2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-2261MEDIUM4.3The WP Activity Log plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the ...
CVE-2023-32732MEDIUM5.3gRPC contains a vulnerability whereby a client can cause a termination of connection between a HTTP2 proxy and a gRPC se...
CVE-2023-0342MEDIUM5.3MongoDB Ops Manager Diagnostics Archive may not redact sensitive PEM key file password app settings. Archives do not inc...
CVE-2023-34363MEDIUM5.9An issue was discovered in Progress DataDirect Connect for ODBC before 08.02.2770 for Oracle. When using Oracle Advanced...
CVE-2023-2897MEDIUM5.3The Brizy Page Builder plugin for WordPress is vulnerable to IP Address Spoofing in versions up to, and including, 2.4.1...
CVE-2023-2896MEDIUM4.3The WP EasyCart plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 5.4.8...
CVE-2023-2895MEDIUM4.3The WP EasyCart plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 5.4.8...
CVE-2023-2894MEDIUM4.3The WP EasyCart plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 5.4.8...
CVE-2023-2893MEDIUM4.3The WP EasyCart plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 5.4.8...
CVE-2023-2892MEDIUM4.3The WP EasyCart plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 5.4.8...
CVE-2023-2891MEDIUM4.3The WP EasyCart plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 5.4.8...
CVE-2023-2767MEDIUM5.5The WordPress File Upload and WordPress File Upload Pro plugins for WordPress are vulnerable to Stored Cross-Site Script...
CVE-2023-2764MEDIUM4.3The Draw Attention plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability c...
CVE-2023-2688MEDIUM4.9The WordPress File Upload and WordPress File Upload Pro plugins for WordPress are vulnerable to Path Traversal in versio...
CVE-2023-2604MEDIUM6.1The Team Circle Image Slider With Lightbox plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ...
CVE-2023-2599MEDIUM6.5The Active Directory Integration plugin for WordPress is vulnerable to Cross-Site Request Forgery leading to time-based ...
CVE-2023-2584MEDIUM4.8The PixelYourSite plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in versions up to...
CVE-2023-2558MEDIUM5.4The WPCS – WordPress Currency Switcher Professional plugin for WordPress is vulnerable to Stored Cross-Site Scripting vi...
CVE-2023-2557MEDIUM4.3The WPCS – WordPress Currency Switcher Professional plugin for WordPress is vulnerable to unauthorized modification of d...
CVE-2023-2556MEDIUM4.3The WPCS – WordPress Currency Switcher Professional plugin for WordPress is vulnerable to unauthorized modification of d...
CVE-2023-2555MEDIUM4.3The WPCS – WordPress Currency Switcher Professional plugin for WordPress is vulnerable to unauthorized modification of d...
CVE-2023-2526MEDIUM5.4The Easy Google Maps plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, ...
CVE-2023-2484MEDIUM4.9The Active Directory Integration plugin for WordPress is vulnerable to time-based SQL Injection via the orderby and orde...
CVE-2023-2452MEDIUM4.4The Advanced Woo Search plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in version...
CVE-2023-2450MEDIUM4.4The FiboSearch - AJAX Search for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now