2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-6697 | MEDIUM | 6.1 | 1.0% | Jan 24, 2024 | The WP Go Maps (formerly WP Google Maps) plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ma... |
| CVE-2023-51702 | MEDIUM | 6.5 | 0.4% | Jan 24, 2024 | Since version 5.2.0, when using deferrable mode with the path of a Kubernetes configuration file for authentication, the... |
| CVE-2023-50944 | MEDIUM | 6.5 | 1.0% | Jan 24, 2024 | Apache Airflow, versions before 2.8.1, have a vulnerability that allows an authenticated user to access the source code ... |
| CVE-2023-50943 | HIGH | 7.5 | 1.2% | Jan 24, 2024 | Apache Airflow, versions before 2.8.1, have a vulnerability that allows a potential attacker to poison the XCom data by ... |
| CVE-2023-52221 | CRITICAL | 9.8 | 0.6% | Jan 24, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in UkrSolution Barcode Scanner and Inventory manager.This ... |
| CVE-2023-44001 | MEDIUM | 5.4 | 0.4% | Jan 24, 2024 | An issue in Ailand clinic mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage ... |
| CVE-2023-44000 | MEDIUM | 5.4 | 0.4% | Jan 24, 2024 | An issue in Otakara lapis totuka mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via l... |
| CVE-2023-43999 | MEDIUM | 5.4 | 0.4% | Jan 24, 2024 | An issue in COLORFUL_laundry mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leaka... |
| CVE-2023-43998 | MEDIUM | 5.4 | 0.4% | Jan 24, 2024 | An issue in Books-futaba mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage o... |
| CVE-2023-43997 | MEDIUM | 5.4 | 0.4% | Jan 24, 2024 | An issue in Yoruichi hobby base mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via le... |
| CVE-2023-43996 | MEDIUM | 5.4 | 0.4% | Jan 24, 2024 | An issue in Q co ltd mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of th... |
| CVE-2023-43995 | MEDIUM | 5.4 | 0.4% | Jan 24, 2024 | An issue in picot.golf mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of ... |
| CVE-2023-43994 | MEDIUM | 5.4 | 0.4% | Jan 24, 2024 | An issue in Cleaning_makotoya mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leak... |
| CVE-2023-43993 | MEDIUM | 5.4 | 0.4% | Jan 24, 2024 | An issue in smaregi_app_market mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via lea... |
| CVE-2023-43992 | MEDIUM | 5.4 | 0.4% | Jan 24, 2024 | An issue in STOCKMAN GROUP mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage... |
| CVE-2023-43991 | MEDIUM | 5.4 | 0.4% | Jan 24, 2024 | An issue in PRIMA CLINIC mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage o... |
| CVE-2023-43990 | MEDIUM | 5.4 | 0.4% | Jan 24, 2024 | An issue in cherub-hair mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of... |
| CVE-2023-43989 | MEDIUM | 5.4 | 0.4% | Jan 24, 2024 | An issue in mokumoku chohu mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage... |
| CVE-2023-43988 | MEDIUM | 5.4 | 0.4% | Jan 24, 2024 | An issue in nature fitness saijo mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via l... |
| CVE-2023-51711 | HIGH | 7.8 | 0.2% | Jan 24, 2024 | An issue was discovered in Regify Regipay Client for Windows version 4.5.1.0 allows DLL hijacking: a user can trigger th... |
| CVE-2023-43317 | HIGH | 8.8 | 1.1% | Jan 24, 2024 | An issue in Coign CRM Portal v.06.06 allows a remote attacker to escalate privileges via the userPermissionsList paramet... |
| CVE-2023-31037 | HIGH | 7.2 | 0.7% | Jan 24, 2024 | NVIDIA Bluefield 2 and Bluefield 3 DPU BMC contains a vulnerability in ipmitool, where a root user may cause code injec... |
| CVE-2023-47115 | MEDIUM | 5.4 | 1.4% | Jan 23, 2024 | Label Studio is an a popular open source data labeling tool. Versions prior to 1.9.2 have a cross-site scripting (XSS) v... |
| CVE-2023-35837 | CRITICAL | 9.8 | 1.0% | Jan 23, 2024 | An issue was discovered in SolaX Pocket WiFi 3 through 3.001.02. Authentication for web interface is completed via an un... |
| CVE-2023-35836 | MEDIUM | 6.5 | 0.3% | Jan 23, 2024 | An issue was discovered in SolaX Pocket WiFi 3 through 3.001.02. An attacker within RF range can obtain a cleartext copy... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now