2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-47237HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Martin Gibson Auto Publish for Google My Business plugin <= 3.7 versi...
CVE-2023-34371HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Didier Sampaolo SpamReferrerBlock plugin <= 2.22 versions.
CVE-2023-34182HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Peter Shaw LH Password Changer plugin <= 1.55 versions.
CVE-2023-34181HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in WP-Cirrus plugin <= 0.6.11 versions.
CVE-2023-34178HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Groundhogg Inc. Groundhogg plugin <= 2.7.11 versions.
CVE-2023-46614HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Mat Bao Corp WP Helper Premium plugin <= 4.5.1 versions.
CVE-2023-34386HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in WPClever WPC Smart Wishlist for WooCommerce plugin <= 4.7.1 versions.
CVE-2023-34002HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in WP Inventory Manager plugin <= 2.1.0.13 versions.
CVE-2023-31087HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in JoomSky JS Job Manager plugin <= 2.0.0 versions.
CVE-2023-25975HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Frédéric Sheedy Etsy Shop plugin <= 3.0.3 versions.
CVE-2023-45283HIGH7.5The filepath package does not recognize paths with a \??\ prefix as special. On Windows, a path beginning with \??\ is a...
CVE-2023-46894HIGH7.5An issue discovered in esptool 4.6.2 allows attackers to view sensitive information via weak cryptographic algorithm.
CVE-2023-25994HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Alex Benfica Publish to Schedule plugin <= 4.4.2 versions.
CVE-2023-43791HIGH8.8Label Studio is a multi-type data labeling and annotation tool with standardized output format. There is a vulnerability...
CVE-2023-40055HIGH8.8The Network Configuration Manager was susceptible to a Directory Traversal Remote Code Execution Vulnerability. This vu...
CVE-2023-40054HIGH8.8The Network Configuration Manager was susceptible to a Directory Traversal Remote Code Execution Vulnerability. This vu...
CVE-2023-47613HIGH7.1A CWE-23: Relative Path Traversal vulnerability exists in Telit Cinterion BGS5, Telit Cinterion EHS5/6/8, Telit Cinterio...
CVE-2023-47489HIGH7.8CSV injection in export as csv in Combodo iTop v.3.1.0-2-11973 allows a local attacker to execute arbitrary code via a c...
CVE-2023-26156HIGH7.5Versions of the package chromedriver before 119.0.1 are vulnerable to Command Injection when setting the chromedriver.pa...
CVE-2023-5079HIGH7.5Lenovo LeCloud App improper input validation allows attackers to access arbitrary components and arbitrary file download...
CVE-2023-4706HIGH7.8 A privilege escalation vulnerability was reported in Lenovo preloaded devices deployed using Microsoft AutoPilot under ...
CVE-2023-4632HIGH7.8An uncontrolled search path vulnerability was reported in Lenovo System Update that could allow an attacker with local a...
CVE-2023-47113HIGH7.3BleachBit cleans files to free disk space and to maintain privacy. BleachBit for Windows up to version 4.4.2 is vulnerab...
CVE-2023-47109HIGH8.1PrestaShop blockreassurance adds an information block aimed at offering helpful information to reassure customers that t...
CVE-2023-36667HIGH7.5Couchbase Server 7.1.4 before 7.1.5 and 7.2.0 before 7.2.1 allows Directory Traversal.

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now