2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-45125 | — | — | — | Dec 21, 2023 | Rejected reason: It is a duplicate. |
| CVE-2023-45124 | — | — | — | Dec 21, 2023 | Rejected reason: It is a duplicate. |
| CVE-2023-44482 | HIGH | 8.8 | 0.7% | Dec 21, 2023 | Leave Management System Project v1.0 is vulnerable to multiple Authenticated SQL Injection vulnerabilities. The 'setsick... |
| CVE-2023-44481 | HIGH | 8.8 | 0.6% | Dec 21, 2023 | Leave Management System Project v1.0 is vulnerable to multiple Authenticated SQL Injection vulnerabilities. The 'setearn... |
| CVE-2023-32799 | MEDIUM | 6.5 | 0.5% | Dec 21, 2023 | Authorization Bypass Through User-Controlled Key vulnerability in WooCommerce Shipping Multiple Addresses.This issue aff... |
| CVE-2023-32747 | HIGH | 7.5 | 0.4% | Dec 21, 2023 | Authorization Bypass Through User-Controlled Key vulnerability in WooCommerce WooCommerce Bookings.This issue affects Wo... |
| CVE-2023-7038 | MEDIUM | 6.5 | 0.4% | Dec 21, 2023 | A vulnerability was found in automad up to 1.10.9. It has been rated as problematic. This issue affects some unknown pro... |
| CVE-2023-50833 | MEDIUM | 5.4 | 0.4% | Dec 21, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ExtendThemes Colib... |
| CVE-2023-50832 | MEDIUM | 4.8 | 0.4% | Dec 21, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Mondula GmbH Multi... |
| CVE-2023-50831 | MEDIUM | 5.4 | 0.5% | Dec 21, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in VillaTheme CURCY –... |
| CVE-2023-50830 | MEDIUM | 4.8 | 0.3% | Dec 21, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Seosbg Seos Contac... |
| CVE-2023-50829 | MEDIUM | 4.8 | 0.3% | Dec 21, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Aerin Loan Repayme... |
| CVE-2023-7037 | HIGH | 8.8 | 0.7% | Dec 21, 2023 | A vulnerability was found in automad up to 1.10.9. It has been declared as critical. This vulnerability affects the func... |
| CVE-2023-45123 | — | — | — | Dec 21, 2023 | Rejected reason: It is a duplicate. |
| CVE-2023-45122 | — | — | — | Dec 21, 2023 | Rejected reason: It is a duplicate. |
| CVE-2023-45121 | HIGH | 8.8 | 0.7% | Dec 21, 2023 | Online Examination System v1.0 is vulnerable to multiple Authenticated SQL Injection vulnerabilities. The 'desc' paramet... |
| CVE-2023-45120 | HIGH | 8.8 | 0.6% | Dec 21, 2023 | Online Examination System v1.0 is vulnerable to multiple Authenticated SQL Injection vulnerabilities. The 'qid' paramete... |
| CVE-2023-40058 | MEDIUM | 6.5 | 0.8% | Dec 21, 2023 | Sensitive data was added to our public-facing knowledgebase that, if exploited, could be used to access components of Ac... |
| CVE-2023-7036 | MEDIUM | 5.4 | 0.6% | Dec 21, 2023 | A vulnerability was found in automad up to 1.10.9. It has been classified as problematic. This affects the function uplo... |
| CVE-2023-51052 | CRITICAL | 9.8 | 0.5% | Dec 21, 2023 | S-CMS v5.0 was discovered to contain a SQL injection vulnerability via the A_formauth parameter at /admin/ajax.php. |
| CVE-2023-51051 | CRITICAL | 9.8 | 0.5% | Dec 21, 2023 | S-CMS v5.0 was discovered to contain a SQL injection vulnerability via the A_textauth parameter at /admin/ajax.php. |
| CVE-2023-51050 | CRITICAL | 9.8 | 0.5% | Dec 21, 2023 | S-CMS v5.0 was discovered to contain a SQL injection vulnerability via the A_productauth parameter at /admin/ajax.php. |
| CVE-2023-51049 | CRITICAL | 9.8 | 0.5% | Dec 21, 2023 | S-CMS v5.0 was discovered to contain a SQL injection vulnerability via the A_bbsauth parameter at /admin/ajax.php. |
| CVE-2023-51048 | CRITICAL | 9.8 | 0.5% | Dec 21, 2023 | S-CMS v5.0 was discovered to contain a SQL injection vulnerability via the A_newsauth parameter at /admin/ajax.php. |
| CVE-2023-4256 | MEDIUM | 5.5 | 0.3% | Dec 21, 2023 | Within tcpreplay's tcprewrite, a double free vulnerability has been identified in the tcpedit_dlt_cleanup() function wit... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now