2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-36682 | HIGH | 8.8 | 0.2% | Nov 30, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Brainstorm Force US LLC Schema Pro allows Cross Site Request Forgery.... |
| CVE-2023-34030 | HIGH | 8.8 | 0.3% | Nov 30, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Really Simple Plugins Complianz, Really Simple Plugins Complianz Prem... |
| CVE-2023-33333 | HIGH | 8.8 | 0.3% | Nov 30, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Really Simple Plugins Complianz, Really Simple Plugins Complianz Prem... |
| CVE-2023-6137 | HIGH | 8.8 | 0.3% | Nov 30, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in finnj Frontier Post allows Cross Site Request Forgery.This issue affe... |
| CVE-2023-6071 | HIGH | 7.2 | 0.9% | Nov 30, 2023 | An Improper Neutralization of Special Elements used in a command vulnerability in ESM prior to version 11.6.9 allows a ... |
| CVE-2023-48744 | HIGH | 8.8 | 0.2% | Nov 30, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Offshore Web Master Availability Calendar allows Cross Site Request F... |
| CVE-2023-48334 | HIGH | 8.8 | 0.3% | Nov 30, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in DAEXT League Table allows Cross Site Request Forgery.This issue affec... |
| CVE-2023-48331 | HIGH | 8.8 | 0.3% | Nov 30, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Stormhill Media MyBookTable Bookstore by Stormhill Media allows Cross... |
| CVE-2023-48330 | HIGH | 8.8 | 0.3% | Nov 30, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Mike Strand Bulk Comment Remove allows Cross Site Request Forgery.Thi... |
| CVE-2023-48323 | HIGH | 8.8 | 0.2% | Nov 30, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Awesome Support Team Awesome Support – WordPress HelpDesk & Support P... |
| CVE-2023-48284 | HIGH | 8.8 | 0.3% | Nov 30, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in WebToffee Decorator – WooCommerce Email Customizer allows Cross Site ... |
| CVE-2023-48283 | HIGH | 8.8 | 0.2% | Nov 30, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in PressTigers Simple Testimonials Showcase allows Cross Site Request Fo... |
| CVE-2023-48282 | HIGH | 8.8 | 0.3% | Nov 30, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Andrea Landonio Taxonomy filter allows Cross Site Request Forgery.Thi... |
| CVE-2023-49700 | HIGH | 7.5 | 0.4% | Nov 30, 2023 | Security best practices violations, a string operation in Streamingmedia will write past the end of fixed-size destinati... |
| CVE-2023-49699 | HIGH | 7.8 | 0.2% | Nov 30, 2023 | Memory Corruption in IMS while calling VoLTE Streamingmedia Interface |
| CVE-2023-49095 | HIGH | 7.5 | 0.6% | Nov 30, 2023 | nexkey is a microblogging platform. Insufficient validation of ActivityPub requests received in inbox could allow any us... |
| CVE-2023-49052 | HIGH | 8.8 | 2.4% | Nov 30, 2023 | File Upload vulnerability in Microweber v.2.0.4 allows a remote attacker to execute arbitrary code via a crafted script ... |
| CVE-2023-49087 | HIGH | 7.5 | 0.2% | Nov 30, 2023 | xml-security is a library that implements XML signatures and encryption. Validation of an XML signature requires verific... |
| CVE-2023-49097 | HIGH | 8.8 | 0.8% | Nov 30, 2023 | ZITADEL is an identity infrastructure system. ZITADEL uses the notification triggering requests Forwarded or X-Forwarded... |
| CVE-2023-47464 | HIGH | 8.8 | 22.6% | Nov 30, 2023 | Insecure Permissions vulnerability in GL.iNet AX1800 version 4.0.0 before 4.5.0 allows a remote attacker to execute arbi... |
| CVE-2023-5247 | HIGH | 7.8 | 0.3% | Nov 30, 2023 | Malicious Code Execution Vulnerability due to External Control of File Name or Path in multiple Mitsubishi Electric FA E... |
| CVE-2023-37928 | HIGH | 8.8 | 60.2% | Nov 30, 2023 | A post-authentication command injection vulnerability in the WSGI server of the Zyxel NAS326 firmware version V5.21(AAZF... |
| CVE-2023-37927 | HIGH | 8.8 | 1.8% | Nov 30, 2023 | The improper neutralization of special elements in the CGI program of the Zyxel NAS326 firmware version V5.21(AAZF.14)C0... |
| CVE-2023-35137 | HIGH | 7.5 | 0.9% | Nov 30, 2023 | An improper authentication vulnerability in the authentication module of the Zyxel NAS326 firmware version V5.21(AAZF.14... |
| CVE-2023-49694 | HIGH | 7.8 | 0.5% | Nov 29, 2023 | A low-privileged OS user with access to a Windows host where NETGEAR ProSAFE Network Management System is installed c... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now