2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-3087 | MEDIUM | 6.1 | 0.5% | Jul 12, 2023 | The FluentSMTP plugin for WordPress is vulnerable to Stored Cross-Site Scripting via an email subject in versions up to,... |
| CVE-2023-3082 | MEDIUM | 6.1 | 0.4% | Jul 12, 2023 | The Post SMTP plugin for WordPress is vulnerable to Stored Cross-Site Scripting via email contents in versions up to, an... |
| CVE-2023-3081 | MEDIUM | 6.1 | 0.7% | Jul 12, 2023 | The WP Mail Logging plugin for WordPress is vulnerable to Stored Cross-Site Scripting via email contents in versions up ... |
| CVE-2023-3080 | MEDIUM | 6.1 | 0.5% | Jul 12, 2023 | The WP Mail Catcher plugin for WordPress is vulnerable to Stored Cross-Site Scripting via an email subject in versions u... |
| CVE-2023-2869 | MEDIUM | 4.3 | 0.5% | Jul 12, 2023 | The WP-Members Membership plugin for WordPress is vulnerable to unauthorized plugin settings update due to a missing cap... |
| CVE-2023-2562 | MEDIUM | 4.3 | 0.5% | Jul 12, 2023 | The Gallery Metabox for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the ... |
| CVE-2023-2561 | MEDIUM | 4.3 | 0.4% | Jul 12, 2023 | The Gallery Metabox for WordPress is vulnerable to unauthorized modification of data due to a missing capability check o... |
| CVE-2023-2517 | MEDIUM | 4.3 | 0.4% | Jul 12, 2023 | The Metform Elementor Contact Form Builder plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions ... |
| CVE-2023-30226 | MEDIUM | 5.5 | 0.3% | Jul 12, 2023 | An issue was discovered in function get_gnu_verneed in rizinorg Rizin prior to 0.5.0 verneed_entry allows attackers to c... |
| CVE-2023-37767 | MEDIUM | 5.5 | 0.3% | Jul 11, 2023 | GPAC v2.3-DEV-rev381-g817a848f6-master was discovered to contain a segmentation violation in the BM_ParseIndexValueRepla... |
| CVE-2023-37766 | MEDIUM | 5.5 | 0.3% | Jul 11, 2023 | GPAC v2.3-DEV-rev381-g817a848f6-master was discovered to contain a segmentation violation in the gf_isom_remove_user_dat... |
| CVE-2023-37765 | MEDIUM | 5.5 | 0.3% | Jul 11, 2023 | GPAC v2.3-DEV-rev381-g817a848f6-master was discovered to contain a segmentation violation in the gf_dump_vrml_sffield fu... |
| CVE-2023-37174 | MEDIUM | 5.5 | 0.3% | Jul 11, 2023 | GPAC v2.3-DEV-rev381-g817a848f6-master was discovered to contain a segmentation violation in the dump_isom_scene functio... |
| CVE-2023-29406 | MEDIUM | 6.5 | 1.3% | Jul 11, 2023 | The HTTP/1 client does not fully validate the contents of the Host header. A maliciously crafted Host header can inject ... |
| CVE-2023-23756 | MEDIUM | 6.1 | 0.3% | Jul 11, 2023 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in advcomsys.com oneV... |
| CVE-2023-37280 | MEDIUM | 6.1 | 0.5% | Jul 11, 2023 | Pimcore Admin Classic Bundle provides a Backend UI for Pimcore based on the ExtJS framework. An admin who has not setup ... |
| CVE-2023-20575 | MEDIUM | 6.5 | 0.8% | Jul 11, 2023 | A potential power side-channel vulnerability in some AMD processors may allow an authenticated attacker to use the powe... |
| CVE-2023-36872 | MEDIUM | 5.5 | 0.7% | Jul 11, 2023 | VP9 Video Extensions Information Disclosure Vulnerability |
| CVE-2023-36871 | MEDIUM | 6.5 | 1.0% | Jul 11, 2023 | Azure Active Directory Security Feature Bypass Vulnerability |
| CVE-2023-36868 | MEDIUM | 6.5 | 0.7% | Jul 11, 2023 | Azure Service Fabric on Windows Information Disclosure Vulnerability |
| CVE-2023-35373 | MEDIUM | 5.3 | 0.7% | Jul 11, 2023 | Mono Authenticode Validation Spoofing Vulnerability |
| CVE-2023-35351 | MEDIUM | 6.6 | 0.6% | Jul 11, 2023 | Windows Active Directory Certificate Services (AD CS) Remote Code Execution Vulnerability |
| CVE-2023-35348 | MEDIUM | 6.5 | 0.9% | Jul 11, 2023 | Active Directory Federation Service Security Feature Bypass Vulnerability |
| CVE-2023-35346 | MEDIUM | 6.6 | 0.6% | Jul 11, 2023 | Windows DNS Server Remote Code Execution Vulnerability |
| CVE-2023-35345 | MEDIUM | 6.6 | 0.6% | Jul 11, 2023 | Windows DNS Server Remote Code Execution Vulnerability |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now