2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-5171MEDIUM6.5During Ion compilation, a Garbage Collection could have resulted in a use-after-free condition, allowing an attacker to ...
CVE-2023-5169MEDIUM6.5A compromised content process could have provided malicious data in a `PathRecording` resulting in an out-of-bounds writ...
CVE-2023-5162MEDIUM5.4The Options for Twenty Seventeen plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'social-links' sh...
CVE-2023-5161MEDIUM5.4The Modal Window plugin for WordPress is vulnerable to Stored Cross-Site Scripting via shortcodes in versions up to, and...
CVE-2023-5135MEDIUM5.4The Simple Cloudflare Turnstile plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'gravity-simple-tu...
CVE-2023-4565MEDIUM5.3Broadcast permission control vulnerability in the framework module. Successful exploitation of this vulnerability may ca...
CVE-2023-4506MEDIUM6.5The Active Directory Integration / LDAP Integration plugin for WordPress is vulnerable to LDAP Passback in versions up t...
CVE-2023-4505MEDIUM4.9The Staff / Employee Business Directory for Active Directory plugin for WordPress is vulnerable to LDAP Passback in vers...
CVE-2023-4423MEDIUM4.8The WP Event Manager – Events Calendar, Registrations, Sell Tickets with WooCommerce plugin for WordPress is vulnerable ...
CVE-2023-4065MEDIUM5.5A flaw was found in Red Hat AMQ Broker Operator, where it displayed a password defined in ActiveMQArtemisAddress CR, sho...
CVE-2023-4003MEDIUM6.8 One Identity Password Manager version 5.9.7.1 - An unauthenticated attacker with physical access to a workstation may u...
CVE-2023-44216MEDIUM5.3PVRIC (PowerVR Image Compression) on Imagination 2018 and later GPU devices offers software-transparent compression that...
CVE-2023-44207MEDIUM5.4Stored cross-site scripting (XSS) vulnerability in protection plan name. The following products are affected: Acronis Cy...
CVE-2023-44205MEDIUM5.3Sensitive information disclosure due to improper authorization. The following products are affected: Acronis Cyber Prote...
CVE-2023-44161MEDIUM6.5Sensitive information manipulation due to cross-site request forgery. The following products are affected: Acronis Cyber...
CVE-2023-44160MEDIUM6.5Sensitive information manipulation due to cross-site request forgery. The following products are affected: Acronis Cyber...
CVE-2023-44127MEDIUM5.5he vulnerability is that the Call management ("com.android.server.telecom") app patched by LG launches implicit intents ...
CVE-2023-44126MEDIUM5.5The vulnerability is that the Call management ("com.android.server.telecom") app patched by LG sends a lot of LG-owned i...
CVE-2023-44121MEDIUM6.3The vulnerability is an intent redirection in LG ThinQ Service ("com.lge.lms2") in the "com/lge/lms/things/ui/notificati...
CVE-2023-44043MEDIUM6.1A reflected cross-site scripting (XSS) vulnerability in /install/index.php of Black Cat CMS 1.4.1 allows attackers to ex...
CVE-2023-44042MEDIUM5.4A stored cross-site scripting (XSS) vulnerability in /settings/index.php of Black Cat CMS 1.4.1 allows attackers to exec...
CVE-2023-43857MEDIUM5.4Dreamer CMS v4.1.3 was discovered to contain a stored cross-site scripting (XSS) vulnerability via the component /admin/...
CVE-2023-43830MEDIUM5.4A Cross-site scripting (XSS) vulnerability in /panel/configuration/financial/ of Subrion v4.2.1 allows attackers to exec...
CVE-2023-43828MEDIUM5.4A Cross-site scripting (XSS) vulnerability in /panel/languages/ of Subrion v4.2.1 allow attackers to execute arbitrary w...
CVE-2023-43775MEDIUM5.3Denial-of-service vulnerability in the web server of the Eaton SMP Gateway allows attacker to potentially force an une...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now