2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-52179MEDIUM5.4Missing Authorization vulnerability in WebCodingPlace Product Expiry for WooCommerce.This issue affects Product Expiry f...
CVE-2023-52217MEDIUM6.3Missing Authorization vulnerability in weDevs WooCommerce Conversion Tracking.This issue affects WooCommerce Conversion ...
CVE-2023-52186MEDIUM5.3Missing Authorization vulnerability in Woo WooCommerce Product Vendors.This issue affects WooCommerce Product Vendors: f...
CVE-2023-33922MEDIUM4.3Missing Authorization vulnerability in Elementor Elementor Website Builder.This issue affects Elementor Website Builder:...
CVE-2023-28775MEDIUM5.3Missing Authorization vulnerability in Yoast Yoast SEO Premium.This issue affects Yoast SEO Premium: from n/a through 20...
CVE-2023-25799HIGH8.8Missing Authorization vulnerability in Themeum Tutor LMS.This issue affects Tutor LMS: from n/a through 2.1.8.
CVE-2023-7264CRITICAL9.8The Build App Online plugin for WordPress is vulnerable to account takeover due to a weak password reset mechanism in al...
CVE-2023-6748MEDIUM4.3The Custom Field Template plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, an...
CVE-2023-6745MEDIUM5.4The Custom Field Template plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'cpt' short...
CVE-2023-40389MEDIUM5.5The issue was addressed with improved restriction of data container access. This issue is fixed in macOS Ventura 13.6.5,...
CVE-2023-45188CRITICAL9.8IBM Engineering Lifecycle Optimization Publishing 7.0.2 and 7.03 could allow a remote attacker to upload arbitrary files...
CVE-2023-34003MEDIUM5.3Missing Authorization vulnerability in Woo WooCommerce Box Office.This issue affects WooCommerce Box Office: from n/a th...
CVE-2023-31080HIGH8.8Missing Authorization vulnerability in Unlimited Elements Unlimited Elements For Elementor (Free Widgets, Addons, Templa...
CVE-2023-23640HIGH8.8Missing Authorization vulnerability in MainWP MainWP UpdraftPlus Extension.This issue affects MainWP UpdraftPlus Extensi...
CVE-2023-23639HIGH8.8Missing Authorization vulnerability in MainWP MainWP Staging Extension.This issue affects MainWP Staging Extension: from...
CVE-2023-52232MEDIUM6.5Missing Authorization vulnerability in Pluggabl LLC Booster Plus for WooCommerce.This issue affects Booster Plus for Woo...
CVE-2023-52230MEDIUM6.5Missing Authorization vulnerability in Pluggabl LLC Booster Plus for WooCommerce.This issue affects Booster Plus for Woo...
CVE-2023-51494CRITICAL9.8Missing Authorization vulnerability in Woo WooCommerce Product Vendors.This issue affects WooCommerce Product Vendors: f...
CVE-2023-45707MEDIUM4.4HCL Connections Docs is vulnerable to a cross-site scripting attack where an attacker may leverage this issue to execute...
CVE-2023-7261HIGH7.8Inappropriate implementation in Google Updator prior to 1.3.36.351 in Google Chrome allowed a local attacker to perform ...
CVE-2023-49224HIGH8Precor touchscreen console P62, P80, and P82 contains a default SSH public key in the authorized_keys file. A remote att...
CVE-2023-49223HIGH8.8Precor touchscreen console P62, P80, and P82 could allow a remote attacker to obtain sensitive information because the r...
CVE-2023-49222HIGH8.8Precor touchscreen console P82 contains a private SSH key that corresponds to a default public key. A remote attacker co...
CVE-2023-49221HIGH7.8Precor touchscreen console P62, P80, and P82 could allow a remote attacker (within the local network) to bypass security...
CVE-2023-6997Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now