2023 CVE Vulnerabilities

31,244 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-34328MEDIUM5.5 [This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to wh...
CVE-2023-34327MEDIUM5.5 [This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to wh...
CVE-2023-34324MEDIUM4.9Closing of an event channel in the Linux kernel can result in a deadlock. This happens when the close is being performed...
CVE-2023-34323MEDIUM5.5When a transaction is committed, C Xenstored will first check the quota is correct before attempting to commit any nodes...
CVE-2023-52126MEDIUM5.3Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Suman Bhattarai Send Users Email.This issue ...
CVE-2023-52125MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in webvitaly iframe a...
CVE-2023-52124MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ShapedPlugin LLC W...
CVE-2023-52151MEDIUM5.3Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Uncanny Automator, Uncanny Owl Uncanny Autom...
CVE-2023-52148MEDIUM5.3Exposure of Sensitive Information to an Unauthorized Actor vulnerability in wp.Insider, wpaffiliatemgr Affiliates Manage...
CVE-2023-52146MEDIUM5.3Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Aaron J 404 Solution.This issue affects 404 ...
CVE-2023-51678MEDIUM6.5Cross-Site Request Forgery (CSRF) vulnerability in Doofinder Doofinder WP & WooCommerce Search.This issue affects Doofin...
CVE-2023-52178MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in MojofyWP WP Affili...
CVE-2023-52323MEDIUM5.9PyCryptodome and pycryptodomex before 3.19.1 allow side-channel leakage for OAEP decryption, exploitable for a Manger at...
CVE-2023-6493MEDIUM4.3The Depicter Slider – Responsive Image Slider, Video Slider & Post Slider plugin for WordPress is vulnerable to Cross-Si...
CVE-2023-41782MEDIUM4.8 There is a DLL hijacking vulnerability in ZTE ZXCLOUD iRAI, an attacker could place a fake DLL file in a specific direc...
CVE-2023-6551MEDIUM5.4As a simple library, class.upload.php does not perform an in-depth check on uploaded files, allowing a stored XSS vulner...
CVE-2023-3726MEDIUM6.9OCSInventory allow stored email template with special characters that lead to a Stored cross-site Scripting.
CVE-2023-6992MEDIUM5.5Cloudflare version of zlib library was found to be vulnerable to memory corruption issues affecting the deflation algori...
CVE-2023-7044MEDIUM5.4The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress...
CVE-2023-6944MEDIUM5.7A flaw was found in the Red Hat Developer Hub (RHDH). The catalog-import function leaks GitLab access tokens on the fron...
CVE-2023-50630MEDIUM6.1Cross Site Scripting (XSS) vulnerability in xiweicheng TMS v.2.28.0 allows a remote attacker to execute arbitrary code v...
CVE-2023-41784MEDIUM5.5 Permissions and Access Control Vulnerability in ZTE Red Magic 8 Pro
CVE-2023-52322MEDIUM6.1ecrire/public/assembler.php in SPIP before 4.1.13 and 4.2.x before 4.2.7 allows XSS because input from _request() is not...
CVE-2023-29962MEDIUM6.5S-CMS v5.0 was discovered to contain an arbitrary file read vulnerability.
CVE-2023-6738MEDIUM5.4The Page Builder: Pagelayer – Drag and Drop website builder plugin for WordPress is vulnerable to Stored Cross-Site Scri...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now