2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-5697MEDIUM6.1A vulnerability classified as problematic has been found in CodeAstro Internet Banking System 1.0. This affects an unkno...
CVE-2023-5696MEDIUM6.1A vulnerability was found in CodeAstro Internet Banking System 1.0. It has been rated as problematic. Affected by this i...
CVE-2023-5695MEDIUM6.1A vulnerability was found in CodeAstro Internet Banking System 1.0. It has been declared as problematic. Affected by thi...
CVE-2023-5694MEDIUM6.1A vulnerability was found in CodeAstro Internet Banking System 1.0. It has been classified as problematic. Affected is a...
CVE-2023-46306MEDIUM6.6The web administration interface in NetModule Router Software (NRSW) 4.6 before 4.6.0.106 and 4.8 before 4.8.0.101 execu...
CVE-2023-38735MEDIUM6.5IBM Cognos Dashboards on Cloud Pak for Data 4.7.0 could allow a remote attacker to bypass security restrictions, caused ...
CVE-2023-5205MEDIUM5.4The Add Custom Body Class plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'add_custom_body_cla...
CVE-2023-4939MEDIUM5.3The SALESmanago plugin for WordPress is vulnerable to Log Injection in versions up to, and including, 3.2.4. This is due...
CVE-2023-4635MEDIUM6.1The EventON plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'tab' parameter in versions up ...
CVE-2023-46054MEDIUM5.4Cross Site Scripting (XSS) vulnerability in WBCE CMS v.1.6.1 and before allows a remote attacker to escalate privileges ...
CVE-2023-46003MEDIUM5.4I-doit pro 25 and below is vulnerable to Cross Site Scripting (XSS) via index.php.
CVE-2023-38194MEDIUM6.1An issue was discovered in SuperWebMailer 9.00.0.01710. It allows keepalive.php XSS via a GET parameter.
CVE-2023-38192MEDIUM6.1An issue was discovered in SuperWebMailer 9.00.0.01710. It allows superadmincreate.php XSS via crafted incorrect passwor...
CVE-2023-45680MEDIUM5.5stb_vorbis is a single file MIT licensed library for processing ogg vorbis files. A crafted file may trigger memory allo...
CVE-2023-45663MEDIUM5.5stb_image is a single file MIT licensed library for processing images. The stbi__getn function reads a specified number ...
CVE-2023-43346MEDIUM5.4Cross-site scripting (XSS) vulnerability in opensolution Quick CMS v.6.7 allows a local attacker to execute arbitrary co...
CVE-2023-43357MEDIUM5.4Cross Site Scripting vulnerability in CMSmadesimple v.2.2.18 allows a local attacker to execute arbitrary code via a cra...
CVE-2023-43356MEDIUM5.4Cross Site Scripting vulnerability in CMSmadesimple v.2.2.18 allows a local attacker to execute arbitrary code via a cra...
CVE-2023-43355MEDIUM5.4Cross Site Scripting vulnerability in CMSmadesimple v.2.2.18 allows a local attacker to execute arbitrary code via a cra...
CVE-2023-43354MEDIUM5.4Cross Site Scripting vulnerability in CMSmadesimple v.2.2.18 allows a local attacker to execute arbitrary code via a cra...
CVE-2023-43353MEDIUM5.4Cross Site Scripting vulnerability in CMSmadesimple v.2.2.18 allows a local attacker to execute arbitrary code via a cra...
CVE-2023-38191MEDIUM6.1An issue was discovered in SuperWebMailer 9.00.0.01710. It allows spamtest_external.php XSS via a crafted filename.
CVE-2023-5689MEDIUM5.4Cross-site Scripting (XSS) - DOM in GitHub repository modoboa/modoboa prior to 2.2.2.
CVE-2023-5688MEDIUM5.4Cross-site Scripting (XSS) - DOM in GitHub repository modoboa/modoboa prior to 2.2.2.
CVE-2023-3965MEDIUM6.1The nsc theme for WordPress is vulnerable to Reflected Cross-Site Scripting via prototype pollution in versions up to, a...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now