2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-41072 | MEDIUM | 5.5 | 0.3% | Oct 25, 2023 | A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Sonoma ... |
| CVE-2023-40449 | MEDIUM | 5.5 | 0.4% | Oct 25, 2023 | The issue was addressed with improved memory handling. This issue is fixed in iOS 17.1 and iPadOS 17.1, macOS Monterey 1... |
| CVE-2023-40444 | MEDIUM | 5.5 | 0.3% | Oct 25, 2023 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sonoma 14.1. An app may be ... |
| CVE-2023-40425 | MEDIUM | 4.4 | 0.3% | Oct 25, 2023 | A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Sonoma ... |
| CVE-2023-40421 | MEDIUM | 5.5 | 0.4% | Oct 25, 2023 | A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sonoma 14.1, macOS Monterey... |
| CVE-2023-40416 | MEDIUM | 6.5 | 1.3% | Oct 25, 2023 | The issue was addressed with improved memory handling. This issue is fixed in iOS 17.1 and iPadOS 17.1, macOS Monterey 1... |
| CVE-2023-40413 | MEDIUM | 5.5 | 0.5% | Oct 25, 2023 | The issue was addressed with improved handling of caches. This issue is fixed in iOS 17.1 and iPadOS 17.1, macOS Montere... |
| CVE-2023-40408 | MEDIUM | 5.3 | 1.0% | Oct 25, 2023 | An inconsistent user interface issue was addressed with improved state management. This issue is fixed in macOS Sonoma 1... |
| CVE-2023-5758 | MEDIUM | 6.1 | 0.4% | Oct 25, 2023 | When opening a page in reader mode, the redirect URL could have caused attacker-controlled script to execute in a reflec... |
| CVE-2023-5745 | MEDIUM | 5.4 | 0.4% | Oct 25, 2023 | The Reusable Text Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'text-blocks' shortcode i... |
| CVE-2023-5744 | MEDIUM | 5.4 | 0.6% | Oct 25, 2023 | The Very Simple Google Maps plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'vsgmap' ... |
| CVE-2023-5740 | MEDIUM | 5.4 | 0.5% | Oct 25, 2023 | The Live Chat with Facebook Messenger plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's... |
| CVE-2023-5732 | MEDIUM | 6.5 | 1.0% | Oct 25, 2023 | An attacker could have created a malicious link using bidirectional characters to spoof the location in the address bar ... |
| CVE-2023-5729 | MEDIUM | 4.3 | 0.6% | Oct 25, 2023 | A malicious web site can enter fullscreen mode while simultaneously triggering a WebAuthn prompt. This could have obscur... |
| CVE-2023-5727 | MEDIUM | 6.5 | 0.9% | Oct 25, 2023 | The executable file warning was not presented when downloading .msix, .msixbundle, .appx, and .appxbundle files, which c... |
| CVE-2023-5726 | MEDIUM | 4.3 | 0.6% | Oct 25, 2023 | A website could have obscured the full screen notification by using the file open dialog. This could have led to user co... |
| CVE-2023-5725 | MEDIUM | 4.3 | 0.9% | Oct 25, 2023 | A malicious installed WebExtension could open arbitrary URLs, which under the right circumstance could be leveraged to c... |
| CVE-2023-5723 | MEDIUM | 5.3 | 0.7% | Oct 25, 2023 | An attacker with temporary script access to a site could have set a cookie containing invalid characters using `document... |
| CVE-2023-5722 | MEDIUM | 5.3 | 0.6% | Oct 25, 2023 | Using iterative requests an attacker was able to learn the size of an opaque response, as well as the contents of a serv... |
| CVE-2023-5721 | MEDIUM | 4.3 | 0.8% | Oct 25, 2023 | It was possible for certain browser prompts and dialogs to be activated or dismissed unintentionally by the user due to ... |
| CVE-2023-5568 | MEDIUM | 6.5 | 1.6% | Oct 25, 2023 | A heap-based Buffer Overflow flaw was discovered in Samba. It could allow a remote, authenticated attacker to exploit th... |
| CVE-2023-5127 | MEDIUM | 5.4 | 0.6% | Oct 25, 2023 | The WP Font Awesome plugin for WordPress is vulnerable to Stored Cross-Site Scripting via shortcodes in versions up to, ... |
| CVE-2023-5126 | MEDIUM | 5.4 | 0.4% | Oct 25, 2023 | The Delete Me plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'plugin_delete_me' shortcode in vers... |
| CVE-2023-5110 | MEDIUM | 5.4 | 0.4% | Oct 25, 2023 | The BSK PDF Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'bsk-pdfm-category-dropdown' s... |
| CVE-2023-5085 | MEDIUM | 5.4 | 0.4% | Oct 25, 2023 | The Advanced Menu Widget plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'advMenu' shortcode in ve... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now