2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-3087MEDIUM6.1The FluentSMTP plugin for WordPress is vulnerable to Stored Cross-Site Scripting via an email subject in versions up to,...
CVE-2023-3082MEDIUM6.1The Post SMTP plugin for WordPress is vulnerable to Stored Cross-Site Scripting via email contents in versions up to, an...
CVE-2023-3081MEDIUM6.1The WP Mail Logging plugin for WordPress is vulnerable to Stored Cross-Site Scripting via email contents in versions up ...
CVE-2023-3080MEDIUM6.1The WP Mail Catcher plugin for WordPress is vulnerable to Stored Cross-Site Scripting via an email subject in versions u...
CVE-2023-2869MEDIUM4.3The WP-Members Membership plugin for WordPress is vulnerable to unauthorized plugin settings update due to a missing cap...
CVE-2023-2562MEDIUM4.3The Gallery Metabox for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the ...
CVE-2023-2561MEDIUM4.3The Gallery Metabox for WordPress is vulnerable to unauthorized modification of data due to a missing capability check o...
CVE-2023-2517MEDIUM4.3The Metform Elementor Contact Form Builder plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions ...
CVE-2023-30226MEDIUM5.5An issue was discovered in function get_gnu_verneed in rizinorg Rizin prior to 0.5.0 verneed_entry allows attackers to c...
CVE-2023-37767MEDIUM5.5GPAC v2.3-DEV-rev381-g817a848f6-master was discovered to contain a segmentation violation in the BM_ParseIndexValueRepla...
CVE-2023-37766MEDIUM5.5GPAC v2.3-DEV-rev381-g817a848f6-master was discovered to contain a segmentation violation in the gf_isom_remove_user_dat...
CVE-2023-37765MEDIUM5.5GPAC v2.3-DEV-rev381-g817a848f6-master was discovered to contain a segmentation violation in the gf_dump_vrml_sffield fu...
CVE-2023-37174MEDIUM5.5GPAC v2.3-DEV-rev381-g817a848f6-master was discovered to contain a segmentation violation in the dump_isom_scene functio...
CVE-2023-29406MEDIUM6.5The HTTP/1 client does not fully validate the contents of the Host header. A maliciously crafted Host header can inject ...
CVE-2023-23756MEDIUM6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in advcomsys.com oneV...
CVE-2023-37280MEDIUM6.1Pimcore Admin Classic Bundle provides a Backend UI for Pimcore based on the ExtJS framework. An admin who has not setup ...
CVE-2023-20575MEDIUM6.5 A potential power side-channel vulnerability in some AMD processors may allow an authenticated attacker to use the powe...
CVE-2023-36872MEDIUM5.5VP9 Video Extensions Information Disclosure Vulnerability
CVE-2023-36871MEDIUM6.5Azure Active Directory Security Feature Bypass Vulnerability
CVE-2023-36868MEDIUM6.5Azure Service Fabric on Windows Information Disclosure Vulnerability
CVE-2023-35373MEDIUM5.3Mono Authenticode Validation Spoofing Vulnerability
CVE-2023-35351MEDIUM6.6Windows Active Directory Certificate Services (AD CS) Remote Code Execution Vulnerability
CVE-2023-35348MEDIUM6.5Active Directory Federation Service Security Feature Bypass Vulnerability
CVE-2023-35346MEDIUM6.6Windows DNS Server Remote Code Execution Vulnerability
CVE-2023-35345MEDIUM6.6Windows DNS Server Remote Code Execution Vulnerability

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now