2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-6077MEDIUM6.5The Slider WordPress plugin before 3.5.12 does not ensure that posts to be accessed via an AJAX action are slides and ca...
CVE-2023-6065MEDIUM5.3The Quttera Web Malware Scanner WordPress plugin before 3.4.2.1 doesn't restrict access to detailed scan logs, which all...
CVE-2023-5949HIGH7.5The SmartCrawl WordPress plugin before 3.8.3 does not prevent unauthorised users from accessing password-protected posts...
CVE-2023-5886HIGH8.8The Export any WordPress data to XML/CSV WordPress plugin before 1.4.0, WP All Export Pro WordPress plugin before 1.8.6 ...
CVE-2023-5882HIGH8.8The Export any WordPress data to XML/CSV WordPress plugin before 1.4.0, WP All Export Pro WordPress plugin before 1.8.6 ...
CVE-2023-5348MEDIUM6.1The Product Catalog Mode For WooCommerce WordPress plugin before 5.0.3 does not properly authorize settings updates or e...
CVE-2023-5005MEDIUM4.8The Autocomplete Location field Contact Form 7 WordPress plugin before 3.0, autocomplete-location-field-contact-form-7-p...
CVE-2023-4724HIGH7.2The Export any WordPress data to XML/CSV WordPress plugin before 1.4.0, WP All Export Pro WordPress plugin before 1.8.6 ...
CVE-2023-4311HIGH8.8The Vrm 360 3D Model Viewer WordPress plugin through 1.2.1 is vulnerable to arbitrary file upload due to insufficient ch...
CVE-2023-47741MEDIUM5.3 IBM i 7.3, 7.4, 7.5, IBM i Db2 Mirror for i 7.4 and 7.5 web browser clients may leave clear-text passwords in browser m...
CVE-2023-51385MEDIUM6.5In ssh in OpenSSH before 9.6, OS command injection might occur if a user name or host name has shell metacharacters, and...
CVE-2023-51384MEDIUM5.5In ssh-agent in OpenSSH before 9.6, certain destination constraints can be incompletely applied. When destination constr...
CVE-2023-6691HIGH7.8 Cambium ePMP Force 300-25 version 4.7.0.1 is vulnerable to a code injection vulnerability that could allow an attacker ...
CVE-2023-6920Rejected reason: This flaw was found to be a duplicate of CVE-2023-6927. Please see https://access.redhat.com/security/c...
CVE-2023-48766HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in SVGator SVGator – Add Animated SVG Easily.This issue affects SVGator ...
CVE-2023-48762HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Crocoblock JetElements For Elementor.This issue affects JetElements F...
CVE-2023-46617HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in AdFoxly AdFoxly – Ad Manager, AdSense Ads & Ads.Txt.This issue affect...
CVE-2023-48795MEDIUM5.9The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remot...
CVE-2023-48755HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Michael Winkler teachPress.This issue affects teachPress: from n/a th...
CVE-2023-47806HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Saint Systems Disable User Login.This issue affects Disable User Logi...
CVE-2023-47789HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in WooCommerce Canada Post Shipping Method.This issue affects Canada Pos...
CVE-2023-47787HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in WooCommerce WooCommerce Bookings.This issue affects WooCommerce Booki...
CVE-2023-33214HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Tagbox Tagbox – UGC Galleries, Social Media Widgets, User Reviews & A...
CVE-2023-6817HIGH7.8A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local pr...
CVE-2023-6778MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository allegroai/clearml-server prior to 1.13.0.

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now