2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-46202HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Jeff Sherk Auto Login New User After Registration plugin <= 1.9.6 ver...
CVE-2023-46198HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Scientech It Solution Appointment Calendar plugin <= 2.9.6 versions.
CVE-2023-46193HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Internet Marketing Ninjas Internal Link Building plugin <= 1.2.3 vers...
CVE-2023-46191HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Niels van Renselaar Open Graph Metabox plugin <= 1.4.4 versions.
CVE-2023-46190HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Novo-media Novo-Map : your WP posts on custom google maps plugin <= 1...
CVE-2023-46189HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Simple Calendar – Google Calendar Plugin <= 3.2.5 versions.
CVE-2023-46152HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in realmag777 WOLF – WordPress Posts Bulk Editor and Manager Professiona...
CVE-2023-46151HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in AWESOME TOGI Product Category Tree plugin <= 2.5 versions.
CVE-2023-46150HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in WP Military WP Radio plugin <= 3.1.9 versions.
CVE-2023-46136HIGH7.5Werkzeug is a comprehensive WSGI web application library. In versions on the 3.x branch prior to 3.0.1 and on the 2.x br...
CVE-2023-46135HIGH7.5rs-stellar-strkey is a Rust lib for encode/decode of Stellar Strkeys. A panic vulnerability occurs when a specially craf...
CVE-2023-46124HIGH7.2Fides is an open-source privacy engineering platform for managing the fulfillment of data privacy requests in runtime en...
CVE-2023-46120HIGH7.5The RabbitMQ Java client library allows Java and JVM-based applications to connect to and interact with RabbitMQ nodes. ...
CVE-2023-46119HIGH7.5Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Parse Server cra...
CVE-2023-46102HIGH8.8The Android Client application, when enrolled to the AppHub server, connects to an MQTT broker to exchange messages and...
CVE-2023-45990HIGH8Insecure Permissions vulnerability in WenwenaiCMS v.1.0 allows a remote attacker to escalate privileges.
CVE-2023-45851HIGH8.8The Android Client application, when enrolled to the AppHub server,connects to an MQTT broker without enforcing any serv...
CVE-2023-45555HIGH7.8File Upload vulnerability in zzzCMS v.2.1.9 allows a remote attacker to execute arbitrary code via a crafted file to the...
CVE-2023-45321HIGH8.8The Android Client application, when enrolled with the define method 1 (the user manually inserts the server ip address...
CVE-2023-45220HIGH8.8The Android Client application, when enrolled with the define method 1(the user manually inserts the server ip address),...
CVE-2023-43961HIGH8.8An issue in Dromara SaToken version 1.3.50RC and before when using Spring dynamic controllers, a specially crafted reque...
CVE-2023-43507HIGH8.8A vulnerability in the web-based management interface of ClearPass Policy Manager could allow an authenticated remote at...
CVE-2023-43506HIGH7.8A vulnerability in the ClearPass OnGuard Linux agent could allow malicious users on a Linux instance to elevate their us...
CVE-2023-43488HIGH7.8The vulnerability allows a low privileged (untrusted) application to modify a critical system property that should be d...
CVE-2023-42490HIGH7.5 EisBaer Scada - CWE-200: Exposure of Sensitive Information to an Unauthorized Actor

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now