2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-41072MEDIUM5.5A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Sonoma ...
CVE-2023-40449MEDIUM5.5The issue was addressed with improved memory handling. This issue is fixed in iOS 17.1 and iPadOS 17.1, macOS Monterey 1...
CVE-2023-40444MEDIUM5.5A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sonoma 14.1. An app may be ...
CVE-2023-40425MEDIUM4.4A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Sonoma ...
CVE-2023-40421MEDIUM5.5A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sonoma 14.1, macOS Monterey...
CVE-2023-40416MEDIUM6.5The issue was addressed with improved memory handling. This issue is fixed in iOS 17.1 and iPadOS 17.1, macOS Monterey 1...
CVE-2023-40413MEDIUM5.5The issue was addressed with improved handling of caches. This issue is fixed in iOS 17.1 and iPadOS 17.1, macOS Montere...
CVE-2023-40408MEDIUM5.3An inconsistent user interface issue was addressed with improved state management. This issue is fixed in macOS Sonoma 1...
CVE-2023-5758MEDIUM6.1When opening a page in reader mode, the redirect URL could have caused attacker-controlled script to execute in a reflec...
CVE-2023-5745MEDIUM5.4The Reusable Text Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'text-blocks' shortcode i...
CVE-2023-5744MEDIUM5.4The Very Simple Google Maps plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'vsgmap' ...
CVE-2023-5740MEDIUM5.4The Live Chat with Facebook Messenger plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's...
CVE-2023-5732MEDIUM6.5An attacker could have created a malicious link using bidirectional characters to spoof the location in the address bar ...
CVE-2023-5729MEDIUM4.3A malicious web site can enter fullscreen mode while simultaneously triggering a WebAuthn prompt. This could have obscur...
CVE-2023-5727MEDIUM6.5The executable file warning was not presented when downloading .msix, .msixbundle, .appx, and .appxbundle files, which c...
CVE-2023-5726MEDIUM4.3A website could have obscured the full screen notification by using the file open dialog. This could have led to user co...
CVE-2023-5725MEDIUM4.3A malicious installed WebExtension could open arbitrary URLs, which under the right circumstance could be leveraged to c...
CVE-2023-5723MEDIUM5.3An attacker with temporary script access to a site could have set a cookie containing invalid characters using `document...
CVE-2023-5722MEDIUM5.3Using iterative requests an attacker was able to learn the size of an opaque response, as well as the contents of a serv...
CVE-2023-5721MEDIUM4.3It was possible for certain browser prompts and dialogs to be activated or dismissed unintentionally by the user due to ...
CVE-2023-5568MEDIUM6.5A heap-based Buffer Overflow flaw was discovered in Samba. It could allow a remote, authenticated attacker to exploit th...
CVE-2023-5127MEDIUM5.4The WP Font Awesome plugin for WordPress is vulnerable to Stored Cross-Site Scripting via shortcodes in versions up to, ...
CVE-2023-5126MEDIUM5.4The Delete Me plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'plugin_delete_me' shortcode in vers...
CVE-2023-5110MEDIUM5.4The BSK PDF Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'bsk-pdfm-category-dropdown' s...
CVE-2023-5085MEDIUM5.4The Advanced Menu Widget plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'advMenu' shortcode in ve...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now