2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-3272 | HIGH | 7.5 | 0.4% | Jul 10, 2023 | Cleartext Transmission of Sensitive Information in the SICK ICR890-4 could allow a remote attacker to gather sensitive i... |
| CVE-2023-3271 | HIGH | 7.5 | 0.7% | Jul 10, 2023 | Improper Access Control in the SICK ICR890-4 could allow an unauthenticated remote attacker to gather information about ... |
| CVE-2023-3270 | HIGH | 7.5 | 0.7% | Jul 10, 2023 | Exposure of Sensitive Information to an Unauthorized Actor in the SICK ICR890-4 could allow an unauthenticated remote at... |
| CVE-2023-37392 | HIGH | 8.8 | 0.3% | Jul 10, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Deepak Anand WP Dummy Content Generator plugin <= 2.3.0 versions. |
| CVE-2023-36691 | HIGH | 8.8 | 0.3% | Jul 10, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Albert Peschar WebwinkelKeur plugin <= 3.24 versions. |
| CVE-2023-35912 | HIGH | 8.8 | 0.3% | Jul 10, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in WP Zone Potent Donations for WooCommerce plugin <= 1.1.9 versions. |
| CVE-2023-35697 | HIGH | 7.5 | 0.7% | Jul 10, 2023 | Improper Restriction of Excessive Authentication Attempts in the SICK ICR890-4 could allow a remote attacker to brute-fo... |
| CVE-2023-35696 | HIGH | 7.5 | 0.7% | Jul 10, 2023 | Unauthenticated endpoints in the SICK ICR890-4 could allow an unauthenticated remote attacker to retrieve sensitive info... |
| CVE-2023-32254 | HIGH | 8.1 | 2.9% | Jul 10, 2023 | A flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within t... |
| CVE-2023-32250 | HIGH | 8.1 | 2.6% | Jul 10, 2023 | A flaw was found in the Linux kernel's ksmbd, a high-performance in-kernel SMB server. The specific flaw exists within t... |
| CVE-2023-30449 | HIGH | 7.5 | 1.1% | Jul 10, 2023 | IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to denial of servic... |
| CVE-2023-30448 | HIGH | 7.5 | 1.1% | Jul 10, 2023 | IBM DB2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to denial of servic... |
| CVE-2023-30447 | HIGH | 7.5 | 1.1% | Jul 10, 2023 | IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to denial of servic... |
| CVE-2023-30446 | HIGH | 7.5 | 1.1% | Jul 10, 2023 | IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to denial of servic... |
| CVE-2023-30445 | HIGH | 7.5 | 1.1% | Jul 10, 2023 | IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to denial of servic... |
| CVE-2023-30442 | HIGH | 7.5 | 1.1% | Jul 10, 2023 | IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.1 and 11.5 federated server is vulnerable to a deni... |
| CVE-2023-30431 | HIGH | 7.8 | 0.3% | Jul 10, 2023 | IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 db2set is vulnerable to a buffer ... |
| CVE-2023-2493 | HIGH | 7.2 | 0.8% | Jul 10, 2023 | The All In One Redirection WordPress plugin before 2.2.0 does not properly sanitise and escape multiple parameters befor... |
| CVE-2023-2234 | HIGH | 8.8 | 0.4% | Jul 10, 2023 | Union variant confusion allows any malicious BT controller to execute arbitrary code on the Zephyr host. |
| CVE-2023-29095 | HIGH | 7.2 | 0.7% | Jul 10, 2023 | Auth. (admin+) SQL Injection (SQLi) vulnerability in David F. Carr RSVPMaker plugin < 10.5.5 versions. |
| CVE-2023-28995 | HIGH | 8.8 | 0.3% | Jul 10, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Keith Solomon Configurable Tag Cloud (CTC) plugin <= 5.2 versions. |
| CVE-2023-28989 | HIGH | 8.8 | 0.3% | Jul 10, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in weDevs Happy Addons for Elementor plugin <= 3.8.2 versions. |
| CVE-2023-28986 | HIGH | 8.8 | 0.3% | Jul 10, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in wp.Insider, wpaffiliatemgr Affiliates Manager plugin <= 2.9.20 versio... |
| CVE-2023-28958 | HIGH | 7.8 | 0.5% | Jul 10, 2023 | IBM Watson Knowledge Catalog on Cloud Pak for Data 4.0 is potentially vulnerable to CSV Injection. A remote attacker cou... |
| CVE-2023-27869 | HIGH | 8.8 | 1.4% | Jul 10, 2023 | IBM Db2 JDBC Driver for Db2 for Linux, UNIX and Windows 10.5, 11.1, and 11.5 could allow a remote authenticated attacker... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now