | 0.9% | Feb 6, 2023 | Raffle Draw System v1.0 was discovered to contain multiple SQL injection vulnerabilities at save_winner.php via the tick... |
| CVE-2023-24197 | MEDIUM | 6.1 | 0.5% | Feb 6, 2023 | Online Food Ordering System v2 was discovered to contain a SQL injection vulnerability via the id parameter at view_orde... |
| CVE-2023-24195 | MEDIUM | 6.1 | 0.5% | Feb 6, 2023 | Online Food Ordering System v2 was discovered to contain a cross-site scripting (XSS) vulnerability via the page paramet... |
| CVE-2023-24194 | MEDIUM | 6.1 | 0.5% | Feb 6, 2023 | Online Food Ordering System v2 was discovered to contain a cross-site scripting (XSS) vulnerability via the page paramet... |
| CVE-2023-24192 | MEDIUM | 6.1 | 0.5% | Feb 6, 2023 | Online Food Ordering System v2 was discovered to contain a cross-site scripting (XSS) vulnerability via the redirect par... |
| CVE-2023-24191 | MEDIUM | 6.1 | 0.5% | Feb 6, 2023 | Online Food Ordering System v2 was discovered to contain a cross-site scripting (XSS) vulnerability via the redirect par... |
| CVE-2023-0679 | HIGH | 8.1 | 0.7% | Feb 6, 2023 | A vulnerability was found in SourceCodester Canteen Management System 1.0. It has been rated as critical. Affected by th... |
| CVE-2023-22849 | MEDIUM | 6.1 | 1.4% | Feb 4, 2023 | An improper neutralization of input during web page generation ('Cross-site Scripting') [CWE-79] vulnerability in Sling ... |
| CVE-2023-25193 | HIGH | 7.5 | 1.8% | Feb 4, 2023 | hb-ot-layout-gsubgpos.hh in HarfBuzz through 6.0.0 allows attackers to trigger O(n^2) growth via consecutive marks durin... |
| CVE-2023-0678 | MEDIUM | 5.3 | 37.3% | Feb 4, 2023 | Missing Authorization in GitHub repository phpipam/phpipam prior to v1.5.1. |
| CVE-2023-0677 | MEDIUM | 6.1 | 0.4% | Feb 4, 2023 | Cross-site Scripting (XSS) - Reflected in GitHub repository phpipam/phpipam prior to v1.5.1. |
| CVE-2023-0676 | MEDIUM | 6.1 | 1.5% | Feb 4, 2023 | Cross-site Scripting (XSS) - Reflected in GitHub repository phpipam/phpipam prior to 1.5.1. |
| CVE-2023-0675 | HIGH | 8.8 | 0.7% | Feb 4, 2023 | A vulnerability, which was classified as critical, was found in Calendar Event Management System 2.3.0. This affects an ... |
| CVE-2023-0674 | MEDIUM | 6.5 | 0.4% | Feb 4, 2023 | A vulnerability, which was classified as problematic, has been found in XXL-JOB 2.3.1. Affected by this issue is some un... |
| CVE-2023-0673 | HIGH | 8.1 | 0.5% | Feb 4, 2023 | A vulnerability classified as critical was found in SourceCodester Online Eyewear Shop 1.0. Affected by this vulnerabili... |
| CVE-2023-0671 | HIGH | 8.8 | 1.1% | Feb 4, 2023 | Code Injection in GitHub repository froxlor/froxlor prior to 2.0.10. |
| CVE-2023-24806 | — | — | — | Feb 4, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. Reason: This CVE has been rejected as it was incorrectly assigned. Al... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now