2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-2580 | MEDIUM | 4.8 | 0.5% | Jun 27, 2023 | The AI Engine WordPress plugin before 1.6.83 does not sanitize and escape some of its settings, which could allow high-p... |
| CVE-2023-2326 | MEDIUM | 6.5 | 0.3% | Jun 27, 2023 | The Gravity Forms Google Sheet Connector WordPress plugin before 1.3.5, gsheetconnector-gravityforms-pro WordPress plugi... |
| CVE-2023-2178 | MEDIUM | 4.8 | 0.8% | Jun 27, 2023 | The Aajoda Testimonials WordPress plugin before 2.2.2 does not sanitise and escape some of its settings, which could all... |
| CVE-2023-1891 | MEDIUM | 6.1 | 0.5% | Jun 27, 2023 | The Accordion & FAQ WordPress plugin before 1.9.9 does not escape various generated URLs, before outputting them in attr... |
| CVE-2023-1166 | MEDIUM | 4.8 | 0.5% | Jun 27, 2023 | The USM-Premium WordPress plugin before 16.3 does not sanitize and escape some of its settings, which could allow high-p... |
| CVE-2023-0873 | MEDIUM | 4.8 | 0.5% | Jun 27, 2023 | The Kanban Boards for WordPress plugin before 2.5.21 does not sanitise and escape some of its settings, which could allo... |
| CVE-2023-0588 | MEDIUM | 6.1 | 0.5% | Jun 27, 2023 | The Catalyst Connect Zoho CRM Client Portal WordPress plugin before 2.1.0 does not sanitize and escape a parameter befor... |
| CVE-2023-35798 | MEDIUM | 4.3 | 0.9% | Jun 27, 2023 | Input Validation vulnerability in Apache Software Foundation Apache Airflow ODBC Provider, Apache Software Foundation Ap... |
| CVE-2023-3412 | MEDIUM | 5.4 | 0.3% | Jun 27, 2023 | The Image Map Pro – Drag-and-drop Builder for Interactive Images – Lite plugin for WordPress is vulnerable to Stored Cro... |
| CVE-2023-3411 | MEDIUM | 4.3 | 0.2% | Jun 27, 2023 | The Image Map Pro – Drag-and-drop Builder for Interactive Images – Lite plugin for WordPress is vulnerable to Cross-Site... |
| CVE-2023-22834 | MEDIUM | 4.3 | 0.3% | Jun 27, 2023 | The Contour Service was not checking that users had permission to create an analysis for a given dataset. This could all... |
| CVE-2023-35164 | MEDIUM | 6.5 | 0.4% | Jun 26, 2023 | DataEase is an open source data visualization analysis tool to analyze data and gain insight into business trends. In af... |
| CVE-2023-32605 | MEDIUM | 5.4 | 0.3% | Jun 26, 2023 | Affected versions Trend Micro Apex Central (on-premise) are vulnerable to potential authenticated reflected cross-site s... |
| CVE-2023-32604 | MEDIUM | 5.4 | 0.3% | Jun 26, 2023 | Affected versions Trend Micro Apex Central (on-premise) are vulnerable to potential authenticated reflected cross-site s... |
| CVE-2023-32556 | MEDIUM | 5.5 | 0.3% | Jun 26, 2023 | A link following vulnerability in the Trend Micro Apex One and Apex One as a Service agent could allow a local attacker ... |
| CVE-2023-32553 | MEDIUM | 5.3 | 0.5% | Jun 26, 2023 | An Improper access control vulnerability in Trend Micro Apex One and Apex One as a Service could allow an unauthenticate... |
| CVE-2023-32552 | MEDIUM | 5.3 | 0.6% | Jun 26, 2023 | An Improper access control vulnerability in Trend Micro Apex One and Apex One as a Service could allow an unauthenticate... |
| CVE-2023-32537 | MEDIUM | 5.4 | 0.3% | Jun 26, 2023 | Affected versions Trend Micro Apex Central (on-premise) are vulnerable to potential authenticated reflected cross-site s... |
| CVE-2023-32536 | MEDIUM | 5.4 | 0.3% | Jun 26, 2023 | Affected versions Trend Micro Apex Central (on-premise) are vulnerable to potential authenticated reflected cross-site s... |
| CVE-2023-32535 | MEDIUM | 6.1 | 1.9% | Jun 26, 2023 | Certain dashboard widgets on Trend Micro Apex Central (on-premise) are vulnerable to cross-site scripting (XSS) attacks ... |
| CVE-2023-32534 | MEDIUM | 6.1 | 0.7% | Jun 26, 2023 | Certain dashboard widgets on Trend Micro Apex Central (on-premise) are vulnerable to cross-site scripting (XSS) attacks ... |
| CVE-2023-32533 | MEDIUM | 6.1 | 1.9% | Jun 26, 2023 | Certain dashboard widgets on Trend Micro Apex Central (on-premise) are vulnerable to cross-site scripting (XSS) attacks ... |
| CVE-2023-32532 | MEDIUM | 6.1 | 1.9% | Jun 26, 2023 | Certain dashboard widgets on Trend Micro Apex Central (on-premise) are vulnerable to cross-site scripting (XSS) attacks ... |
| CVE-2023-32531 | MEDIUM | 6.1 | 1.9% | Jun 26, 2023 | Certain dashboard widgets on Trend Micro Apex Central (on-premise) are vulnerable to cross-site scripting (XSS) attacks ... |
| CVE-2023-32526 | MEDIUM | 6.5 | 2.0% | Jun 26, 2023 | Trend Micro Mobile Security (Enterprise) 9.8 SP5 contains widget vulnerabilities that could allow a remote attacker to c... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now