2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-52179 | MEDIUM | 5.4 | 0.3% | Jun 11, 2024 | Missing Authorization vulnerability in WebCodingPlace Product Expiry for WooCommerce.This issue affects Product Expiry f... |
| CVE-2023-52217 | MEDIUM | 6.3 | 0.2% | Jun 11, 2024 | Missing Authorization vulnerability in weDevs WooCommerce Conversion Tracking.This issue affects WooCommerce Conversion ... |
| CVE-2023-52186 | MEDIUM | 5.3 | 0.3% | Jun 11, 2024 | Missing Authorization vulnerability in Woo WooCommerce Product Vendors.This issue affects WooCommerce Product Vendors: f... |
| CVE-2023-33922 | MEDIUM | 4.3 | 0.3% | Jun 11, 2024 | Missing Authorization vulnerability in Elementor Elementor Website Builder.This issue affects Elementor Website Builder:... |
| CVE-2023-28775 | MEDIUM | 5.3 | 0.4% | Jun 11, 2024 | Missing Authorization vulnerability in Yoast Yoast SEO Premium.This issue affects Yoast SEO Premium: from n/a through 20... |
| CVE-2023-25799 | HIGH | 8.8 | 0.5% | Jun 11, 2024 | Missing Authorization vulnerability in Themeum Tutor LMS.This issue affects Tutor LMS: from n/a through 2.1.8. |
| CVE-2023-7264 | CRITICAL | 9.8 | 0.6% | Jun 11, 2024 | The Build App Online plugin for WordPress is vulnerable to account takeover due to a weak password reset mechanism in al... |
| CVE-2023-6748 | MEDIUM | 4.3 | 0.3% | Jun 11, 2024 | The Custom Field Template plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, an... |
| CVE-2023-6745 | MEDIUM | 5.4 | 0.3% | Jun 11, 2024 | The Custom Field Template plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'cpt' short... |
| CVE-2023-40389 | MEDIUM | 5.5 | 0.2% | Jun 10, 2024 | The issue was addressed with improved restriction of data container access. This issue is fixed in macOS Ventura 13.6.5,... |
| CVE-2023-45188 | CRITICAL | 9.8 | 0.7% | Jun 9, 2024 | IBM Engineering Lifecycle Optimization Publishing 7.0.2 and 7.03 could allow a remote attacker to upload arbitrary files... |
| CVE-2023-34003 | MEDIUM | 5.3 | 0.3% | Jun 9, 2024 | Missing Authorization vulnerability in Woo WooCommerce Box Office.This issue affects WooCommerce Box Office: from n/a th... |
| CVE-2023-31080 | HIGH | 8.8 | 0.4% | Jun 9, 2024 | Missing Authorization vulnerability in Unlimited Elements Unlimited Elements For Elementor (Free Widgets, Addons, Templa... |
| CVE-2023-23640 | HIGH | 8.8 | 0.3% | Jun 9, 2024 | Missing Authorization vulnerability in MainWP MainWP UpdraftPlus Extension.This issue affects MainWP UpdraftPlus Extensi... |
| CVE-2023-23639 | HIGH | 8.8 | 0.3% | Jun 9, 2024 | Missing Authorization vulnerability in MainWP MainWP Staging Extension.This issue affects MainWP Staging Extension: from... |
| CVE-2023-52232 | MEDIUM | 6.5 | 0.3% | Jun 9, 2024 | Missing Authorization vulnerability in Pluggabl LLC Booster Plus for WooCommerce.This issue affects Booster Plus for Woo... |
| CVE-2023-52230 | MEDIUM | 6.5 | 0.4% | Jun 9, 2024 | Missing Authorization vulnerability in Pluggabl LLC Booster Plus for WooCommerce.This issue affects Booster Plus for Woo... |
| CVE-2023-51494 | CRITICAL | 9.8 | 0.4% | Jun 9, 2024 | Missing Authorization vulnerability in Woo WooCommerce Product Vendors.This issue affects WooCommerce Product Vendors: f... |
| CVE-2023-45707 | MEDIUM | 4.4 | 0.3% | Jun 8, 2024 | HCL Connections Docs is vulnerable to a cross-site scripting attack where an attacker may leverage this issue to execute... |
| CVE-2023-7261 | HIGH | 7.8 | 0.2% | Jun 7, 2024 | Inappropriate implementation in Google Updator prior to 1.3.36.351 in Google Chrome allowed a local attacker to perform ... |
| CVE-2023-49224 | HIGH | 8 | 0.3% | Jun 7, 2024 | Precor touchscreen console P62, P80, and P82 contains a default SSH public key in the authorized_keys file. A remote att... |
| CVE-2023-49223 | HIGH | 8.8 | 0.3% | Jun 7, 2024 | Precor touchscreen console P62, P80, and P82 could allow a remote attacker to obtain sensitive information because the r... |
| CVE-2023-49222 | HIGH | 8.8 | 0.3% | Jun 7, 2024 | Precor touchscreen console P82 contains a private SSH key that corresponds to a default public key. A remote attacker co... |
| CVE-2023-49221 | HIGH | 7.8 | 0.2% | Jun 7, 2024 | Precor touchscreen console P62, P80, and P82 could allow a remote attacker (within the local network) to bypass security... |
| CVE-2023-6997 | — | — | — | Jun 7, 2024 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now