2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-31074MEDIUM6.1Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in hupe13 Extensions for Leaflet Map plugin <= 3.4.1 versions...
CVE-2023-26530MEDIUM6.1Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Paul Kehrer Updraft plugin <= 0.6.1 versions.
CVE-2023-29182MEDIUM6.7A stack-based buffer overflow vulnerability [CWE-121] in Fortinet FortiOS before 7.0.3 allows a privileged attacker to e...
CVE-2023-31076MEDIUM6.1Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Really Simple Plugins Recipe Maker For Your Food Blog from...
CVE-2023-31071MEDIUM6.1Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Yannick Lefebvre Modal Dialog plugin <= 3.5.14 versions.
CVE-2023-30877MEDIUM6.1Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Maxim Glazunov XML for Google Merchant Center plugin <= 3....
CVE-2023-30876MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Dave Ross Dave's WordPress Live Search plugin <= 4.8.1...
CVE-2023-30874MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Steve Curtis, St. Pete Design Gps Plotter plugin <= 5....
CVE-2023-28622MEDIUM5.4Auth. (author+) Stored Cross-Site Scripting (XSS) vulnerability in Trident Technolabs Easy Slider Revolution plugin <= 1...
CVE-2023-28533MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in M Williams Cab Grid plugin <= 1.5.15 versions.
CVE-2023-40281MEDIUM4.8EC-CUBE 2.11.0 to 2.17.2-p1 contain a cross-site scripting vulnerability in "mail/template" and "products/product" of Ma...
CVE-2023-40251MEDIUM5.9Missing Encryption of Sensitive Data vulnerability in Genians Genian NAC V4.0, Genians Genian NAC V5.0, Genians Genian N...
CVE-2023-3244MEDIUM4.3The Comments Like Dislike plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capab...
CVE-2023-4395MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository cockpit-hq/cockpit prior to 2.6.4.
CVE-2023-4392MEDIUM5.3A vulnerability was found in Control iD Gerencia Web 1.30 and classified as problematic. Affected by this issue is some ...
CVE-2023-35011MEDIUM5.4IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 is vulnerable to server-side request forgery (SSRF). This may allow an a...
CVE-2023-35009MEDIUM5.3IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 could allow a remote attacker to obtain system information without authe...
CVE-2023-20237MEDIUM4.3A vulnerability in Cisco Intersight Virtual Appliance could allow an unauthenticated, adjacent attacker to access intern...
CVE-2023-20232MEDIUM5.3A vulnerability in the Tomcat implementation for Cisco Unified Contact Center Express (Unified CCX) could allow an unaut...
CVE-2023-20222MEDIUM6.1A vulnerability in the web-based management interface of Cisco Prime Infrastructure and Cisco Evolved Programmable Netwo...
CVE-2023-20221MEDIUM6.5A vulnerability in the web-based management interface of Cisco IP Phone 6800, 7800, and 8800 Series with Multiplatform F...
CVE-2023-20217MEDIUM5.5A vulnerability in the CLI of Cisco ThousandEyes Enterprise Agent, Virtual Appliance installation type, could allow an a...
CVE-2023-20205MEDIUM5.4Multiple vulnerabilities in the web-based management interface of Cisco Prime Infrastructure and Cisco Evolved Programma...
CVE-2023-20203MEDIUM5.4Multiple vulnerabilities in the web-based management interface of Cisco Prime Infrastructure and Cisco Evolved Programma...
CVE-2023-20201MEDIUM5.4Multiple vulnerabilities in the web-based management interface of Cisco Prime Infrastructure and Cisco Evolved Programma...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now