2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-5567 | MEDIUM | 5.4 | 0.4% | Nov 7, 2023 | The QR Code Tag plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'qrcodetag' shortcode in versions ... |
| CVE-2023-4888 | MEDIUM | 5.4 | 0.6% | Nov 7, 2023 | The Simple Like Page Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'sfp-page-plugin' shor... |
| CVE-2023-4842 | MEDIUM | 5.4 | 0.6% | Nov 7, 2023 | The Social Sharing Plugin - Social Warfare plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'social... |
| CVE-2023-5975 | MEDIUM | 4.3 | 0.3% | Nov 7, 2023 | The ImageMapper plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.2.6... |
| CVE-2023-5743 | MEDIUM | 5.4 | 0.5% | Nov 7, 2023 | The Telephone Number Linker plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'telnumli... |
| CVE-2023-5658 | MEDIUM | 5.4 | 0.5% | Nov 7, 2023 | The WP MapIt plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'wp_mapit' shortcode in ... |
| CVE-2023-5532 | MEDIUM | 4.3 | 0.2% | Nov 7, 2023 | The ImageMapper plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.2.6... |
| CVE-2023-5507 | MEDIUM | 5.4 | 0.4% | Nov 7, 2023 | The ImageMapper plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'imagemap' shortcode in versions u... |
| CVE-2023-5506 | MEDIUM | 4.3 | 0.4% | Nov 7, 2023 | The ImageMapper plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the... |
| CVE-2023-46819 | MEDIUM | 5.3 | 1.8% | Nov 7, 2023 | Missing Authentication in Apache Software Foundation Apache OFBiz when using the Solr plugin. This issue affects Apache ... |
| CVE-2023-47510 | MEDIUM | 6.1 | 0.4% | Nov 7, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in WPSolutions-HQ WPDBSpringClean plugin <= 1.6 versions. |
| CVE-2023-46851 | MEDIUM | 4.9 | 1.6% | Nov 7, 2023 | Allura Discussion and Allura Forum importing does not restrict URL values specified in attachments. Project administrato... |
| CVE-2023-5076 | MEDIUM | 5.4 | 0.4% | Nov 7, 2023 | The Ziteboard Online Whiteboard plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'ziteboard' sh... |
| CVE-2023-42555 | MEDIUM | 5.5 | 0.2% | Nov 7, 2023 | Use of implicit intent for sensitive communication vulnerability in EasySetup prior to version 11.1.13 allows attackers ... |
| CVE-2023-42554 | MEDIUM | 6.8 | 0.3% | Nov 7, 2023 | Improper Authentication vulnerabiity in Samsung Pass prior to version 4.3.00.17 allows physical attackers to bypass auth... |
| CVE-2023-42553 | MEDIUM | 5.3 | 0.4% | Nov 7, 2023 | Improper authorization verification vulnerability in Samsung Email prior to version 6.1.90.4 allows attackers to read sa... |
| CVE-2023-42551 | MEDIUM | 6.5 | 0.4% | Nov 7, 2023 | Use of implicit intent for sensitive communication vulnerability in startTncActivity in Samsung Account prior to version... |
| CVE-2023-42550 | MEDIUM | 6.5 | 0.4% | Nov 7, 2023 | Use of implicit intent for sensitive communication vulnerability in startSignIn in Samsung Account prior to version 14.5... |
| CVE-2023-42549 | MEDIUM | 6.5 | 0.4% | Nov 7, 2023 | Use of implicit intent for sensitive communication vulnerability in startNameValidationActivity in Samsung Account prior... |
| CVE-2023-42548 | MEDIUM | 6.5 | 0.4% | Nov 7, 2023 | Use of implicit intent for sensitive communication vulnerability in startMandatoryCheckActivity in Samsung Account prior... |
| CVE-2023-42547 | MEDIUM | 6.5 | 0.4% | Nov 7, 2023 | Use of implicit intent for sensitive communication vulnerability in startEmailValidationActivity in Samsung Account prio... |
| CVE-2023-42546 | MEDIUM | 6.5 | 0.4% | Nov 7, 2023 | Use of implicit intent for sensitive communication vulnerability in startAgreeToDisclaimerActivity in Samsung Account pr... |
| CVE-2023-42544 | MEDIUM | 5.5 | 0.2% | Nov 7, 2023 | Improper access control vulnerability in Quick Share prior to 13.5.52.0 allows local attacker to access local files. |
| CVE-2023-42541 | MEDIUM | 5.3 | 0.4% | Nov 7, 2023 | Improper authorization in PushClientProvider of Samsung Push Service prior to version 3.4.10 allows attacker to access u... |
| CVE-2023-42540 | MEDIUM | 5.5 | 0.2% | Nov 7, 2023 | Improper access control vulnerability in Samsung Account prior to version 14.5.01.1 allows attackers to access sensitive... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now