2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-5567MEDIUM5.4The QR Code Tag plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'qrcodetag' shortcode in versions ...
CVE-2023-4888MEDIUM5.4The Simple Like Page Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'sfp-page-plugin' shor...
CVE-2023-4842MEDIUM5.4The Social Sharing Plugin - Social Warfare plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'social...
CVE-2023-5975MEDIUM4.3The ImageMapper plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.2.6...
CVE-2023-5743MEDIUM5.4The Telephone Number Linker plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'telnumli...
CVE-2023-5658MEDIUM5.4The WP MapIt plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'wp_mapit' shortcode in ...
CVE-2023-5532MEDIUM4.3The ImageMapper plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.2.6...
CVE-2023-5507MEDIUM5.4The ImageMapper plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'imagemap' shortcode in versions u...
CVE-2023-5506MEDIUM4.3The ImageMapper plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the...
CVE-2023-46819MEDIUM5.3Missing Authentication in Apache Software Foundation Apache OFBiz when using the Solr plugin. This issue affects Apache ...
CVE-2023-47510MEDIUM6.1Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in WPSolutions-HQ WPDBSpringClean plugin <= 1.6 versions.
CVE-2023-46851MEDIUM4.9Allura Discussion and Allura Forum importing does not restrict URL values specified in attachments. Project administrato...
CVE-2023-5076MEDIUM5.4The Ziteboard Online Whiteboard plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'ziteboard' sh...
CVE-2023-42555MEDIUM5.5Use of implicit intent for sensitive communication vulnerability in EasySetup prior to version 11.1.13 allows attackers ...
CVE-2023-42554MEDIUM6.8Improper Authentication vulnerabiity in Samsung Pass prior to version 4.3.00.17 allows physical attackers to bypass auth...
CVE-2023-42553MEDIUM5.3Improper authorization verification vulnerability in Samsung Email prior to version 6.1.90.4 allows attackers to read sa...
CVE-2023-42551MEDIUM6.5Use of implicit intent for sensitive communication vulnerability in startTncActivity in Samsung Account prior to version...
CVE-2023-42550MEDIUM6.5Use of implicit intent for sensitive communication vulnerability in startSignIn in Samsung Account prior to version 14.5...
CVE-2023-42549MEDIUM6.5Use of implicit intent for sensitive communication vulnerability in startNameValidationActivity in Samsung Account prior...
CVE-2023-42548MEDIUM6.5Use of implicit intent for sensitive communication vulnerability in startMandatoryCheckActivity in Samsung Account prior...
CVE-2023-42547MEDIUM6.5Use of implicit intent for sensitive communication vulnerability in startEmailValidationActivity in Samsung Account prio...
CVE-2023-42546MEDIUM6.5Use of implicit intent for sensitive communication vulnerability in startAgreeToDisclaimerActivity in Samsung Account pr...
CVE-2023-42544MEDIUM5.5Improper access control vulnerability in Quick Share prior to 13.5.52.0 allows local attacker to access local files.
CVE-2023-42541MEDIUM5.3Improper authorization in PushClientProvider of Samsung Push Service prior to version 3.4.10 allows attacker to access u...
CVE-2023-42540MEDIUM5.5Improper access control vulnerability in Samsung Account prior to version 14.5.01.1 allows attackers to access sensitive...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now