2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-32335HIGH7.5IBM Maximo Application Suite 8.10, 8.11 and IBM Maximo Asset Management 7.6.1.3 stores sensitive information in URL para...
CVE-2023-28517MEDIUM5.4IBM Sterling Partner Engagement Manager 6.1.2, 6.2.0, and 6.2.2 is vulnerable to cross-site scripting. This vulnerabilit...
CVE-2023-4839MEDIUM4.8The WP Go Maps for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in versions up to, and incl...
CVE-2023-7072HIGH7.5The Post Grid Combo – 36+ Gutenberg Blocks plugin for WordPress is vulnerable to Sensitive Information Exposure in all v...
CVE-2023-43279MEDIUM6.5Null Pointer Dereference in mask_cidr6 component at cidr.c in Tcpreplay 4.4.4 allows attackers to crash the application ...
CVE-2023-43292MEDIUM6.1Cross Site Scripting vulnerability in My Food Recipe Using PHP with Source Code v.1.0 allows a local attacker to execute...
CVE-2023-42308MEDIUM6.1Cross Site Scripting (XSS) vulnerability in Manage Fastrack Subjects in Code-Projects Exam Form Submission 1.0 allows at...
CVE-2023-42307MEDIUM6.1Cross Site Scripting (XSS) vulnerability in Code-Projects Exam Form Submission 1.0 allows attackers to run arbitrary cod...
CVE-2023-5410HIGH8.2A potential security vulnerability has been reported in the system BIOS of certain HP PC products, which might allow mem...
CVE-2023-30968MEDIUM6.8One of Gotham Gaia services was found to be vulnerable to a stored cross-site scripting (XSS) vulnerability that could h...
CVE-2023-4780Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-0590. Reason: This candidate is a d...
CVE-2023-48788CRITICAL9.8A improper neutralization of special elements used in an sql command ('sql injection') in Fortinet FortiClientEMS versio...
CVE-2023-47534HIGH8.8A improper neutralization of formula elements in a csv file in Fortinet FortiClientEMS version 7.2.0 through 7.2.2, 7.0....
CVE-2023-46717HIGH8.8An improper authentication vulnerability [CWE-287] in FortiOS versions 7.4.1 and below, versions 7.2.6 and below, and ve...
CVE-2023-42790HIGH8.1A stack-based buffer overflow vulnerability in Fortinet FortiOS 7.4.0 through 7.4.1, FortiOS 7.2.0 through 7.2.5, FortiO...
CVE-2023-42789CRITICAL9.8A out-of-bounds write vulnerability in Fortinet FortiOS 7.4.0 through 7.4.1, FortiOS 7.2.0 through 7.2.5, FortiOS 7.0.0 ...
CVE-2023-41842MEDIUM6.7A use of externally-controlled format string vulnerability [CWE-134] vulnerability in Fortinet allows a privileged atta...
CVE-2023-36554CRITICAL9.8A improper access control in Fortinet FortiManager version 7.4.0, version 7.2.0 through 7.2.3, version 7.0.0 through 7.0...
CVE-2023-45793MEDIUM5.5A vulnerability has been identified in Siveillance Control (All versions >= V2.8 < V3.1.1). The affected product does no...
CVE-2023-41313CRITICAL9.8The authentication method in Apache Doris versions before 2.0.0 was vulnerable to timing attacks. Users are recommended ...
CVE-2023-4731MEDIUM4.3The LadiApp plugn for WordPress is vulnerable to Cross-Site Request Forgery due to a missing nonce check on the init_end...
CVE-2023-4729MEDIUM4.3The LadiApp plugin for WordPress is vulnerable to Cross-Site Request Forgery due to a missing nonce check on the publish...
CVE-2023-4728MEDIUM5.4The LadiApp plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on...
CVE-2023-4629MEDIUM4.3The LadiApp plugin for WordPress is vulnerable to Cross-Site Request Forgery due to a missing nonce check on the save_co...
CVE-2023-4628MEDIUM4.3The LadiApp plugin for WordPress is vulnerable to Cross-Site Request Forgery due to a missing nonce check on the ladiflo...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now