2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-34185MEDIUM6.5Cross-Site Request Forgery (CSRF) vulnerability in John Brien WordPress NextGen GalleryView plugin <= 0.5.5 versions.
CVE-2023-23671MEDIUM6.5Cross-Site Request Forgery (CSRF) vulnerability in Muneeb Layer Slider plugin <= 1.1.9.7 versions.
CVE-2023-1672MEDIUM5.3A race condition exists in the Tang server functionality for key generation and key rotation. This flaw results in a sma...
CVE-2023-36687MEDIUM6.5Cross-Site Request Forgery (CSRF) vulnerability in Andrea Tarantini Menubar plugin <= 5.8.2 versions.
CVE-2023-37391MEDIUM6.5Cross-Site Request Forgery (CSRF) vulnerability in WPMobilePack.Com WordPress Mobile Pack – Mobile Plugin for Progressiv...
CVE-2023-36748MEDIUM6.8A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.16.0), RUGGEDCOM ROX MX5000RE (All versio...
CVE-2023-36390MEDIUM5.4A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.16.0), RUGGEDCOM ROX MX5000RE (All versio...
CVE-2023-36389MEDIUM6.1A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.16.0), RUGGEDCOM ROX MX5000RE (All versio...
CVE-2023-36386MEDIUM6.1A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.16.0), RUGGEDCOM ROX MX5000RE (All versio...
CVE-2023-29156MEDIUM6.8DroneScout ds230 Remote ID receiver from BlueMark Innovations is affected by an information loss vulnerability through t...
CVE-2023-1936MEDIUM4.3An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.7 before 15.11.10, all versions sta...
CVE-2023-36924MEDIUM4.9While using a specific function, SAP ERP Defense Forces and Public Security - versions 600, 603, 604, 605, 616, 617, 618...
CVE-2023-36919MEDIUM5.3In SAP Enable Now - versions WPB_MANAGER 1.0, WPB_MANAGER_CE 10, WPB_MANAGER_HANA 10, ENABLE_NOW_CONSUMP_DEL 1704, the R...
CVE-2023-36918MEDIUM6.1In SAP Enable Now - versions WPB_MANAGER 1.0, WPB_MANAGER_CE 10, WPB_MANAGER_HANA 10, ENABLE_NOW_CONSUMP_DEL 1704, the X...
CVE-2023-35873MEDIUM6.5The Runtime Workbench (RWB) of SAP NetWeaver Process Integration - version SAP_XITOOL 7.50, does not perform authenticat...
CVE-2023-35872MEDIUM6.5The Message Display Tool (MDT) of SAP NetWeaver Process Integration - version SAP_XIAF 7.50, does not perform authentica...
CVE-2023-33992MEDIUM6.5The SAP BW BICS communication layer in SAP Business Warehouse and SAP BW/4HANA - version SAP_BW 730, SAP_BW 731, SAP_BW ...
CVE-2023-33988MEDIUM6.1In SAP Enable Now - versions WPB_MANAGER 1.0, WPB_MANAGER_CE 10, WPB_MANAGER_HANA 10, ENABLE_NOW_CONSUMP_DEL 1704, the C...
CVE-2023-31405MEDIUM5.3SAP NetWeaver AS for Java - versions ENGINEAPI 7.50, SERVERCORE 7.50, J2EE-APPS 7.50, allows an unauthenticated attacker...
CVE-2023-2078MEDIUM4.3The "Buy Me a Coffee – Button and Widget Plugin" plugin for WordPress is vulnerable to unauthorized modification of data...
CVE-2023-37190MEDIUM4.8A stored cross-site scripting (XSS) vulnerability in Issabel issabel-pbx v.4.0.0-6 allows attackers to execute arbitrary...
CVE-2023-37189MEDIUM4.8A stored cross site scripting (XSS) vulnerability in index.php?menu=billing_rates of Issabel PBX version 4 allows attack...
CVE-2023-37191MEDIUM4.8A stored cross-site scripting (XSS) vulnerability in Issabel issabel-pbx v.4.0.0-6 allows attackers to execute arbitrary...
CVE-2023-30963MEDIUM5.4A security defect was discovered in Foundry Frontend which enabled users to perform Stored XSS attacks in Slate if Found...
CVE-2023-30960MEDIUM4.3A security defect was discovered in Foundry job-tracker that enabled users to query metadata related to builds on resour...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now