2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-6437 | CRITICAL | 9.8 | 1.4% | Mar 28, 2024 | Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in TP-Link TP-L... |
| CVE-2023-6371 | MEDIUM | 5.4 | 0.5% | Mar 28, 2024 | An issue has been discovered in GitLab CE/EE affecting all versions before 16.8.5, all versions starting from 16.9 befor... |
| CVE-2023-52628 | HIGH | 7.1 | 0.7% | Mar 28, 2024 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nftables: exthdr: fix 4-byte stack OOB w... |
| CVE-2023-52234 | MEDIUM | 6.5 | 0.5% | Mar 28, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Booster Booster Elite for WooCommerce.This i... |
| CVE-2023-52231 | MEDIUM | 6.5 | 0.5% | Mar 28, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Booster Booster Plus for WooCommerce.This is... |
| CVE-2023-50374 | MEDIUM | 5.5 | 0.4% | Mar 28, 2024 | Server-Side Request Forgery (SSRF) vulnerability in NiteoThemes CMP – Coming Soon & Maintenance.This issue affects CMP –... |
| CVE-2023-39309 | HIGH | 8.8 | 0.6% | Mar 28, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in ThemeFusion Fusion... |
| CVE-2023-23649 | HIGH | 8.1 | 0.8% | Mar 28, 2024 | Deserialization of Untrusted Data vulnerability in MainWP MainWP Links Manager Extension.This issue affects MainWP Links... |
| CVE-2023-39313 | HIGH | 7.7 | 0.5% | Mar 28, 2024 | Server-Side Request Forgery (SSRF) vulnerability in ThemeFusion Avada.This issue affects Avada: from n/a through 7.11.1. |
| CVE-2023-36679 | MEDIUM | 6.5 | 0.3% | Mar 28, 2024 | Server-Side Request Forgery (SSRF) vulnerability in Brainstorm Force Spectra.This issue affects Spectra: from n/a throug... |
| CVE-2023-34370 | HIGH | 7.1 | 0.3% | Mar 28, 2024 | Server-Side Request Forgery (SSRF) vulnerability in Brainstorm Force Starter Templates — Elementor, WordPress & Beaver B... |
| CVE-2023-47438 | MEDIUM | 6.5 | 0.5% | Mar 27, 2024 | SQL Injection vulnerability in Reportico Till 8.1.0 allows attackers to obtain sensitive information or other system inf... |
| CVE-2023-0582 | CRITICAL | 9.8 | 0.8% | Mar 27, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in ForgeRock Access Managem... |
| CVE-2023-44999 | HIGH | 8.8 | 0.2% | Mar 27, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in WooCommerce WooCommerce Stripe Payment Gateway.This issue affects Woo... |
| CVE-2023-39311 | HIGH | 8.8 | 0.2% | Mar 27, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in ThemeFusion Fusion Builder.This issue affects Fusion Builder: from n/... |
| CVE-2023-34020 | MEDIUM | 6.1 | 1.0% | Mar 27, 2024 | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Uncanny Owl Uncanny Toolkit for LearnDash.This issu... |
| CVE-2023-6400 | HIGH | 7.4 | 0.2% | Mar 27, 2024 | Incorrect Authorization vulnerability in OpenText™ ZENworks Configuration Management (ZCM) allows Unauthorized Use of De... |
| CVE-2023-6153 | CRITICAL | 9.8 | 0.7% | Mar 27, 2024 | Authentication Bypass by Primary Weakness vulnerability in TeoSOFT Software TeoBASE allows Authentication Bypass. This ... |
| CVE-2023-50961 | MEDIUM | 5.4 | 0.3% | Mar 27, 2024 | IBM QRadar SIEM 7.5 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary Jav... |
| CVE-2023-6173 | CRITICAL | 9.8 | 0.6% | Mar 27, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeoSOFT Software T... |
| CVE-2023-43768 | HIGH | 7.5 | 0.7% | Mar 27, 2024 | An issue was discovered in Couchbase Server 6.6.x through 7.2.0, before 7.1.5 and 7.2.1. Unauthenticated users may cause... |
| CVE-2023-25364 | MEDIUM | 6.1 | 0.3% | Mar 27, 2024 | Opswat Metadefender Core before 5.2.1 does not properly defend against potential HTML injection and XSS attacks. |
| CVE-2023-52228 | MEDIUM | 6.5 | 0.3% | Mar 27, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Mark Kinchin Beds2... |
| CVE-2023-49815 | CRITICAL | 10 | 0.6% | Mar 27, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in WappPress Team WappPress.This issue affects WappPress: ... |
| CVE-2023-46052 | HIGH | 7.1 | 0.4% | Mar 27, 2024 | Sane 1.2.1 heap bounds overwrite in init_options() from backend/test.c via a long init_mode string in a configuration fi... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now