2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-22014 | HIGH | 8.4 | 0.2% | Jul 18, 2023 | Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Portal). Supported vers... |
| CVE-2023-37788 | HIGH | 7.5 | 0.8% | Jul 18, 2023 | goproxy v1.1 was discovered to contain an issue which can lead to a Denial of service (DoS) via unspecified vectors. |
| CVE-2023-37758 | HIGH | 7.5 | 1.2% | Jul 18, 2023 | D-LINK DIR-815 v1.01 was discovered to contain a buffer overflow via the component /web/captcha.cgi. |
| CVE-2023-37477 | HIGH | 8.8 | 5.4% | Jul 18, 2023 | 1Panel is an open source Linux server operation and maintenance management panel. An OS command injection vulnerability ... |
| CVE-2023-30383 | HIGH | 7.5 | 1.1% | Jul 18, 2023 | TP-LINK Archer C50v2 Archer C50(US)_V2_160801, TP-LINK Archer C20v1 Archer_C20_V1_150707, and TP-LINK Archer C2v1 Archer... |
| CVE-2023-28021 | HIGH | 7.5 | 0.3% | Jul 18, 2023 | The BigFix WebUI uses weak cipher suites. |
| CVE-2023-38257 | HIGH | 7.5 | 0.6% | Jul 18, 2023 | Iagona ScrutisWeb versions 2.1.37 and prior are vulnerable to an insecure direct object reference vulnerability that cou... |
| CVE-2023-34330 | HIGH | 8.8 | 0.5% | Jul 18, 2023 | AMI SPx contains a vulnerability in the BMC where a user may inject code which could be executed via a Dynamic Redfish E... |
| CVE-2023-34329 | HIGH | 8 | 1.0% | Jul 18, 2023 | AMI MegaRAC SPx12 contains a vulnerability in BMC where a User may cause an authentication bypass by spoofing the HTTP h... |
| CVE-2023-33871 | HIGH | 7.5 | 1.2% | Jul 18, 2023 | Iagona ScrutisWeb versions 2.1.37 and prior are vulnerable to a directory traversal vulnerability that could allow an un... |
| CVE-2023-28019 | HIGH | 8.8 | 0.4% | Jul 18, 2023 | Insufficient validation in Bigfix WebUI API App site version < 14 allows an authenticated WebUI user to issue SQL querie... |
| CVE-2023-33265 | HIGH | 8.8 | 0.6% | Jul 18, 2023 | In Hazelcast through 5.0.4, 5.1 through 5.1.6, and 5.2 through 5.2.3, executor services don't check client permissions p... |
| CVE-2023-2263 | HIGH | 7.5 | 0.7% | Jul 18, 2023 | The Rockwell Automation Kinetix 5700 DC Bus Power Supply Series A is vulnerable to CIP fuzzing. The new ENIP connectio... |
| CVE-2023-30906 | HIGH | 7.8 | 0.1% | Jul 18, 2023 | The vulnerability could be locally exploited to allow escalation of privilege. |
| CVE-2023-37973 | HIGH | 8.8 | 0.2% | Jul 18, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in David Pokorny Replace Word plugin <= 2.1 versions. |
| CVE-2023-37892 | HIGH | 8.8 | 0.2% | Jul 18, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Kemal YAZICI - PluginPress Shortcode IMDB plugin <= 6.0.8 versions. |
| CVE-2023-37889 | HIGH | 8.8 | 0.2% | Jul 18, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in WPAdmin WPAdmin AWS CDN plugin <= 2.0.13 versions. |
| CVE-2023-37387 | HIGH | 8.8 | 0.2% | Jul 18, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in RadiusTheme Classified Listing plugin <= 2.4.5 versions. |
| CVE-2023-37386 | HIGH | 8.8 | 0.2% | Jul 18, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Media Library Helper plugin <= 1.2.0 versions. |
| CVE-2023-25036 | HIGH | 8.8 | 0.2% | Jul 18, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in akhlesh-nagar, a.Ankit Social Media Icons Widget plugin <= 1.6 versio... |
| CVE-2023-23660 | HIGH | 8.8 | 0.8% | Jul 18, 2023 | Auth. (subscriber+) SQL Injection (SQLi) vulnerability in MainWP MainWP Maintenance Extension plugin <= 4.1.1 versions. |
| CVE-2023-3743 | HIGH | 7.5 | 0.6% | Jul 18, 2023 | Ap Page Builder, in versions lower than 1.7.8.2, could allow a remote attacker to send a specially crafted SQL query to ... |
| CVE-2023-25482 | HIGH | 8.8 | 0.3% | Jul 18, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Mike Martel WP Tiles plugin <= 1.1.2 versions. |
| CVE-2023-25475 | HIGH | 8.8 | 0.3% | Jul 18, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Vladimir Prelovac Smart YouTube PRO plugin <= 4.3 versions. |
| CVE-2023-25473 | HIGH | 8.8 | 0.2% | Jul 18, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Miro Mannino Flickr Justified Gallery plugin <= 3.5 versions. |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now