2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-47237 | HIGH | 8.8 | 0.3% | Nov 9, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Martin Gibson Auto Publish for Google My Business plugin <= 3.7 versi... |
| CVE-2023-34371 | HIGH | 8.8 | 0.3% | Nov 9, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Didier Sampaolo SpamReferrerBlock plugin <= 2.22 versions. |
| CVE-2023-34182 | HIGH | 8.8 | 0.3% | Nov 9, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Peter Shaw LH Password Changer plugin <= 1.55 versions. |
| CVE-2023-34181 | HIGH | 8.8 | 0.3% | Nov 9, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in WP-Cirrus plugin <= 0.6.11 versions. |
| CVE-2023-34178 | HIGH | 8.8 | 0.3% | Nov 9, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Groundhogg Inc. Groundhogg plugin <= 2.7.11 versions. |
| CVE-2023-46614 | HIGH | 8.8 | 0.3% | Nov 9, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Mat Bao Corp WP Helper Premium plugin <= 4.5.1 versions. |
| CVE-2023-34386 | HIGH | 8.8 | 0.3% | Nov 9, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in WPClever WPC Smart Wishlist for WooCommerce plugin <= 4.7.1 versions. |
| CVE-2023-34002 | HIGH | 8.8 | 0.3% | Nov 9, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in WP Inventory Manager plugin <= 2.1.0.13 versions. |
| CVE-2023-31087 | HIGH | 8.8 | 0.3% | Nov 9, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in JoomSky JS Job Manager plugin <= 2.0.0 versions. |
| CVE-2023-25975 | HIGH | 8.8 | 0.3% | Nov 9, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Frédéric Sheedy Etsy Shop plugin <= 3.0.3 versions. |
| CVE-2023-45283 | HIGH | 7.5 | 2.8% | Nov 9, 2023 | The filepath package does not recognize paths with a \??\ prefix as special. On Windows, a path beginning with \??\ is a... |
| CVE-2023-46894 | HIGH | 7.5 | 0.5% | Nov 9, 2023 | An issue discovered in esptool 4.6.2 allows attackers to view sensitive information via weak cryptographic algorithm. |
| CVE-2023-25994 | HIGH | 8.8 | 0.3% | Nov 9, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Alex Benfica Publish to Schedule plugin <= 4.4.2 versions. |
| CVE-2023-43791 | HIGH | 8.8 | 1.2% | Nov 9, 2023 | Label Studio is a multi-type data labeling and annotation tool with standardized output format. There is a vulnerability... |
| CVE-2023-40055 | HIGH | 8.8 | 2.1% | Nov 9, 2023 | The Network Configuration Manager was susceptible to a Directory Traversal Remote Code Execution Vulnerability. This vu... |
| CVE-2023-40054 | HIGH | 8.8 | 3.0% | Nov 9, 2023 | The Network Configuration Manager was susceptible to a Directory Traversal Remote Code Execution Vulnerability. This vu... |
| CVE-2023-47613 | HIGH | 7.1 | 0.2% | Nov 9, 2023 | A CWE-23: Relative Path Traversal vulnerability exists in Telit Cinterion BGS5, Telit Cinterion EHS5/6/8, Telit Cinterio... |
| CVE-2023-47489 | HIGH | 7.8 | 0.4% | Nov 9, 2023 | CSV injection in export as csv in Combodo iTop v.3.1.0-2-11973 allows a local attacker to execute arbitrary code via a c... |
| CVE-2023-26156 | HIGH | 7.5 | 2.2% | Nov 9, 2023 | Versions of the package chromedriver before 119.0.1 are vulnerable to Command Injection when setting the chromedriver.pa... |
| CVE-2023-5079 | HIGH | 7.5 | 0.6% | Nov 8, 2023 | Lenovo LeCloud App improper input validation allows attackers to access arbitrary components and arbitrary file download... |
| CVE-2023-4706 | HIGH | 7.8 | 0.2% | Nov 8, 2023 | A privilege escalation vulnerability was reported in Lenovo preloaded devices deployed using Microsoft AutoPilot under ... |
| CVE-2023-4632 | HIGH | 7.8 | 0.3% | Nov 8, 2023 | An uncontrolled search path vulnerability was reported in Lenovo System Update that could allow an attacker with local a... |
| CVE-2023-47113 | HIGH | 7.3 | 0.2% | Nov 8, 2023 | BleachBit cleans files to free disk space and to maintain privacy. BleachBit for Windows up to version 4.4.2 is vulnerab... |
| CVE-2023-47109 | HIGH | 8.1 | 0.8% | Nov 8, 2023 | PrestaShop blockreassurance adds an information block aimed at offering helpful information to reassure customers that t... |
| CVE-2023-36667 | HIGH | 7.5 | 1.0% | Nov 8, 2023 | Couchbase Server 7.1.4 before 7.1.5 and 7.2.0 before 7.2.1 allows Directory Traversal. |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now