2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-38328 | MEDIUM | 4.9 | 0.6% | Oct 26, 2023 | An issue was discovered in eGroupWare 17.1.20190111. An Improper Password Storage vulnerability affects the setup panel ... |
| CVE-2023-31416 | MEDIUM | 5.3 | 0.4% | Oct 26, 2023 | Secret token configuration is never applied when using ECK <2.8 with APM Server >=8.0. This could lead to anonymous requ... |
| CVE-2023-5793 | MEDIUM | 5.4 | 0.4% | Oct 26, 2023 | A vulnerability was found in flusity CMS and classified as problematic. This issue affects the function loadCustomBlocCr... |
| CVE-2023-31417 | MEDIUM | 4.4 | 0.2% | Oct 26, 2023 | Elasticsearch generally filters out sensitive information and credentials before logging to the audit log. It was found ... |
| CVE-2023-5791 | MEDIUM | 6.1 | 0.5% | Oct 26, 2023 | A vulnerability, which was classified as problematic, was found in SourceCodester Sticky Notes App 1.0. This affects an ... |
| CVE-2023-5789 | MEDIUM | 4.8 | 0.5% | Oct 26, 2023 | A vulnerability classified as problematic has been found in Dragon Path 707GR1 up to 20231022. Affected is an unknown fu... |
| CVE-2023-46666 | MEDIUM | 6.5 | 0.4% | Oct 26, 2023 | An issue was discovered when using Document Level Security and the SPO "Limited Access" functionality in Elastic Sharepo... |
| CVE-2023-45228 | MEDIUM | 6.5 | 0.4% | Oct 26, 2023 | The application suffers from improper access control when editing users. A user with read permissions can manipulate ... |
| CVE-2023-46450 | MEDIUM | 5.4 | 0.4% | Oct 26, 2023 | Sourcecodester Free and Open Source inventory management system 1.0 is vulnerable to Cross Site Scripting (XSS) via the ... |
| CVE-2023-46238 | MEDIUM | 5.4 | 0.4% | Oct 26, 2023 | ZITADEL is an identity infrastructure management system. ZITADEL users can upload their own avatar image using various i... |
| CVE-2023-45867 | MEDIUM | 6.5 | 0.9% | Oct 26, 2023 | ILIAS (2013-09-12 release) contains a medium-criticality Directory Traversal local file inclusion vulnerability in the S... |
| CVE-2023-46090 | MEDIUM | 6.1 | 0.3% | Oct 26, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in WebDorado WDSocialWidgets plugin <= 1.0.15 versions. |
| CVE-2023-41096 | MEDIUM | 6.1 | 0.1% | Oct 26, 2023 | Missing Encryption of Security Keys vulnerability in Silicon Labs Ember ZNet SDK on 32 bit, ARM (SecureVault High module... |
| CVE-2023-46094 | MEDIUM | 6.1 | 0.3% | Oct 26, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Conversios Track Google Analytics 4, Facebook Pixel & Conv... |
| CVE-2023-46088 | MEDIUM | 4.8 | 0.3% | Oct 26, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Mammothology WP Full Stripe Free plugin <= 1.6.1 versi... |
| CVE-2023-46081 | MEDIUM | 6.1 | 0.3% | Oct 26, 2023 | Unauth. Stored Cross-Site Scripting (XSS) vulnerability in Lavacode Lava Directory Manager plugin <= 1.1.34 versions. |
| CVE-2023-46077 | MEDIUM | 6.1 | 0.3% | Oct 26, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Arrow Plugins The Awesome Feed – Custom Feed plugin <= 2.2... |
| CVE-2023-46076 | MEDIUM | 6.1 | 0.3% | Oct 26, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in RedNao WooCommerce PDF Invoice Builder, Create invoices, p... |
| CVE-2023-46075 | MEDIUM | 6.1 | 0.3% | Oct 26, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in wpdevart Contact Form Builder, Contact Widget plugin <= 2.... |
| CVE-2023-32116 | MEDIUM | 4.8 | 0.3% | Oct 26, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in TotalPress.Org Custom post types, Custom Fields & more... |
| CVE-2023-46074 | MEDIUM | 6.1 | 0.3% | Oct 26, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Borbis Media FreshMail For WordPress plugin <= 2.3.2 versi... |
| CVE-2023-46072 | MEDIUM | 6.1 | 0.3% | Oct 26, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Michael Simpson Add Shortcodes Actions And Filters plugin ... |
| CVE-2023-30492 | MEDIUM | 5.4 | 0.3% | Oct 26, 2023 | Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Vark Minimum Purchase for WooCommerce plugin <= ... |
| CVE-2023-46754 | MEDIUM | 5.3 | 0.4% | Oct 26, 2023 | The admin panel for Obl.ong before 1.1.2 allows authorization bypass because the email OTP feature accepts arbitrary num... |
| CVE-2023-46753 | MEDIUM | 5.9 | 0.8% | Oct 26, 2023 | An issue was discovered in FRRouting FRR through 9.0.1. A crash can occur for a crafted BGP UPDATE message without manda... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now