2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-7339 | MEDIUM | 6.5 | 0.4% | Mar 27, 2026 | Stack-based buffer overflow vulnerability in Softing Industrial Automation GmbH gateways allows overflow buffers. This i... |
| CVE-2023-40693 | MEDIUM | 5.4 | 0.2% | Mar 13, 2026 | IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.1.0.0 through 6.1.2.7_2, and 6.2.0.0 through 6.2.0.5_1, 6.2.... |
| CVE-2023-38005 | MEDIUM | 4.3 | 0.2% | Feb 17, 2026 | IBM Cloud Pak System 2.3.3.6, 2.3.3.7, 2.3.4.0, 2.3.4.1, and 2.3.5.0 could allow an authenticated user to perform unauth... |
| CVE-2023-38265 | MEDIUM | 5.3 | 0.2% | Feb 17, 2026 | IBM Cloud Pak System 2.3.3.6, 2.3.3.7, 2.3.4.0, 2.3.4.1, and 2.3.5.0 could disclose folder location information to an un... |
| CVE-2023-20601 | MEDIUM | 4.6 | 0.2% | Feb 12, 2026 | Improper input validation within RAS TA Driver can allow a local attacker to access out-of-bounds memory, potentially re... |
| CVE-2023-38281 | MEDIUM | 5.3 | 0.3% | Feb 4, 2026 | IBM Cloud Pak System does not set the secure attribute on authorization tokens or session cookies. Attackers may be able... |
| CVE-2023-38017 | MEDIUM | 5.3 | 0.3% | Feb 4, 2026 | IBM Cloud Pak System is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScrip... |
| CVE-2023-54343 | MEDIUM | 6.4 | 0.3% | Feb 1, 2026 | QWE DL 2.0.1 mobile web application contains a persistent input validation vulnerability allowing remote attackers to in... |
| CVE-2023-37525 | MEDIUM | 5.3 | 0.3% | Jan 28, 2026 | A sensitive information disclosure in HCL BigFix Compliance allows a remote attacker to access files under the WEB-INF d... |
| CVE-2023-54341 | MEDIUM | 6.1 | 0.3% | Jan 13, 2026 | Webgrind 1.1 and before contains a reflected cross-site scripting vulnerability that allows unauthenticated attackers to... |
| CVE-2023-54332 | MEDIUM | 6.1 | 0.2% | Jan 13, 2026 | Jetpack 11.4 contains a cross-site scripting vulnerability in the contact form module that allows attackers to inject ma... |
| CVE-2023-54328 | MEDIUM | 6.5 | 0.4% | Jan 13, 2026 | AimOne Video Converter 2.04 Build 103 contains a buffer overflow vulnerability in its registration form that causes appl... |
| CVE-2023-53985 | MEDIUM | 6.1 | 0.2% | Jan 13, 2026 | Zstore, now referred to as Zippy CRM, 6.5.4 contains a reflected cross-site scripting vulnerability that allows attacker... |
| CVE-2023-7333 | MEDIUM | 5.3 | 0.2% | Jan 7, 2026 | A weakness has been identified in bluelabsio records-mover up to 1.5.4. The affected element is an unknown function of t... |
| CVE-2023-52212 | MEDIUM | 5.4 | 0.1% | Jan 5, 2026 | Cross-Site Request Forgery (CSRF) vulnerability in Automattic WP Job Manager allows Cross Site Request Forgery.This issu... |
| CVE-2023-51513 | MEDIUM | 6.5 | 0.1% | Jan 5, 2026 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in INTINITUM F... |
| CVE-2023-7331 | MEDIUM | 5.1 | 0.2% | Dec 31, 2025 | A vulnerability was detected in PKrystian Full-Stack-Bank up to bf73a0179e3ff07c0d7dc35297cea0be0e5b1317. This vulnerabi... |
| CVE-2023-54321 | MEDIUM | 5.5 | 0.1% | Dec 30, 2025 | In the Linux kernel, the following vulnerability has been resolved: driver core: fix potential null-ptr-deref in device... |
| CVE-2023-41656 | MEDIUM | 5.4 | 0.2% | Dec 30, 2025 | Missing Authorization vulnerability in wpdive Better Elementor Addons allows Exploiting Incorrectly Configured Access Co... |
| CVE-2023-32238 | MEDIUM | 5.4 | 0.2% | Dec 30, 2025 | Vulnerability in CodexThemes TheGem (Elementor), CodexThemes TheGem (WPBakery).This issue affects TheGem (Elementor): fr... |
| CVE-2023-40679 | MEDIUM | 6.5 | 0.2% | Dec 24, 2025 | Missing Authorization vulnerability in Jewel Theme Master Addons for Elementor allows Exploiting Incorrectly Configured ... |
| CVE-2023-32120 | MEDIUM | 5.9 | 0.2% | Dec 24, 2025 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Bob Hostel ... |
| CVE-2023-28619 | MEDIUM | 4.3 | 0.2% | Dec 24, 2025 | Missing Authorization vulnerability in bnayawpguy Resoto allows Exploiting Incorrectly Configured Access Control Securit... |
| CVE-2023-52210 | MEDIUM | 5.3 | 0.3% | Dec 23, 2025 | Vulnerability in Tyche softwares Product Delivery Date for WooCommerce – Lite.This issue affects Product Delivery Date f... |
| CVE-2023-53978 | MEDIUM | 5.4 | 0.2% | Dec 22, 2025 | myBB Forums 1.8.26 contains a stored cross-site scripting vulnerability in the forum announcement system that allows aut... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now