2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-49833 | MEDIUM | 5.4 | 0.6% | Dec 14, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Brainstorm Force S... |
| CVE-2023-49828 | MEDIUM | 5.4 | 0.4% | Dec 14, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Automattic WooPaym... |
| CVE-2023-49827 | MEDIUM | 6.1 | 0.4% | Dec 14, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in PenciDesign Soleda... |
| CVE-2023-49745 | MEDIUM | 5.4 | 0.4% | Dec 14, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Spiffy Plugins Spi... |
| CVE-2023-49743 | MEDIUM | 4.8 | 0.4% | Dec 14, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Jeff Starr Dashboa... |
| CVE-2023-49740 | MEDIUM | 6.1 | 0.4% | Dec 14, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Seraphinite Soluti... |
| CVE-2023-49739 | MEDIUM | 6.1 | 0.4% | Dec 14, 2023 | Vulnerability in IdeaBox Creations PowerPack Pro for Elementor.This issue affects PowerPack Pro for Elementor: from n/a ... |
| CVE-2023-49168 | MEDIUM | 5.4 | 0.4% | Dec 14, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WordPlus Better Me... |
| CVE-2023-44277 | HIGH | 7.8 | 0.6% | Dec 14, 2023 | Dell PowerProtect DD, versions prior to 7.13.0.10, LTS 7.7.5.25, LTS 7.10.1.15, 6.2.1.110 contain an OS command injecti... |
| CVE-2023-6572 | HIGH | 8.1 | 1.7% | Dec 14, 2023 | Command Injection in GitHub repository gradio-app/gradio prior to main. |
| CVE-2023-6545 | MEDIUM | 4.7 | 0.4% | Dec 14, 2023 | The package authelia-bhf included in Beckhoffs TwinCAT/BSD is prone to an open redirect that allows a remote unprivilege... |
| CVE-2023-5592 | HIGH | 7.5 | 0.3% | Dec 14, 2023 | Download of Code Without Integrity Check vulnerability in PHOENIX CONTACT MULTIPROG, PHOENIX CONTACT ProConOS eCLR (SDK)... |
| CVE-2023-50370 | MEDIUM | 5.4 | 0.4% | Dec 14, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Livemesh WPBakery ... |
| CVE-2023-50369 | MEDIUM | 5.4 | 0.4% | Dec 14, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Alma Alma – Pay in... |
| CVE-2023-50368 | MEDIUM | 5.4 | 0.4% | Dec 14, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Averta Shortcodes ... |
| CVE-2023-49847 | MEDIUM | 5.4 | 0.4% | Dec 14, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Twinpictures Annua... |
| CVE-2023-49846 | MEDIUM | 5.4 | 0.4% | Dec 14, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Paul Bearne Author... |
| CVE-2023-49836 | MEDIUM | 5.4 | 0.4% | Dec 14, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Brontobytes Cookie... |
| CVE-2023-48676 | HIGH | 7.1 | 0.2% | Dec 14, 2023 | Sensitive information disclosure and manipulation due to missing authorization. The following products are affected: Acr... |
| CVE-2023-46144 | MEDIUM | 6.5 | 0.3% | Dec 14, 2023 | A download of code without integrity check vulnerability in PLCnext products allows an remote attacker with low privileg... |
| CVE-2023-46143 | HIGH | 7.5 | 0.3% | Dec 14, 2023 | Download of Code Without Integrity Check vulnerability in PHOENIX CONTACT classic line PLCs allows an unauthenticated re... |
| CVE-2023-46142 | HIGH | 8.8 | 0.7% | Dec 14, 2023 | A incorrect permission assignment for critical resource vulnerability in PLCnext products allows an remote attacker with... |
| CVE-2023-46141 | CRITICAL | 9.8 | 0.9% | Dec 14, 2023 | Incorrect Permission Assignment for Critical Resource vulnerability in multiple products of the PHOENIX CONTACT classic ... |
| CVE-2023-45185 | HIGH | 8.8 | 1.0% | Dec 14, 2023 | IBM i Access Client Solutions 1.1.2 through 1.1.4 and 1.1.4.3 through 1.1.9.3 could allow an attacker to execute remote ... |
| CVE-2023-45182 | MEDIUM | 6.5 | 0.6% | Dec 14, 2023 | IBM i Access Client Solutions 1.1.2 through 1.1.4 and 1.1.4.3 through 1.1.9.3 is vulnerable to having its key for an en... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now