2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-6596 | HIGH | 7.5 | 0.8% | Apr 25, 2024 | An incomplete fix was shipped for the Rapid Reset (CVE-2023-44487/CVE-2023-39325) vulnerability for an OpenShift Contain... |
| CVE-2023-6544 | MEDIUM | 5.4 | 1.1% | Apr 25, 2024 | A flaw was found in the Keycloak package. This issue occurs due to a permissive regular expression hardcoded for filteri... |
| CVE-2023-6484 | MEDIUM | 5.3 | 1.0% | Apr 25, 2024 | A log injection flaw was found in Keycloak. A text string may be injected through the authentication form when using the... |
| CVE-2023-5675 | MEDIUM | 6.5 | 0.5% | Apr 25, 2024 | A flaw was found in Quarkus. When a Quarkus RestEasy Classic or Reactive JAX-RS endpoint has its methods declared in the... |
| CVE-2023-3597 | MEDIUM | 5 | 0.6% | Apr 25, 2024 | A flaw was found in Keycloak, where it does not correctly validate its client step-up authentication in org.keycloak.aut... |
| CVE-2023-52220 | MEDIUM | 4.3 | 0.4% | Apr 25, 2024 | Missing Authorization vulnerability in MonsterInsights Google Analytics by Monster Insights.This issue affects Google An... |
| CVE-2023-51484 | CRITICAL | 9.8 | 0.7% | Apr 25, 2024 | Improper Authentication vulnerability in wp-buy Login as User or Customer (User Switching) allows Privilege Escalation.T... |
| CVE-2023-51482 | CRITICAL | 9.9 | 0.7% | Apr 25, 2024 | Improper Authentication vulnerability in EazyPlugins Eazy Plugin Manager allows Accessing Functionality Not Properly Con... |
| CVE-2023-51478 | CRITICAL | 9.8 | 0.7% | Apr 25, 2024 | Improper Authentication vulnerability in Abdul Hakeem Build App Online allows Privilege Escalation.This issue affects Bu... |
| CVE-2023-6237 | MEDIUM | 5.9 | 2.3% | Apr 25, 2024 | Issue summary: Checking excessively long invalid RSA public keys may take a long time. Impact summary: Applications tha... |
| CVE-2023-20249 | MEDIUM | 5.4 | 0.4% | Apr 24, 2024 | A vulnerability in the web-based management interface of Cisco TelePresence Management Suite (TMS) Software could allow ... |
| CVE-2023-20248 | MEDIUM | 5.4 | 0.4% | Apr 24, 2024 | A vulnerability in the web-based management interface of Cisco TelePresence Management Suite (TMS) Software could allow ... |
| CVE-2023-51477 | CRITICAL | 9.8 | 0.7% | Apr 24, 2024 | Improper Authentication vulnerability in BUDDYBOSS DMCC BuddyBoss Theme allows Accessing Functionality Not Properly Cons... |
| CVE-2023-51472 | CRITICAL | 9.8 | 0.7% | Apr 24, 2024 | Improper Authentication vulnerability in Mestres do WP Checkout Mestres WP allows Privilege Escalation.This issue affect... |
| CVE-2023-51471 | HIGH | 8.2 | 0.6% | Apr 24, 2024 | Improper Authentication vulnerability in Mestres do WP Checkout Mestres WP allows Accessing Functionality Not Properly C... |
| CVE-2023-51425 | CRITICAL | 9.8 | 0.6% | Apr 24, 2024 | Improper Privilege Management vulnerability in Jacques Malgrange Rencontre – Dating Site allows Privilege Escalation.Thi... |
| CVE-2023-51405 | CRITICAL | 9.8 | 0.7% | Apr 24, 2024 | Improper Authentication vulnerability in Repute Infosystems BookingPress allows Accessing Functionality Not Properly Con... |
| CVE-2023-48763 | MEDIUM | 5.3 | 0.4% | Apr 24, 2024 | Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS vulnerability in Crocoblock JetFormBuilder ... |
| CVE-2023-47774 | MEDIUM | 5.4 | 0.3% | Apr 24, 2024 | Improper Restriction of Rendered UI Layers or Frames vulnerability in Automattic Jetpack allows Clickjacking.This issue ... |
| CVE-2023-47504 | CRITICAL | 9.8 | 1.5% | Apr 24, 2024 | Improper Authentication vulnerability in Elementor Elementor Website Builder allows Accessing Functionality Not Properly... |
| CVE-2023-32127 | MEDIUM | 5.3 | 0.4% | Apr 24, 2024 | Missing Authorization vulnerability in Daniel Powney Multi Rating allows Functionality Misuse.This issue affects Multi R... |
| CVE-2023-31090 | HIGH | 8.8 | 0.8% | Apr 24, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in Unlimited Elements Unlimited Elements For Elementor (Fr... |
| CVE-2023-25790 | MEDIUM | 5.3 | 0.5% | Apr 24, 2024 | Improper Authentication, Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerabil... |
| CVE-2023-25785 | MEDIUM | 5.3 | 0.4% | Apr 24, 2024 | Missing Authorization vulnerability in Shoaib Saleem WP Post Rating allows Functionality Misuse.This issue affects WP Po... |
| CVE-2023-23989 | MEDIUM | 6.5 | 0.4% | Apr 24, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Metagauss Registra... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now