2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-2580MEDIUM4.8The AI Engine WordPress plugin before 1.6.83 does not sanitize and escape some of its settings, which could allow high-p...
CVE-2023-2326MEDIUM6.5The Gravity Forms Google Sheet Connector WordPress plugin before 1.3.5, gsheetconnector-gravityforms-pro WordPress plugi...
CVE-2023-2178MEDIUM4.8The Aajoda Testimonials WordPress plugin before 2.2.2 does not sanitise and escape some of its settings, which could all...
CVE-2023-1891MEDIUM6.1The Accordion & FAQ WordPress plugin before 1.9.9 does not escape various generated URLs, before outputting them in attr...
CVE-2023-1166MEDIUM4.8The USM-Premium WordPress plugin before 16.3 does not sanitize and escape some of its settings, which could allow high-p...
CVE-2023-0873MEDIUM4.8The Kanban Boards for WordPress plugin before 2.5.21 does not sanitise and escape some of its settings, which could allo...
CVE-2023-0588MEDIUM6.1The Catalyst Connect Zoho CRM Client Portal WordPress plugin before 2.1.0 does not sanitize and escape a parameter befor...
CVE-2023-35798MEDIUM4.3Input Validation vulnerability in Apache Software Foundation Apache Airflow ODBC Provider, Apache Software Foundation Ap...
CVE-2023-3412MEDIUM5.4The Image Map Pro – Drag-and-drop Builder for Interactive Images – Lite plugin for WordPress is vulnerable to Stored Cro...
CVE-2023-3411MEDIUM4.3The Image Map Pro – Drag-and-drop Builder for Interactive Images – Lite plugin for WordPress is vulnerable to Cross-Site...
CVE-2023-22834MEDIUM4.3The Contour Service was not checking that users had permission to create an analysis for a given dataset. This could all...
CVE-2023-35164MEDIUM6.5DataEase is an open source data visualization analysis tool to analyze data and gain insight into business trends. In af...
CVE-2023-32605MEDIUM5.4Affected versions Trend Micro Apex Central (on-premise) are vulnerable to potential authenticated reflected cross-site s...
CVE-2023-32604MEDIUM5.4Affected versions Trend Micro Apex Central (on-premise) are vulnerable to potential authenticated reflected cross-site s...
CVE-2023-32556MEDIUM5.5A link following vulnerability in the Trend Micro Apex One and Apex One as a Service agent could allow a local attacker ...
CVE-2023-32553MEDIUM5.3An Improper access control vulnerability in Trend Micro Apex One and Apex One as a Service could allow an unauthenticate...
CVE-2023-32552MEDIUM5.3An Improper access control vulnerability in Trend Micro Apex One and Apex One as a Service could allow an unauthenticate...
CVE-2023-32537MEDIUM5.4Affected versions Trend Micro Apex Central (on-premise) are vulnerable to potential authenticated reflected cross-site s...
CVE-2023-32536MEDIUM5.4Affected versions Trend Micro Apex Central (on-premise) are vulnerable to potential authenticated reflected cross-site s...
CVE-2023-32535MEDIUM6.1Certain dashboard widgets on Trend Micro Apex Central (on-premise) are vulnerable to cross-site scripting (XSS) attacks ...
CVE-2023-32534MEDIUM6.1Certain dashboard widgets on Trend Micro Apex Central (on-premise) are vulnerable to cross-site scripting (XSS) attacks ...
CVE-2023-32533MEDIUM6.1Certain dashboard widgets on Trend Micro Apex Central (on-premise) are vulnerable to cross-site scripting (XSS) attacks ...
CVE-2023-32532MEDIUM6.1Certain dashboard widgets on Trend Micro Apex Central (on-premise) are vulnerable to cross-site scripting (XSS) attacks ...
CVE-2023-32531MEDIUM6.1Certain dashboard widgets on Trend Micro Apex Central (on-premise) are vulnerable to cross-site scripting (XSS) attacks ...
CVE-2023-32526MEDIUM6.5Trend Micro Mobile Security (Enterprise) 9.8 SP5 contains widget vulnerabilities that could allow a remote attacker to c...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now