2023 CVE Vulnerabilities

31,442 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-0114MEDIUM5.5A vulnerability was found in Netis Netcore Router. It has been rated as problematic. Affected by this issue is some unkn...
CVE-2023-0113HIGH7.5A vulnerability was found in Netis Netcore Router up to 2.2.6. It has been declared as problematic. Affected by this vul...
CVE-2023-0112MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository usememos/memos prior to 0.10.0.
CVE-2023-0111MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository usememos/memos prior to 0.10.0.
CVE-2023-0110MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository usememos/memos prior to 0.10.0.
CVE-2023-0108MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository usememos/memos prior to 0.10.0.
CVE-2023-0107MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository usememos/memos prior to 0.10.0.
CVE-2023-0106MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository usememos/memos prior to 0.10.0.
CVE-2023-22475MEDIUM6.1Canarytokens is an open source tool which helps track activity and actions on your network. A Cross-Site Scripting vulne...
CVE-2023-22671CRITICAL9.8Ghidra/RuntimeScripts/Linux/support/launch.sh in NSA Ghidra through 10.2.2 passes user-provided input into eval, leading...
CVE-2023-22455MEDIUM6.1Discourse is an option source discussion platform. Prior to version 2.8.14 on the `stable` branch and version 3.0.0.beta...
CVE-2023-22454MEDIUM6.1Discourse is an option source discussion platform. Prior to version 2.8.14 on the `stable` branch and version 3.0.0.beta...
CVE-2023-22453MEDIUM5.3Discourse is an option source discussion platform. Prior to version 2.8.14 on the `stable` branch and version 3.0.0.beta...
CVE-2023-0088HIGH8.8The Swifty Page Manager plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includin...
CVE-2023-0087MEDIUM4.8The Swifty Page Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘spm_plugin_options_pa...
CVE-2023-0086MEDIUM6.5The JetWidgets for Elementor plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and inc...
CVE-2023-0077CRITICAL9.8Integer overflow or wraparound vulnerability in CGI component in Synology Router Manager (SRM) before 1.2.5-8227-6 and 1...
CVE-2023-22626HIGH7.5PgHero before 3.1.0 allows Information Disclosure via EXPLAIN because query results may be present in an error message. ...
CVE-2023-22622MEDIUM5.3WordPress through 6.1.1 depends on unpredictable client visits to cause wp-cron.php execution and the resulting security...
CVE-2023-0057MEDIUM6.1Improper Restriction of Rendered UI Layers or Frames in GitHub repository pyload/pyload prior to 0.5.0b3.dev33.
CVE-2023-22467HIGH7.5Luxon is a library for working with dates and times in JavaScript. On the 1.x branch prior to 1.38.1, the 2.x branch pri...
CVE-2023-22466MEDIUM5.4Tokio is a runtime for writing applications with Rust. Starting with version 1.7.0 and prior to versions 1.18.4, 1.20.3,...
CVE-2023-0055MEDIUM5.3Sensitive Cookie in HTTPS Session Without 'Secure' Attribute in GitHub repository pyload/pyload prior to 0.5.0b3.dev32.
CVE-2023-0054HIGH7.8Out-of-bounds Write in GitHub repository vim/vim prior to 9.0.1145.
CVE-2023-0051HIGH7.8Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1144.

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now