2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-4162 | MEDIUM | 4.4 | 0.2% | Aug 31, 2023 | A segmentation fault can occur in Brocade Fabric OS after Brocade Fabric OS v9.0 and before Brocade Fabric OS v9.2.0a ... |
| CVE-2023-31925 | MEDIUM | 6.5 | 0.2% | Aug 31, 2023 | Brocade SANnav before v2.3.0 and v2.2.2a stores SNMPv3 Authentication passwords in plaintext. A privileged user could ... |
| CVE-2023-31423 | MEDIUM | 5.5 | 0.2% | Aug 31, 2023 | Possible information exposure through log file vulnerability where sensitive fields are recorded in the configuration ... |
| CVE-2023-23765 | MEDIUM | 6.5 | 0.5% | Aug 30, 2023 | An incorrect comparison vulnerability was identified in GitHub Enterprise Server that allowed commit smuggling by displa... |
| CVE-2023-41163 | MEDIUM | 6.1 | 0.4% | Aug 30, 2023 | A Reflected Cross-site scripting (XSS) vulnerability in the file manager tab in Usermin 2.000 allows remote attackers to... |
| CVE-2023-41040 | MEDIUM | 6.5 | 1.0% | Aug 30, 2023 | GitPython is a python library used to interact with Git repositories. In order to resolve some git references, GitPython... |
| CVE-2023-39136 | MEDIUM | 5.5 | 0.4% | Aug 30, 2023 | An unhandled edge case in the component _sanitizedPath of ZipArchive v2.5.4 allows attackers to cause a Denial of Servic... |
| CVE-2023-38970 | MEDIUM | 5.4 | 0.6% | Aug 30, 2023 | Cross Site Scripting vulnerabiltiy in Badaso v.0.0.1 thru v.2.9.7 allows a remote attacker to execute arbitrary code via... |
| CVE-2023-40184 | MEDIUM | 6.5 | 0.7% | Aug 30, 2023 | xrdp is an open source remote desktop protocol (RDP) server. In versions prior to 0.9.23 improper handling of session es... |
| CVE-2023-36811 | MEDIUM | 4.7 | 0.1% | Aug 30, 2023 | borgbackup is an opensource, deduplicating archiver with compression and authenticated encryption. A flaw in the cryptog... |
| CVE-2023-40592 | MEDIUM | 6.1 | 0.5% | Aug 30, 2023 | In Splunk Enterprise versions below 9.1.1, 9.0.6, and 8.2.12, an attacker can craft a special web request that can resul... |
| CVE-2023-35094 | MEDIUM | 5.4 | 0.4% | Aug 30, 2023 | Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Julien Berthelot / MPEmbed WP Matterport Shortco... |
| CVE-2023-35092 | MEDIUM | 4.8 | 0.4% | Aug 30, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Abhay Yadav Breadcrumb simple plugin <= 1.3 versions. |
| CVE-2023-34372 | MEDIUM | 4.8 | 0.4% | Aug 30, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Didier Sampaolo SpamReferrerBlock plugin <= 2.22 versi... |
| CVE-2023-32294 | MEDIUM | 4.8 | 0.4% | Aug 30, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Radical Web Design GDPR Cookie Consent Notice Box plug... |
| CVE-2023-28692 | MEDIUM | 4.8 | 0.4% | Aug 30, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Kevon Adonis WP Abstracts plugin <= 2.6.3 versions. |
| CVE-2023-28415 | MEDIUM | 4.8 | 0.4% | Aug 30, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in XootiX Side Cart Woocommerce (Ajax) plugin <= 2.2 vers... |
| CVE-2023-27621 | MEDIUM | 4.8 | 0.4% | Aug 30, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in MrDemonWolf Livestream Notice plugin <= 1.2.0 versions... |
| CVE-2023-25471 | MEDIUM | 6.1 | 0.4% | Aug 30, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Webcodin WCP OpenWeather plugin <= 2.5.0 versions. |
| CVE-2023-25466 | MEDIUM | 6.1 | 0.4% | Aug 30, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Mahlamusa Who Hit The Page – Hit Counter plugin <= 1.4.14.... |
| CVE-2023-25453 | MEDIUM | 6.1 | 0.5% | Aug 30, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Ian Sadovy WordPress Tables plugin <= 1.3.9 versions. |
| CVE-2023-24401 | MEDIUM | 4.8 | 0.4% | Aug 30, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Davidsword Mobile Call Now & Map Buttons plugin <= 1.5... |
| CVE-2023-24397 | MEDIUM | 4.8 | 0.4% | Aug 30, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Reservation.Studio Reservation.Studio widget plugin <=... |
| CVE-2023-4209 | MEDIUM | 4.3 | 0.2% | Aug 30, 2023 | The POEditor WordPress plugin before 0.9.8 does not have CSRF checks in various places, which could allow attackers to m... |
| CVE-2023-4150 | MEDIUM | 4.3 | 0.2% | Aug 30, 2023 | The User Activity Tracking and Log WordPress plugin before 4.0.9 does not have proper CSRF checks when managing its lice... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now