2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-5171 | MEDIUM | 6.5 | 1.0% | Sep 27, 2023 | During Ion compilation, a Garbage Collection could have resulted in a use-after-free condition, allowing an attacker to ... |
| CVE-2023-5169 | MEDIUM | 6.5 | 1.0% | Sep 27, 2023 | A compromised content process could have provided malicious data in a `PathRecording` resulting in an out-of-bounds writ... |
| CVE-2023-5162 | MEDIUM | 5.4 | 0.6% | Sep 27, 2023 | The Options for Twenty Seventeen plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'social-links' sh... |
| CVE-2023-5161 | MEDIUM | 5.4 | 0.6% | Sep 27, 2023 | The Modal Window plugin for WordPress is vulnerable to Stored Cross-Site Scripting via shortcodes in versions up to, and... |
| CVE-2023-5135 | MEDIUM | 5.4 | 0.6% | Sep 27, 2023 | The Simple Cloudflare Turnstile plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'gravity-simple-tu... |
| CVE-2023-4565 | MEDIUM | 5.3 | 0.5% | Sep 27, 2023 | Broadcast permission control vulnerability in the framework module. Successful exploitation of this vulnerability may ca... |
| CVE-2023-4506 | MEDIUM | 6.5 | 0.7% | Sep 27, 2023 | The Active Directory Integration / LDAP Integration plugin for WordPress is vulnerable to LDAP Passback in versions up t... |
| CVE-2023-4505 | MEDIUM | 4.9 | 0.7% | Sep 27, 2023 | The Staff / Employee Business Directory for Active Directory plugin for WordPress is vulnerable to LDAP Passback in vers... |
| CVE-2023-4423 | MEDIUM | 4.8 | 0.5% | Sep 27, 2023 | The WP Event Manager – Events Calendar, Registrations, Sell Tickets with WooCommerce plugin for WordPress is vulnerable ... |
| CVE-2023-4065 | MEDIUM | 5.5 | 0.2% | Sep 27, 2023 | A flaw was found in Red Hat AMQ Broker Operator, where it displayed a password defined in ActiveMQArtemisAddress CR, sho... |
| CVE-2023-4003 | MEDIUM | 6.8 | 0.5% | Sep 27, 2023 | One Identity Password Manager version 5.9.7.1 - An unauthenticated attacker with physical access to a workstation may u... |
| CVE-2023-44216 | MEDIUM | 5.3 | 1.8% | Sep 27, 2023 | PVRIC (PowerVR Image Compression) on Imagination 2018 and later GPU devices offers software-transparent compression that... |
| CVE-2023-44207 | MEDIUM | 5.4 | 0.5% | Sep 27, 2023 | Stored cross-site scripting (XSS) vulnerability in protection plan name. The following products are affected: Acronis Cy... |
| CVE-2023-44205 | MEDIUM | 5.3 | 0.6% | Sep 27, 2023 | Sensitive information disclosure due to improper authorization. The following products are affected: Acronis Cyber Prote... |
| CVE-2023-44161 | MEDIUM | 6.5 | 0.2% | Sep 27, 2023 | Sensitive information manipulation due to cross-site request forgery. The following products are affected: Acronis Cyber... |
| CVE-2023-44160 | MEDIUM | 6.5 | 0.2% | Sep 27, 2023 | Sensitive information manipulation due to cross-site request forgery. The following products are affected: Acronis Cyber... |
| CVE-2023-44127 | MEDIUM | 5.5 | 0.1% | Sep 27, 2023 | he vulnerability is that the Call management ("com.android.server.telecom") app patched by LG launches implicit intents ... |
| CVE-2023-44126 | MEDIUM | 5.5 | 0.1% | Sep 27, 2023 | The vulnerability is that the Call management ("com.android.server.telecom") app patched by LG sends a lot of LG-owned i... |
| CVE-2023-44121 | MEDIUM | 6.3 | 0.1% | Sep 27, 2023 | The vulnerability is an intent redirection in LG ThinQ Service ("com.lge.lms2") in the "com/lge/lms/things/ui/notificati... |
| CVE-2023-44043 | MEDIUM | 6.1 | 0.5% | Sep 27, 2023 | A reflected cross-site scripting (XSS) vulnerability in /install/index.php of Black Cat CMS 1.4.1 allows attackers to ex... |
| CVE-2023-44042 | MEDIUM | 5.4 | 0.5% | Sep 27, 2023 | A stored cross-site scripting (XSS) vulnerability in /settings/index.php of Black Cat CMS 1.4.1 allows attackers to exec... |
| CVE-2023-43857 | MEDIUM | 5.4 | 0.4% | Sep 27, 2023 | Dreamer CMS v4.1.3 was discovered to contain a stored cross-site scripting (XSS) vulnerability via the component /admin/... |
| CVE-2023-43830 | MEDIUM | 5.4 | 0.5% | Sep 27, 2023 | A Cross-site scripting (XSS) vulnerability in /panel/configuration/financial/ of Subrion v4.2.1 allows attackers to exec... |
| CVE-2023-43828 | MEDIUM | 5.4 | 0.5% | Sep 27, 2023 | A Cross-site scripting (XSS) vulnerability in /panel/languages/ of Subrion v4.2.1 allow attackers to execute arbitrary w... |
| CVE-2023-43775 | MEDIUM | 5.3 | 0.7% | Sep 27, 2023 | Denial-of-service vulnerability in the web server of the Eaton SMP Gateway allows attacker to potentially force an une... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now