2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-52074 | HIGH | 8.8 | 0.3% | Jan 8, 2024 | FlyCms v1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component system/site/webconfig_updagt... |
| CVE-2023-52073 | HIGH | 8.8 | 0.3% | Jan 8, 2024 | FlyCms v1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /system/site/config_footer_u... |
| CVE-2023-52072 | HIGH | 8.8 | 0.3% | Jan 8, 2024 | FlyCms v1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /system/site/userconfig_upda... |
| CVE-2023-7218 | HIGH | 7.2 | 1.3% | Jan 8, 2024 | A vulnerability, which was classified as critical, was found in Totolink N350RT 9.3.5u.6139_B202012. Affected is the fun... |
| CVE-2023-52202 | HIGH | 7.2 | 0.6% | Jan 8, 2024 | Deserialization of Untrusted Data vulnerability in SVNLabs Softwares HTML5 MP3 Player with Folder Feedburner Playlist Fr... |
| CVE-2023-52201 | HIGH | 8.8 | 0.5% | Jan 8, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Brian D. Goad pTyp... |
| CVE-2023-52198 | MEDIUM | 5.4 | 0.3% | Jan 8, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Michiel van Eerd P... |
| CVE-2023-52197 | MEDIUM | 4.8 | 0.3% | Jan 8, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Impactpixel Ads In... |
| CVE-2023-52196 | MEDIUM | 6.1 | 0.3% | Jan 8, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Phil Ewels CPT Boo... |
| CVE-2023-52142 | HIGH | 8.8 | 0.5% | Jan 8, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Cool Plugins Event... |
| CVE-2023-51508 | HIGH | 7.5 | 0.5% | Jan 8, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Jordy Meow Database Cleaner: Clean, Optimize... |
| CVE-2023-51490 | HIGH | 7.5 | 0.5% | Jan 8, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in WPMU DEV Defender Security – Malware Scanner... |
| CVE-2023-51408 | HIGH | 7.5 | 0.5% | Jan 8, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in StudioWombat WP Optin Wheel – Gamified Optin... |
| CVE-2023-51406 | HIGH | 7.5 | 0.5% | Jan 8, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Ninja Team FastDup – Fastest WordPress Migra... |
| CVE-2023-49961 | HIGH | 7.5 | 0.4% | Jan 8, 2024 | WALLIX Bastion 7.x, 8.x, 9.x and 10.x and WALLIX Access Manager 3.x and 4.x have Incorrect Access Control which can lead... |
| CVE-2023-27739 | MEDIUM | 6.1 | 0.3% | Jan 8, 2024 | easyXDM 2.5 allows XSS via the xdm_e parameter. |
| CVE-2023-52271 | MEDIUM | 6.5 | 0.3% | Jan 8, 2024 | The wsftprm.sys kernel driver 2.0.0.0 in Topaz Antifraud allows low-privileged attackers to kill any (Protected Process ... |
| CVE-2023-52216 | HIGH | 8.8 | 0.2% | Jan 8, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Yevhen Kotelnytskyi JS & CSS Script Optimizer.This issue affects JS &... |
| CVE-2023-52213 | MEDIUM | 6.1 | 0.3% | Jan 8, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in VideoWhisper Rate ... |
| CVE-2023-52206 | HIGH | 7.2 | 0.5% | Jan 8, 2024 | Deserialization of Untrusted Data vulnerability in Live Composer Team Page Builder: Live Composer live-composer-page-bui... |
| CVE-2023-52205 | HIGH | 7.2 | 0.6% | Jan 8, 2024 | Deserialization of Untrusted Data vulnerability in SVNLabs Softwares HTML5 SoundCloud Player with Playlist Free.This iss... |
| CVE-2023-52204 | HIGH | 8.8 | 0.5% | Jan 8, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Javik Randomize.Th... |
| CVE-2023-52203 | MEDIUM | 4.8 | 0.3% | Jan 8, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Oliver Seidel, Bas... |
| CVE-2023-52200 | CRITICAL | 9.8 | 0.3% | Jan 8, 2024 | Cross-Site Request Forgery (CSRF), Deserialization of Untrusted Data vulnerability in Repute Infosystems ARMember – Memb... |
| CVE-2023-51246 | MEDIUM | 5.4 | 0.3% | Jan 8, 2024 | A Cross Site Scripting (XSS) vulnerability in GetSimple CMS 3.3.16 exists when using Source Code Mode as a backend user ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now