2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-32799 | MEDIUM | 6.5 | 0.5% | Dec 21, 2023 | Authorization Bypass Through User-Controlled Key vulnerability in WooCommerce Shipping Multiple Addresses.This issue aff... |
| CVE-2023-7038 | MEDIUM | 6.5 | 0.4% | Dec 21, 2023 | A vulnerability was found in automad up to 1.10.9. It has been rated as problematic. This issue affects some unknown pro... |
| CVE-2023-50833 | MEDIUM | 5.4 | 0.4% | Dec 21, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ExtendThemes Colib... |
| CVE-2023-50832 | MEDIUM | 4.8 | 0.4% | Dec 21, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Mondula GmbH Multi... |
| CVE-2023-50831 | MEDIUM | 5.4 | 0.5% | Dec 21, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in VillaTheme CURCY –... |
| CVE-2023-50830 | MEDIUM | 4.8 | 0.3% | Dec 21, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Seosbg Seos Contac... |
| CVE-2023-50829 | MEDIUM | 4.8 | 0.3% | Dec 21, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Aerin Loan Repayme... |
| CVE-2023-40058 | MEDIUM | 6.5 | 0.8% | Dec 21, 2023 | Sensitive data was added to our public-facing knowledgebase that, if exploited, could be used to access components of Ac... |
| CVE-2023-7036 | MEDIUM | 5.4 | 0.6% | Dec 21, 2023 | A vulnerability was found in automad up to 1.10.9. It has been classified as problematic. This affects the function uplo... |
| CVE-2023-4256 | MEDIUM | 5.5 | 0.3% | Dec 21, 2023 | Within tcpreplay's tcprewrite, a double free vulnerability has been identified in the tcpedit_dlt_cleanup() function wit... |
| CVE-2023-4255 | MEDIUM | 5.5 | 0.3% | Dec 21, 2023 | An out-of-bounds write issue has been discovered in the backspace handling of the checkType() function in etc.c within t... |
| CVE-2023-7047 | MEDIUM | 4.4 | 0.2% | Dec 21, 2023 | Inadequate validation of permissions when employing remote tools and macros via the context menu within Devolutions Re... |
| CVE-2023-7035 | MEDIUM | 5.4 | 0.6% | Dec 21, 2023 | A vulnerability was found in automad up to 1.10.9 and classified as problematic. Affected by this issue is some unknown ... |
| CVE-2023-50828 | MEDIUM | 4.8 | 0.4% | Dec 21, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in David Vongries Ult... |
| CVE-2023-50827 | MEDIUM | 4.8 | 0.2% | Dec 21, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Accredible Accredi... |
| CVE-2023-50826 | MEDIUM | 4.8 | 0.4% | Dec 21, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Freshlight Lab Men... |
| CVE-2023-50825 | MEDIUM | 5.4 | 0.3% | Dec 21, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Terrier Tenacity i... |
| CVE-2023-50824 | MEDIUM | 5.4 | 0.3% | Dec 21, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Brian Batt Insert ... |
| CVE-2023-50823 | MEDIUM | 5.4 | 0.3% | Dec 21, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Wipeout Media CSS ... |
| CVE-2023-50822 | MEDIUM | 5.4 | 0.3% | Dec 21, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Currency.Wiki Curr... |
| CVE-2023-50724 | MEDIUM | 6.1 | 0.5% | Dec 21, 2023 | Resque (pronounced like "rescue") is a Redis-backed library for creating background jobs, placing those jobs on multiple... |
| CVE-2023-50377 | MEDIUM | 5.4 | 0.3% | Dec 21, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in AB-WP Simple Count... |
| CVE-2023-48116 | MEDIUM | 5.4 | 0.4% | Dec 21, 2023 | SmarterTools SmarterMail 8495 through 8664 before 8747 allows stored XSS via a crafted description of a Calendar appoint... |
| CVE-2023-48115 | MEDIUM | 5.4 | 0.4% | Dec 21, 2023 | SmarterTools SmarterMail 8495 through 8664 before 8747 allows stored DOM XSS because an XSS protection mechanism is skip... |
| CVE-2023-48114 | MEDIUM | 5.4 | 0.4% | Dec 21, 2023 | SmarterTools SmarterMail 8495 through 8664 before 8747 allows stored XSS by using image/svg+xml and an uploaded SVG docu... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now