2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-48296 | MEDIUM | 4.3 | 0.4% | Mar 25, 2024 | OroPlatform is a PHP Business Application Platform (BAP). Navigation history, most viewed and favorite navigation items... |
| CVE-2023-45824 | MEDIUM | 4.3 | 0.4% | Mar 25, 2024 | OroPlatform is a PHP Business Application Platform (BAP). A logged in user can access page state data of pinned pages o... |
| CVE-2023-27608 | CRITICAL | 9.8 | 0.5% | Mar 25, 2024 | Missing Authorization vulnerability in WP Swings Points and Rewards for WooCommerce.This issue affects Points and Reward... |
| CVE-2023-25039 | HIGH | 8.8 | 0.5% | Mar 25, 2024 | Missing Authorization vulnerability in CodePeople Google Maps CP.This issue affects Google Maps CP: from n/a through 1.0... |
| CVE-2023-22699 | MEDIUM | 5.4 | 0.3% | Mar 25, 2024 | Missing Authorization vulnerability in MainWP MainWP Wordfence Extension.This issue affects MainWP Wordfence Extension: ... |
| CVE-2023-37886 | HIGH | 8.8 | 0.4% | Mar 25, 2024 | Missing Authorization vulnerability in InspiryThemes RealHomes.This issue affects RealHomes: from n/a through 4.0.2. |
| CVE-2023-37885 | HIGH | 8.8 | 0.4% | Mar 25, 2024 | Missing Authorization vulnerability in InspiryThemes RealHomes.This issue affects RealHomes: from n/a through 4.0.2. |
| CVE-2023-33923 | MEDIUM | 4.3 | 0.5% | Mar 25, 2024 | Missing Authorization vulnerability in HashThemes Viral News, HashThemes Viral, HashThemes HashOne.This issue affects Vi... |
| CVE-2023-30480 | MEDIUM | 4.3 | 0.4% | Mar 25, 2024 | Missing Authorization vulnerability in Sparkle WP Educenter.This issue affects Educenter: from n/a through 1.5.5. |
| CVE-2023-5685 | HIGH | 7.5 | 3.5% | Mar 22, 2024 | A flaw was found in XNIO. The XNIO NotifierState that can cause a Stack Overflow Exception when the chain of notifier st... |
| CVE-2023-4063 | MEDIUM | 5.3 | 0.6% | Mar 22, 2024 | Certain HP OfficeJet Pro printers are potentially vulnerable to a Denial of Service when using an improper eSCL URL GET ... |
| CVE-2023-23349 | LOW | 2.2 | 0.1% | Mar 22, 2024 | Kaspersky has fixed a security issue in Kaspersky Password Manager (KPM) for Windows that allowed a local user to recove... |
| CVE-2023-41099 | HIGH | 7.8 | 0.1% | Mar 22, 2024 | In the Windows installer in Atos Eviden CardOS API before 5.5.5.2811, Local Privilege Escalation can occur.(from a regul... |
| CVE-2023-42954 | MEDIUM | 4.9 | 0.4% | Mar 21, 2024 | A privilege escalation issue existed in FileMaker Server, potentially exposing sensitive information to front-end websit... |
| CVE-2023-49837 | MEDIUM | 6.5 | 0.4% | Mar 21, 2024 | Uncontrolled Resource Consumption vulnerability in David Artiss Code Embed.This issue affects Code Embed: from n/a throu... |
| CVE-2023-47715 | MEDIUM | 4.3 | 0.3% | Mar 21, 2024 | IBM Storage Protect Plus Server 10.1.0 through 10.1.16 could allow an authenticated user with read-only permissions to a... |
| CVE-2023-52620 | LOW | 2.5 | 0.2% | Mar 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: disallow timeout for anonymou... |
| CVE-2023-48903 | MEDIUM | 6.1 | 0.6% | Mar 21, 2024 | Stored Cross-Site Scripting (XSS) vulnerability in tramyardg autoexpress 1.3.0, allows remote unauthenticated attackers ... |
| CVE-2023-48902 | CRITICAL | 9.8 | 1.3% | Mar 21, 2024 | An issue was discovered in tramyardg autoexpress version 1.3.0, allows unauthenticated remote attackers to escalate priv... |
| CVE-2023-48901 | CRITICAL | 9.8 | 1.0% | Mar 21, 2024 | A SQL injection vulnerability in tramyardg Autoexpress version 1.3.0, allows remote unauthenticated attackers to execute... |
| CVE-2023-6500 | MEDIUM | 5.4 | 0.4% | Mar 21, 2024 | The Shariff Wrapper plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'shariff' shortco... |
| CVE-2023-49985 | MEDIUM | 6.5 | 0.5% | Mar 21, 2024 | A cross-site scripting (XSS) vulnerability in the component /management/class of School Fees Management System v1.0 allo... |
| CVE-2023-49984 | MEDIUM | 6.1 | 0.5% | Mar 21, 2024 | A cross-site scripting (XSS) vulnerability in the component /management/settings of School Fees Management System v1.0 a... |
| CVE-2023-49983 | MEDIUM | 6.8 | 0.6% | Mar 21, 2024 | A cross-site scripting (XSS) vulnerability in the component /management/class of School Fees Management System v1.0 allo... |
| CVE-2023-49982 | HIGH | 8.8 | 0.8% | Mar 21, 2024 | Broken access control in the component /admin/management/users of School Fees Management System v1.0 allows attackers to... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now