2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-53977 | MEDIUM | 5.4 | 0.2% | Dec 22, 2025 | myBB Forums 1.8.26 contains a stored cross-site scripting vulnerability in the forum management system that allows authe... |
| CVE-2023-53976 | MEDIUM | 5.4 | 0.2% | Dec 22, 2025 | myBB Forums 1.8.26 contains a stored cross-site scripting vulnerability in the template management system that allows au... |
| CVE-2023-53961 | MEDIUM | 5.1 | 0.2% | Dec 22, 2025 | SOUND4 IMPACT/FIRST/PULSE/Eco v2.x contains a cross-site request forgery vulnerability that allows attackers to perform ... |
| CVE-2023-47232 | MEDIUM | 4.3 | 0.2% | Dec 21, 2025 | Vulnerability in mojofywp WP Affiliate Disclosure wp-affiliate-disclosure.This issue affects WP Affiliate Disclosure: fr... |
| CVE-2023-25445 | MEDIUM | 5.4 | 0.2% | Dec 21, 2025 | Missing Authorization vulnerability in HappyFiles HappyFiles Pro allows Exploiting Incorrectly Configured Access Control... |
| CVE-2023-25068 | MEDIUM | 4.3 | 0.2% | Dec 21, 2025 | Missing Authorization vulnerability in Mapro Collins Magazine Edge allows Exploiting Incorrectly Configured Access Contr... |
| CVE-2023-53953 | MEDIUM | 5.4 | 0.2% | Dec 19, 2025 | WebsiteBaker 2.13.3 contains a stored cross-site scripting vulnerability that allows authenticated users to inject malic... |
| CVE-2023-30971 | MEDIUM | 6.8 | 0.2% | Dec 19, 2025 | Gotham Gaia application was found to be exposing multiple unauthenticated endpoints. |
| CVE-2023-53943 | MEDIUM | 6.9 | 0.3% | Dec 18, 2025 | GLPI 9.5.7 contains a username enumeration vulnerability in the lost password recovery mechanism that allows attackers t... |
| CVE-2023-53939 | MEDIUM | 5.4 | 0.2% | Dec 18, 2025 | TinyWebGallery v2.5 contains a stored cross-site scripting vulnerability that allows authenticated attackers to inject m... |
| CVE-2023-53938 | MEDIUM | 5.4 | 0.2% | Dec 18, 2025 | RockMongo 1.1.7 contains a stored cross-site scripting vulnerability that allows attackers to inject malicious scripts t... |
| CVE-2023-53936 | MEDIUM | 5.1 | 0.2% | Dec 18, 2025 | Cameleon CMS 2.7.4 contains a persistent cross-site scripting vulnerability that allows authenticated administrators to ... |
| CVE-2023-53935 | MEDIUM | 5.4 | 0.2% | Dec 18, 2025 | WBiz Desk 1.2 contains a SQL injection vulnerability that allows non-admin users to manipulate database queries through ... |
| CVE-2023-53738 | MEDIUM | 5.4 | 0.2% | Dec 18, 2025 | A reflected cross-site scripting vulnerability in Kentico Xperience allows authenticated users to inject malicious scrip... |
| CVE-2023-53737 | MEDIUM | 4.8 | 0.1% | Dec 18, 2025 | A stored cross-site scripting vulnerability in Kentico Xperience allows global administrators to inject malicious payloa... |
| CVE-2023-53736 | MEDIUM | 5.4 | 0.2% | Dec 18, 2025 | A reflected cross-site scripting vulnerability in Kentico Xperience allows authenticated users to inject malicious scrip... |
| CVE-2023-53932 | MEDIUM | 5.4 | 0.2% | Dec 17, 2025 | Serendipity 2.4.0 contains a stored cross-site scripting vulnerability that allows authenticated users to inject malicio... |
| CVE-2023-53931 | MEDIUM | 6.1 | 2.3% | Dec 17, 2025 | Revive Adserver 5.4.1 contains a cross-site scripting vulnerability in the banner advanced configuration page that allow... |
| CVE-2023-53928 | MEDIUM | 6.1 | 0.2% | Dec 17, 2025 | PHPFusion 9.10.30 contains a stored cross-site scripting vulnerability in the file manager that allows attackers to uplo... |
| CVE-2023-53927 | MEDIUM | 5.4 | 0.2% | Dec 17, 2025 | PHPJabbers Simple CMS 5.0 contains a stored cross-site scripting vulnerability that allows authenticated attackers to in... |
| CVE-2023-53925 | MEDIUM | 6.1 | 0.3% | Dec 17, 2025 | UliCMS 2023.1 contains a stored cross-site scripting vulnerability that allows attackers to upload malicious SVG files w... |
| CVE-2023-53920 | MEDIUM | 5.4 | 0.3% | Dec 17, 2025 | PodcastGenerator 3.2.9 contains a stored cross-site scripting vulnerability in the podcast title field accessible throug... |
| CVE-2023-53919 | MEDIUM | 5.4 | 0.3% | Dec 17, 2025 | PodcastGenerator 3.2.9 contains a stored cross-site scripting vulnerability in the Freebox content field accessible thro... |
| CVE-2023-53918 | MEDIUM | 6.1 | 0.3% | Dec 17, 2025 | PodcastGenerator 3.2.9 contains a stored cross-site scripting vulnerability in the episode title field accessible throug... |
| CVE-2023-53916 | MEDIUM | 4.6 | 0.3% | Dec 17, 2025 | Zenphoto 1.6 contains a stored cross-site scripting vulnerability in the user postal code field accessible through the a... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now