2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-50853 | HIGH | 7.2 | 0.5% | Dec 28, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Nasirahmed Advance... |
| CVE-2023-50852 | HIGH | 7.2 | 0.5% | Dec 28, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in StylemixThemes Boo... |
| CVE-2023-50851 | HIGH | 7.2 | 0.5% | Dec 28, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in N Squared Appointm... |
| CVE-2023-50849 | HIGH | 7.2 | 0.5% | Dec 28, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in E2Pdf.Com E2Pdf – ... |
| CVE-2023-50848 | HIGH | 7.2 | 0.5% | Dec 28, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Aaron J 404 Soluti... |
| CVE-2023-50873 | HIGH | 8.8 | 0.2% | Dec 28, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Marios Alexandrou Add Any Extension to Pages.This issue affects Add A... |
| CVE-2023-50860 | MEDIUM | 5.4 | 0.3% | Dec 28, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in TMS Booking for Ap... |
| CVE-2023-50859 | MEDIUM | 5.4 | 0.3% | Dec 28, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Themeum WP Crowdfu... |
| CVE-2023-50858 | HIGH | 8.8 | 0.2% | Dec 28, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Bill Minozzi Disable Json API, Login Lockdown, XMLRPC, Pingback, Stop... |
| CVE-2023-50857 | HIGH | 7.2 | 0.5% | Dec 28, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in FunnelKit Recover ... |
| CVE-2023-50856 | HIGH | 7.2 | 0.5% | Dec 28, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in FunnelKit Funnel B... |
| CVE-2023-50836 | MEDIUM | 4.8 | 0.3% | Dec 28, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ibericode HTML For... |
| CVE-2023-36381 | HIGH | 8.8 | 0.5% | Dec 28, 2023 | Deserialization of Untrusted Data vulnerability in Gesundheit Bewegt GmbH Zippy.This issue affects Zippy: from n/a throu... |
| CVE-2023-32795 | HIGH | 7.2 | 0.7% | Dec 28, 2023 | Deserialization of Untrusted Data vulnerability in WooCommerce Product Add-Ons.This issue affects Product Add-Ons: from ... |
| CVE-2023-32513 | CRITICAL | 9.8 | 0.6% | Dec 28, 2023 | Deserialization of Untrusted Data vulnerability in GiveWP GiveWP – Donation Plugin and Fundraising Platform.This issue a... |
| CVE-2023-27447 | HIGH | 7.5 | 0.5% | Dec 28, 2023 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in VeronaLabs WP SMS – Messaging & SMS Notifica... |
| CVE-2023-51501 | MEDIUM | 6.1 | 0.4% | Dec 28, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Undsgn Uncode - Cr... |
| CVE-2023-50874 | MEDIUM | 5.4 | 0.3% | Dec 28, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Darren Cooney Word... |
| CVE-2023-4672 | MEDIUM | 6.1 | 0.3% | Dec 28, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Talent Software EC... |
| CVE-2023-4671 | CRITICAL | 9.8 | 0.6% | Dec 28, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Talent Software EC... |
| CVE-2023-45702 | MEDIUM | 5.5 | 0.2% | Dec 28, 2023 | An HCL UrbanCode Deploy Agent installed as a Windows service in a non-standard location could be subject to a denial of ... |
| CVE-2023-50038 | HIGH | 8.8 | 0.8% | Dec 28, 2023 | There is an arbitrary file upload vulnerability in the background of textpattern cms v4.8.8, which leads to the loss of ... |
| CVE-2023-45701 | MEDIUM | 6.5 | 0.5% | Dec 28, 2023 | HCL Launch could allow a remote attacker to obtain sensitive information when a detailed technical error message is retu... |
| CVE-2023-50692 | HIGH | 8.8 | 0.9% | Dec 28, 2023 | File Upload vulnerability in JIZHICMS v.2.5, allows remote attacker to execute arbitrary code via a crafted file uploade... |
| CVE-2023-49469 | MEDIUM | 6.1 | 0.5% | Dec 28, 2023 | Reflected Cross Site Scripting (XSS) vulnerability in Shaarli v0.12.2, allows remote attackers to execute arbitrary code... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now