2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-1323 | MEDIUM | 4.8 | 0.4% | Jun 12, 2023 | The Easy Forms for Mailchimp WordPress plugin before 6.8.9 does not sanitise and escape some of its from parameters, whi... |
| CVE-2023-0431 | MEDIUM | 5.4 | 0.4% | Jun 12, 2023 | The File Away WordPress plugin through 3.9.9.0.1 does not validate and escape one of its shortcode attributes, which cou... |
| CVE-2023-34345 | MEDIUM | 6.5 | 0.7% | Jun 12, 2023 | AMI BMC contains a vulnerability in the SPX REST API, where an attacker with the required privileges can access arbitrar... |
| CVE-2023-34344 | MEDIUM | 5.3 | 0.4% | Jun 12, 2023 | AMI BMC contains a vulnerability in the IPMI handler, where an unauthorized attacker can use certain oracles to guess a ... |
| CVE-2023-34246 | MEDIUM | 6.5 | 0.7% | Jun 12, 2023 | Doorkeeper is an OAuth 2 provider for Ruby on Rails / Grape. Prior to version 5.6.6, Doorkeeper automatically processes ... |
| CVE-2023-35054 | MEDIUM | 5.4 | 1.0% | Jun 12, 2023 | In JetBrains YouTrack before 2023.1.10518 stored XSS in a Markdown-rendering engine was possible |
| CVE-2023-34212 | MEDIUM | 6.5 | 2.4% | Jun 12, 2023 | The JndiJmsConnectionFactoryProvider Controller Service, along with the ConsumeJMS and PublishJMS Processors, in Apache ... |
| CVE-2023-34026 | MEDIUM | 6.1 | 0.4% | Jun 12, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in BrokenCrust This Day In History plugin <= 3.10.1 versions. |
| CVE-2023-29385 | MEDIUM | 6.1 | 0.4% | Jun 12, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Kevon Adonis WP Abstracts plugin <= 2.6.2 versions. |
| CVE-2023-28933 | MEDIUM | 4.8 | 0.4% | Jun 12, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in StPeteDesign Call Now Accessibility Button plugin <= 1... |
| CVE-2023-32961 | MEDIUM | 6.1 | 1.0% | Jun 12, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Katie Seaborn Zotpress plugin <= 7.3.3 versions. |
| CVE-2023-32118 | MEDIUM | 6.1 | 0.4% | Jun 12, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in WPoperation SALERT – Fake Sales Notification WooCommerce p... |
| CVE-2023-31236 | MEDIUM | 4.8 | 0.4% | Jun 12, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in unFocus Projects Scripts n Styles plugin <= 3.5.7 vers... |
| CVE-2023-30753 | MEDIUM | 6.1 | 0.4% | Jun 12, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Phan Chuong IP Metaboxes plugin <= 2.1.1. |
| CVE-2023-30745 | MEDIUM | 4.8 | 0.4% | Jun 12, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Phan Chuong IP Metaboxes plugin <= 2.1.1 versions. |
| CVE-2023-23822 | MEDIUM | 4.8 | 0.4% | Jun 12, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Ludwig Media UTM Tracker plugin <= 1.3.1 versions. |
| CVE-2023-23819 | MEDIUM | 4.8 | 0.4% | Jun 12, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Rolands Umbrovskis itemprop WP for SERP/SEO Rich snipp... |
| CVE-2023-34855 | MEDIUM | 4.8 | 0.4% | Jun 12, 2023 | A Cross Site Scripting (XSS) vulnerability in Youxun Electronic Equipment (Shanghai) Co., Ltd AC Centralized Management ... |
| CVE-2023-33492 | MEDIUM | 5.4 | 0.3% | Jun 12, 2023 | EyouCMS 1.6.2 is vulnerable to Cross Site Scripting (XSS). |
| CVE-2023-23818 | MEDIUM | 4.8 | 0.4% | Jun 12, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Aviplugins.Com WP Register Profile With Shortcode plug... |
| CVE-2023-25912 | MEDIUM | 5.3 | 0.6% | Jun 11, 2023 | The webreport generation feature in the Danfoss AK-EM100 allows an unauthorized actor to generate a web report that disc... |
| CVE-2023-22585 | MEDIUM | 6.1 | 0.6% | Jun 11, 2023 | The Danfoss AK-EM100 web applications allow for Reflected Cross-Site Scripting in the title parameter. |
| CVE-2023-22582 | MEDIUM | 6.1 | 0.6% | Jun 11, 2023 | The Danfoss AK-EM100 web applications allow for Reflected Cross-Site Scripting. |
| CVE-2023-3192 | MEDIUM | 5.4 | 0.4% | Jun 11, 2023 | Session Fixation in GitHub repository froxlor/froxlor prior to 2.1.0. |
| CVE-2023-3191 | MEDIUM | 5.4 | 0.5% | Jun 10, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository nilsteampassnet/teampass prior to 3.0.9. |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now