2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-37221MEDIUM6.1 7Twenty BOT - CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting').
CVE-2023-38521MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Exifography plugin <= 1.3.1 versions.
CVE-2023-38518MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Visualmodo Borderless plugin <= 1.4.8 versions.
CVE-2023-38517MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Realwebcare WRC Pricing Tables plugin <= 2.3.7 version...
CVE-2023-38516MEDIUM5.4Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in WP OnlineSupport, Essential Plugin Audio Player ...
CVE-2023-38482MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in QualityUnit Post Affiliate Pro plugin <= 1.25.0 versio...
CVE-2023-38476MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in SuiteDash :: ONE Dashboard® Client Portal : SuiteDash ...
CVE-2023-38387MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Elastic Email Sender plugin <= 1.2.6 versions.
CVE-2023-39983MEDIUM5.3A vulnerability that poses a potential risk of polluting the MXsecurity sqlite database and the nsm-web UI has been iden...
CVE-2023-39982MEDIUM5.9A vulnerability has been identified in MXsecurity versions prior to v1.0.1. The vulnerability may put the confidentialit...
CVE-2023-4718MEDIUM5.4The Font Awesome 4 Menus plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'fa' and 'fa-stack' s...
CVE-2023-4710MEDIUM6.1A vulnerability classified as problematic was found in TOTVS RM 12.1. Affected by this vulnerability is an unknown funct...
CVE-2023-41049MEDIUM6.1@dcl/single-sign-on-client is an open source npm library which deals with single sign on authentication flows. Improper ...
CVE-2023-41046MEDIUM6.3XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. It is possible ...
CVE-2023-41633MEDIUM5.5Catdoc v0.95 was discovered to contain a NULL pointer dereference via the component xls2csv at src/fileutil.c.
CVE-2023-41051MEDIUM4.7In a typical Virtual Machine Monitor (VMM) there are several components, such as boot loader, virtual device drivers, vi...
CVE-2023-4707MEDIUM6.1A vulnerability was found in Infosoftbd Clcknshop 1.0.0. It has been declared as problematic. This vulnerability affects...
CVE-2023-39714MEDIUM6.1Multiple cross-site scripting (XSS) vulnerabilities in Free and Open Source Inventory Management System v1.0 allows atta...
CVE-2023-4722MEDIUM5.5Integer Overflow or Wraparound in GitHub repository gpac/gpac prior to 2.3-DEV.
CVE-2023-4721MEDIUM5.5Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3-DEV.
CVE-2023-4720MEDIUM5.5Floating Point Comparison with Incorrect Operator in GitHub repository gpac/gpac prior to 2.3-DEV.
CVE-2023-39582MEDIUM4.9SQL Injection vulnerability in Chamilo LMS v.1.11 thru v.1.11.20 allows a remote privileged attacker to obtain sensitive...
CVE-2023-23763MEDIUM5.3An authorization/sensitive information disclosure vulnerability was identified in GitHub Enterprise Server that allowed ...
CVE-2023-39710MEDIUM6.1Multiple cross-site scripting (XSS) vulnerabilities in Free and Open Source Inventory Management System v1.0 allows atta...
CVE-2023-39703MEDIUM6.1A cross site scripting (XSS) vulnerability in the Markdown Editor component of Typora v1.6.7 allows attackers to execute...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now