2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-6697MEDIUM6.1The WP Go Maps (formerly WP Google Maps) plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ma...
CVE-2023-51702MEDIUM6.5Since version 5.2.0, when using deferrable mode with the path of a Kubernetes configuration file for authentication, the...
CVE-2023-50944MEDIUM6.5Apache Airflow, versions before 2.8.1, have a vulnerability that allows an authenticated user to access the source code ...
CVE-2023-50943HIGH7.5Apache Airflow, versions before 2.8.1, have a vulnerability that allows a potential attacker to poison the XCom data by ...
CVE-2023-52221CRITICAL9.8Unrestricted Upload of File with Dangerous Type vulnerability in UkrSolution Barcode Scanner and Inventory manager.This ...
CVE-2023-44001MEDIUM5.4An issue in Ailand clinic mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage ...
CVE-2023-44000MEDIUM5.4An issue in Otakara lapis totuka mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via l...
CVE-2023-43999MEDIUM5.4An issue in COLORFUL_laundry mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leaka...
CVE-2023-43998MEDIUM5.4An issue in Books-futaba mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage o...
CVE-2023-43997MEDIUM5.4An issue in Yoruichi hobby base mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via le...
CVE-2023-43996MEDIUM5.4An issue in Q co ltd mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of th...
CVE-2023-43995MEDIUM5.4An issue in picot.golf mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of ...
CVE-2023-43994MEDIUM5.4An issue in Cleaning_makotoya mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leak...
CVE-2023-43993MEDIUM5.4An issue in smaregi_app_market mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via lea...
CVE-2023-43992MEDIUM5.4An issue in STOCKMAN GROUP mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage...
CVE-2023-43991MEDIUM5.4An issue in PRIMA CLINIC mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage o...
CVE-2023-43990MEDIUM5.4An issue in cherub-hair mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of...
CVE-2023-43989MEDIUM5.4An issue in mokumoku chohu mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage...
CVE-2023-43988MEDIUM5.4An issue in nature fitness saijo mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via l...
CVE-2023-51711HIGH7.8An issue was discovered in Regify Regipay Client for Windows version 4.5.1.0 allows DLL hijacking: a user can trigger th...
CVE-2023-43317HIGH8.8An issue in Coign CRM Portal v.06.06 allows a remote attacker to escalate privileges via the userPermissionsList paramet...
CVE-2023-31037HIGH7.2 NVIDIA Bluefield 2 and Bluefield 3 DPU BMC contains a vulnerability in ipmitool, where a root user may cause code injec...
CVE-2023-47115MEDIUM5.4Label Studio is an a popular open source data labeling tool. Versions prior to 1.9.2 have a cross-site scripting (XSS) v...
CVE-2023-35837CRITICAL9.8An issue was discovered in SolaX Pocket WiFi 3 through 3.001.02. Authentication for web interface is completed via an un...
CVE-2023-35836MEDIUM6.5An issue was discovered in SolaX Pocket WiFi 3 through 3.001.02. An attacker within RF range can obtain a cleartext copy...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now