2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-50853HIGH7.2Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Nasirahmed Advance...
CVE-2023-50852HIGH7.2Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in StylemixThemes Boo...
CVE-2023-50851HIGH7.2Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in N Squared Appointm...
CVE-2023-50849HIGH7.2Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in E2Pdf.Com E2Pdf – ...
CVE-2023-50848HIGH7.2Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Aaron J 404 Soluti...
CVE-2023-50873HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Marios Alexandrou Add Any Extension to Pages.This issue affects Add A...
CVE-2023-50860MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in TMS Booking for Ap...
CVE-2023-50859MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Themeum WP Crowdfu...
CVE-2023-50858HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Bill Minozzi Disable Json API, Login Lockdown, XMLRPC, Pingback, Stop...
CVE-2023-50857HIGH7.2Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in FunnelKit Recover ...
CVE-2023-50856HIGH7.2Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in FunnelKit Funnel B...
CVE-2023-50836MEDIUM4.8Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ibericode HTML For...
CVE-2023-36381HIGH8.8Deserialization of Untrusted Data vulnerability in Gesundheit Bewegt GmbH Zippy.This issue affects Zippy: from n/a throu...
CVE-2023-32795HIGH7.2Deserialization of Untrusted Data vulnerability in WooCommerce Product Add-Ons.This issue affects Product Add-Ons: from ...
CVE-2023-32513CRITICAL9.8Deserialization of Untrusted Data vulnerability in GiveWP GiveWP – Donation Plugin and Fundraising Platform.This issue a...
CVE-2023-27447HIGH7.5Exposure of Sensitive Information to an Unauthorized Actor vulnerability in VeronaLabs WP SMS – Messaging & SMS Notifica...
CVE-2023-51501MEDIUM6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Undsgn Uncode - Cr...
CVE-2023-50874MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Darren Cooney Word...
CVE-2023-4672MEDIUM6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Talent Software EC...
CVE-2023-4671CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Talent Software EC...
CVE-2023-45702MEDIUM5.5An HCL UrbanCode Deploy Agent installed as a Windows service in a non-standard location could be subject to a denial of ...
CVE-2023-50038HIGH8.8There is an arbitrary file upload vulnerability in the background of textpattern cms v4.8.8, which leads to the loss of ...
CVE-2023-45701MEDIUM6.5HCL Launch could allow a remote attacker to obtain sensitive information when a detailed technical error message is retu...
CVE-2023-50692HIGH8.8File Upload vulnerability in JIZHICMS v.2.5, allows remote attacker to execute arbitrary code via a crafted file uploade...
CVE-2023-49469MEDIUM6.1Reflected Cross Site Scripting (XSS) vulnerability in Shaarli v0.12.2, allows remote attackers to execute arbitrary code...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now