2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-48068 | MEDIUM | 5.4 | 0.4% | Nov 13, 2023 | DedeCMS v6.2 was discovered to contain a Cross-site Scripting (XSS) vulnerability via spec_add.php. |
| CVE-2023-48063 | MEDIUM | 4.3 | 0.2% | Nov 13, 2023 | An issue was discovered in dreamer_cms 4.1.3. There is a CSRF vulnerability that can delete a theme project via /admin/c... |
| CVE-2023-6098 | MEDIUM | 6.1 | 0.5% | Nov 13, 2023 | An XSS vulnerability has been discovered in ICS Business Manager affecting version 7.06.0028.7066. A remote attacker cou... |
| CVE-2023-46092 | MEDIUM | 6.1 | 0.2% | Nov 13, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in LionScripts.Com Webmaster Tools allows Stored XSS.This issue affects ... |
| CVE-2023-40335 | MEDIUM | 6.1 | 0.2% | Nov 13, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Jeremy O'Connell Cleverwise Daily Quotes allows Stored XSS.This issue... |
| CVE-2023-47801 | MEDIUM | 4.7 | 0.4% | Nov 13, 2023 | An issue was discovered in Click Studios Passwordstate before 9811. Existing users (Security Administrators) could use t... |
| CVE-2023-5741 | MEDIUM | 5.4 | 0.6% | Nov 13, 2023 | The POWR plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'powr-powr-pack' shortcode i... |
| CVE-2023-4775 | MEDIUM | 5.4 | 0.6% | Nov 13, 2023 | The Advanced iFrame plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'advanced_iframe' shortcod... |
| CVE-2023-46201 | MEDIUM | 6.1 | 0.2% | Nov 13, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Jeff Sherk Auto Login New User After Registration allows Stored XSS.T... |
| CVE-2023-47652 | MEDIUM | 6.1 | 0.2% | Nov 13, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Lucian Apostol Auto Affiliate Links allows Stored XSS.This issue affe... |
| CVE-2023-47516 | MEDIUM | 6.1 | 0.2% | Nov 13, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Stark Digital Category Post List Widget allows Stored XSS.This issue ... |
| CVE-2023-46634 | MEDIUM | 6.1 | 0.2% | Nov 13, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in phoeniixx Custom My Account for Woocommerce allows Cross-Site Scripti... |
| CVE-2023-41239 | MEDIUM | 6.5 | 0.4% | Nov 13, 2023 | Server-Side Request Forgery (SSRF) vulnerability in Blubrry PowerPress Podcasting plugin by Blubrry.This issue affects P... |
| CVE-2023-38515 | MEDIUM | 4.9 | 0.4% | Nov 13, 2023 | Server-Side Request Forgery (SSRF) vulnerability in Andy Moyle Church Admin.This issue affects Church Admin: from n/a th... |
| CVE-2023-37978 | MEDIUM | 4.9 | 0.4% | Nov 13, 2023 | Server-Side Request Forgery (SSRF) vulnerability in Dimitar Ivanov HTTP Headers.This issue affects HTTP Headers: from n/... |
| CVE-2023-31219 | MEDIUM | 4.9 | 0.6% | Nov 13, 2023 | Server-Side Request Forgery (SSRF) vulnerability in WPChill Download Monitor.This issue affects Download Monitor: from n... |
| CVE-2023-23800 | MEDIUM | 6.5 | 0.5% | Nov 13, 2023 | Server-Side Request Forgery (SSRF) vulnerability in Vova Anokhin WP Shortcodes Plugin — Shortcodes Ultimate.This issue a... |
| CVE-2023-23684 | MEDIUM | 6.5 | 0.4% | Nov 13, 2023 | Server-Side Request Forgery (SSRF) vulnerability in WPGraphQL.This issue affects WPGraphQL: from n/a through 1.14.5. |
| CVE-2023-38364 | MEDIUM | 6.1 | 0.5% | Nov 13, 2023 | IBM CICS TX Advanced 10.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary Java... |
| CVE-2023-38363 | MEDIUM | 4.3 | 0.6% | Nov 13, 2023 | IBM CICS TX Advanced 10.1 does not set the secure attribute on authorization tokens or session cookies. Attackers may b... |
| CVE-2023-47037 | MEDIUM | 4.3 | 1.5% | Nov 12, 2023 | We failed to apply CVE-2023-40611 in 2.7.1 and this vulnerability was marked as fixed then. Apache Airflow, versions b... |
| CVE-2023-42781 | MEDIUM | 6.5 | 1.7% | Nov 12, 2023 | Apache Airflow, versions before 2.7.3, has a vulnerability that allows an authorized user who has access to read specifi... |
| CVE-2023-43057 | MEDIUM | 5.4 | 0.4% | Nov 11, 2023 | IBM QRadar SIEM 7.5.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScri... |
| CVE-2023-5959 | MEDIUM | 4.3 | 0.9% | Nov 11, 2023 | A vulnerability, which was classified as problematic, was found in Byzoro Smart S85F Management Platform V31R02B10-01. A... |
| CVE-2023-47122 | MEDIUM | 5.3 | 0.4% | Nov 10, 2023 | Gitsign is software for keyless Git signing using Sigstore. In versions of gitsign starting with 0.6.0 and prior to 0.8.... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now