2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-6077 | MEDIUM | 6.5 | 0.7% | Dec 18, 2023 | The Slider WordPress plugin before 3.5.12 does not ensure that posts to be accessed via an AJAX action are slides and ca... |
| CVE-2023-6065 | MEDIUM | 5.3 | 18.7% | Dec 18, 2023 | The Quttera Web Malware Scanner WordPress plugin before 3.4.2.1 doesn't restrict access to detailed scan logs, which all... |
| CVE-2023-5949 | HIGH | 7.5 | 0.8% | Dec 18, 2023 | The SmartCrawl WordPress plugin before 3.8.3 does not prevent unauthorised users from accessing password-protected posts... |
| CVE-2023-5886 | HIGH | 8.8 | 0.5% | Dec 18, 2023 | The Export any WordPress data to XML/CSV WordPress plugin before 1.4.0, WP All Export Pro WordPress plugin before 1.8.6 ... |
| CVE-2023-5882 | HIGH | 8.8 | 0.5% | Dec 18, 2023 | The Export any WordPress data to XML/CSV WordPress plugin before 1.4.0, WP All Export Pro WordPress plugin before 1.8.6 ... |
| CVE-2023-5348 | MEDIUM | 6.1 | 0.5% | Dec 18, 2023 | The Product Catalog Mode For WooCommerce WordPress plugin before 5.0.3 does not properly authorize settings updates or e... |
| CVE-2023-5005 | MEDIUM | 4.8 | 0.4% | Dec 18, 2023 | The Autocomplete Location field Contact Form 7 WordPress plugin before 3.0, autocomplete-location-field-contact-form-7-p... |
| CVE-2023-4724 | HIGH | 7.2 | 1.2% | Dec 18, 2023 | The Export any WordPress data to XML/CSV WordPress plugin before 1.4.0, WP All Export Pro WordPress plugin before 1.8.6 ... |
| CVE-2023-4311 | HIGH | 8.8 | 1.0% | Dec 18, 2023 | The Vrm 360 3D Model Viewer WordPress plugin through 1.2.1 is vulnerable to arbitrary file upload due to insufficient ch... |
| CVE-2023-47741 | MEDIUM | 5.3 | 0.3% | Dec 18, 2023 | IBM i 7.3, 7.4, 7.5, IBM i Db2 Mirror for i 7.4 and 7.5 web browser clients may leave clear-text passwords in browser m... |
| CVE-2023-51385 | MEDIUM | 6.5 | 19.8% | Dec 18, 2023 | In ssh in OpenSSH before 9.6, OS command injection might occur if a user name or host name has shell metacharacters, and... |
| CVE-2023-51384 | MEDIUM | 5.5 | 0.4% | Dec 18, 2023 | In ssh-agent in OpenSSH before 9.6, certain destination constraints can be incompletely applied. When destination constr... |
| CVE-2023-6691 | HIGH | 7.8 | 0.4% | Dec 18, 2023 | Cambium ePMP Force 300-25 version 4.7.0.1 is vulnerable to a code injection vulnerability that could allow an attacker ... |
| CVE-2023-6920 | — | — | — | Dec 18, 2023 | Rejected reason: This flaw was found to be a duplicate of CVE-2023-6927. Please see https://access.redhat.com/security/c... |
| CVE-2023-48766 | HIGH | 8.8 | 0.3% | Dec 18, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in SVGator SVGator – Add Animated SVG Easily.This issue affects SVGator ... |
| CVE-2023-48762 | HIGH | 8.8 | 0.2% | Dec 18, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Crocoblock JetElements For Elementor.This issue affects JetElements F... |
| CVE-2023-46617 | HIGH | 8.8 | 0.3% | Dec 18, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in AdFoxly AdFoxly – Ad Manager, AdSense Ads & Ads.Txt.This issue affect... |
| CVE-2023-48795 | MEDIUM | 5.9 | 94.1% | Dec 18, 2023 | The SSH transport protocol with certain OpenSSH extensions, found in OpenSSH before 9.6 and other products, allows remot... |
| CVE-2023-48755 | HIGH | 8.8 | 0.3% | Dec 18, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Michael Winkler teachPress.This issue affects teachPress: from n/a th... |
| CVE-2023-47806 | HIGH | 8.8 | 0.3% | Dec 18, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Saint Systems Disable User Login.This issue affects Disable User Logi... |
| CVE-2023-47789 | HIGH | 8.8 | 0.3% | Dec 18, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in WooCommerce Canada Post Shipping Method.This issue affects Canada Pos... |
| CVE-2023-47787 | HIGH | 8.8 | 0.3% | Dec 18, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in WooCommerce WooCommerce Bookings.This issue affects WooCommerce Booki... |
| CVE-2023-33214 | HIGH | 8.8 | 0.3% | Dec 18, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Tagbox Tagbox – UGC Galleries, Social Media Widgets, User Reviews & A... |
| CVE-2023-6817 | HIGH | 7.8 | 0.3% | Dec 18, 2023 | A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local pr... |
| CVE-2023-6778 | MEDIUM | 5.4 | 0.4% | Dec 18, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository allegroai/clearml-server prior to 1.13.0. |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now