2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-4196 | MEDIUM | 5.4 | 0.4% | Aug 6, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository cockpit-hq/cockpit prior to 2.6.3. |
| CVE-2023-37581 | MEDIUM | 5.4 | 0.9% | Aug 6, 2023 | Insufficient input validation and sanitation in Weblog Category name, Website About and File Upload features in all vers... |
| CVE-2023-4177 | MEDIUM | 5.7 | 0.2% | Aug 6, 2023 | A vulnerability was found in EmpowerID up to 7.205.0.0. It has been rated as problematic. This issue affects some unknow... |
| CVE-2023-4175 | MEDIUM | 6.1 | 0.3% | Aug 6, 2023 | A vulnerability was found in mooSocial mooTravel 3.1.8 and classified as problematic. Affected by this issue is some unk... |
| CVE-2023-4190 | MEDIUM | 6.5 | 0.5% | Aug 6, 2023 | Insufficient Session Expiration in GitHub repository admidio/admidio prior to 4.2.11. |
| CVE-2023-4174 | MEDIUM | 6.1 | 5.3% | Aug 6, 2023 | A vulnerability has been found in mooSocial mooStore 3.1.6 and classified as problematic. Affected by this vulnerability... |
| CVE-2023-4173 | MEDIUM | 6.1 | 3.3% | Aug 6, 2023 | A vulnerability, which was classified as problematic, was found in mooSocial mooStore 3.1.6. Affected is an unknown func... |
| CVE-2023-32600 | MEDIUM | 5.4 | 0.3% | Aug 6, 2023 | Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Rank Math SEO plugin <= 1.0.119 versions. |
| CVE-2023-37874 | MEDIUM | 4.8 | 0.3% | Aug 5, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Dimitar Ivanov HTTP Headers plugin <= 1.18.11 versions... |
| CVE-2023-37873 | MEDIUM | 6.1 | 0.3% | Aug 5, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in WooCommerce Shipping Multiple Addresses plugin <= 3.8.5 ve... |
| CVE-2023-36689 | MEDIUM | 6.1 | 0.4% | Aug 5, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in WPFactory WPFactory Helper plugin <= 1.5.2 versions. |
| CVE-2023-36686 | MEDIUM | 6.1 | 0.3% | Aug 5, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in CartFlows Pro plugin <= 1.11.11 versions. |
| CVE-2023-36678 | MEDIUM | 4.8 | 0.3% | Aug 5, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in WP-buy WP Content Copy Protection & No Right Click plu... |
| CVE-2023-34377 | MEDIUM | 4.8 | 0.3% | Aug 5, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Joseph C Dolson My Content Management plugin <= 1.7.6 ... |
| CVE-2023-34010 | MEDIUM | 6.1 | 0.3% | Aug 5, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in submodule of David Lingren Media Library Assistant plugin ... |
| CVE-2023-30491 | MEDIUM | 6.1 | 0.3% | Aug 5, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in CodeBard CodeBard's Patron Button and Widgets for Patreon ... |
| CVE-2023-4171 | MEDIUM | 5.3 | 0.9% | Aug 5, 2023 | A vulnerability classified as problematic was found in Chengdu Flash Flood Disaster Monitoring and Warning System 2.0. T... |
| CVE-2023-4189 | MEDIUM | 4.8 | 0.4% | Aug 5, 2023 | Cross-site Scripting (XSS) - Reflected in GitHub repository instantsoft/icms2 prior to 2.16.1-git. |
| CVE-2023-4170 | MEDIUM | 4.8 | 0.5% | Aug 5, 2023 | A vulnerability was found in DedeBIZ 6.2.10. It has been rated as problematic. Affected by this issue is some unknown fu... |
| CVE-2023-4187 | MEDIUM | 4.8 | 0.4% | Aug 5, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository instantsoft/icms2 prior to 2.16.1-git. |
| CVE-2023-4167 | MEDIUM | 6.1 | 0.5% | Aug 5, 2023 | A vulnerability was found in Media Browser Emby Server 4.7.13.0 and classified as problematic. This issue affects some u... |
| CVE-2023-4158 | MEDIUM | 5.4 | 0.4% | Aug 4, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository omeka/omeka-s prior to 4.0.3. |
| CVE-2023-4157 | MEDIUM | 4.8 | 0.4% | Aug 4, 2023 | CWE-74 Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') in GitHub repo... |
| CVE-2023-38699 | MEDIUM | 6.5 | 0.2% | Aug 4, 2023 | MindsDB's AI Virtual Database allows developers to connect any AI/ML model to any datasource. Prior to version 23.7.4.0,... |
| CVE-2023-38698 | MEDIUM | 6.5 | 0.7% | Aug 4, 2023 | Ethereum Name Service (ENS) is a distributed, open, and extensible naming system based on the Ethereum blockchain. Accor... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now