2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-32872 | MEDIUM | 6.7 | 0.1% | Jan 2, 2024 | In keyInstall, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalatio... |
| CVE-2023-32831 | MEDIUM | 5.5 | 0.2% | Jan 2, 2024 | In wlan driver, there is a possible PIN crack due to use of insufficiently random values. This could lead to local infor... |
| CVE-2023-50096 | HIGH | 7.5 | 0.6% | Jan 1, 2024 | STMicroelectronics STSAFE-A1xx middleware before 3.3.7 allows MCU code execution if an adversary has the ability to read... |
| CVE-2023-50094 | HIGH | 8.8 | 13.5% | Jan 1, 2024 | reNgine before 2.1.2 allows OS Command Injection if an adversary has a valid session ID. The attack places shell metacha... |
| CVE-2023-6485 | MEDIUM | 5.4 | 0.5% | Jan 1, 2024 | The Html5 Video Player WordPress plugin before 2.5.19 does not sanitise and escape some of its player settings, which co... |
| CVE-2023-6421 | HIGH | 7.5 | 2.4% | Jan 1, 2024 | The Download Manager WordPress plugin before 3.2.83 does not protect file download's passwords, leaking it upon receivin... |
| CVE-2023-6271 | HIGH | 7.5 | 0.7% | Jan 1, 2024 | The Backup Migration WordPress plugin before 1.3.6 stores in-progress backups information in easy to find, publicly-acce... |
| CVE-2023-6113 | HIGH | 7.5 | 0.8% | Jan 1, 2024 | The WP STAGING WordPress Backup Plugin before 3.1.3 and WP STAGING Pro WordPress Backup Plugin before 5.1.3 do not preve... |
| CVE-2023-6064 | HIGH | 7.5 | 0.7% | Jan 1, 2024 | The PayHere Payment Gateway WordPress plugin before 2.2.12 automatically creates publicly-accessible log files containin... |
| CVE-2023-6037 | MEDIUM | 4.8 | 0.4% | Jan 1, 2024 | The WP TripAdvisor Review Slider WordPress plugin before 11.9 does not sanitise and escape some of its settings, which c... |
| CVE-2023-6000 | MEDIUM | 6.1 | 2.0% | Jan 1, 2024 | The Popup Builder WordPress plugin before 4.2.3 does not prevent simple visitors from updating existing popups, and inje... |
| CVE-2023-5877 | CRITICAL | 9.8 | 0.9% | Jan 1, 2024 | The affiliate-toolkit WordPress plugin before 3.4.3 lacks authorization and authentication for requests to it's affiliat... |
| CVE-2023-52133 | HIGH | 8.8 | 0.5% | Dec 31, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WhileTrue Most And... |
| CVE-2023-52132 | HIGH | 7.2 | 0.5% | Dec 31, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Jewel Theme WP Adm... |
| CVE-2023-52131 | HIGH | 7.2 | 0.5% | Dec 31, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WP Zinc Page Gener... |
| CVE-2023-51547 | HIGH | 7.2 | 0.5% | Dec 31, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WPManageNinja LLC ... |
| CVE-2023-51503 | HIGH | 7.5 | 0.5% | Dec 31, 2023 | Authorization Bypass Through User-Controlled Key vulnerability in Automattic WooPayments – Fully Integrated Solution Bui... |
| CVE-2023-51469 | CRITICAL | 9.8 | 0.6% | Dec 31, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Mestres do WP Chec... |
| CVE-2023-51423 | CRITICAL | 9.8 | 0.6% | Dec 31, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Saleswonder Team W... |
| CVE-2023-7193 | HIGH | 8.1 | 0.4% | Dec 31, 2023 | A vulnerability was found in MTab Bookmark up to 1.2.6 and classified as critical. This issue affects some unknown proce... |
| CVE-2023-52185 | HIGH | 7.5 | 0.5% | Dec 31, 2023 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Everestthemes Everest Backup – WordPress Clo... |
| CVE-2023-52134 | HIGH | 7.2 | 0.5% | Dec 31, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Eyal Fitoussi GEO ... |
| CVE-2023-7191 | HIGH | 8.8 | 0.5% | Dec 31, 2023 | A vulnerability, which was classified as critical, was found in S-CMS up to 2.0_build20220529-20231006. This affects an ... |
| CVE-2023-7190 | HIGH | 8.8 | 0.5% | Dec 31, 2023 | A vulnerability, which was classified as critical, has been found in S-CMS up to 2.0_build20220529-20231006. Affected by... |
| CVE-2023-7189 | HIGH | 8.8 | 0.5% | Dec 31, 2023 | A vulnerability classified as critical was found in S-CMS up to 2.0_build20220529-20231006. Affected by this vulnerabili... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now