2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-2261 | MEDIUM | 4.3 | 0.6% | Jun 9, 2023 | The WP Activity Log plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the ... |
| CVE-2023-32732 | MEDIUM | 5.3 | 0.5% | Jun 9, 2023 | gRPC contains a vulnerability whereby a client can cause a termination of connection between a HTTP2 proxy and a gRPC se... |
| CVE-2023-0342 | MEDIUM | 5.3 | 0.9% | Jun 9, 2023 | MongoDB Ops Manager Diagnostics Archive may not redact sensitive PEM key file password app settings. Archives do not inc... |
| CVE-2023-34363 | MEDIUM | 5.9 | 0.3% | Jun 9, 2023 | An issue was discovered in Progress DataDirect Connect for ODBC before 08.02.2770 for Oracle. When using Oracle Advanced... |
| CVE-2023-2897 | MEDIUM | 5.3 | 0.3% | Jun 9, 2023 | The Brizy Page Builder plugin for WordPress is vulnerable to IP Address Spoofing in versions up to, and including, 2.4.1... |
| CVE-2023-2896 | MEDIUM | 4.3 | 0.2% | Jun 9, 2023 | The WP EasyCart plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 5.4.8... |
| CVE-2023-2895 | MEDIUM | 4.3 | 0.2% | Jun 9, 2023 | The WP EasyCart plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 5.4.8... |
| CVE-2023-2894 | MEDIUM | 4.3 | 0.2% | Jun 9, 2023 | The WP EasyCart plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 5.4.8... |
| CVE-2023-2893 | MEDIUM | 4.3 | 0.2% | Jun 9, 2023 | The WP EasyCart plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 5.4.8... |
| CVE-2023-2892 | MEDIUM | 4.3 | 0.2% | Jun 9, 2023 | The WP EasyCart plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 5.4.8... |
| CVE-2023-2891 | MEDIUM | 4.3 | 0.2% | Jun 9, 2023 | The WP EasyCart plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 5.4.8... |
| CVE-2023-2767 | MEDIUM | 5.5 | 0.4% | Jun 9, 2023 | The WordPress File Upload and WordPress File Upload Pro plugins for WordPress are vulnerable to Stored Cross-Site Script... |
| CVE-2023-2764 | MEDIUM | 4.3 | 0.5% | Jun 9, 2023 | The Draw Attention plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability c... |
| CVE-2023-2688 | MEDIUM | 4.9 | 1.7% | Jun 9, 2023 | The WordPress File Upload and WordPress File Upload Pro plugins for WordPress are vulnerable to Path Traversal in versio... |
| CVE-2023-2604 | MEDIUM | 6.1 | 0.4% | Jun 9, 2023 | The Team Circle Image Slider With Lightbox plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ... |
| CVE-2023-2599 | MEDIUM | 6.5 | 0.4% | Jun 9, 2023 | The Active Directory Integration plugin for WordPress is vulnerable to Cross-Site Request Forgery leading to time-based ... |
| CVE-2023-2584 | MEDIUM | 4.8 | 0.5% | Jun 9, 2023 | The PixelYourSite plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in versions up to... |
| CVE-2023-2558 | MEDIUM | 5.4 | 0.4% | Jun 9, 2023 | The WPCS – WordPress Currency Switcher Professional plugin for WordPress is vulnerable to Stored Cross-Site Scripting vi... |
| CVE-2023-2557 | MEDIUM | 4.3 | 0.4% | Jun 9, 2023 | The WPCS – WordPress Currency Switcher Professional plugin for WordPress is vulnerable to unauthorized modification of d... |
| CVE-2023-2556 | MEDIUM | 4.3 | 0.4% | Jun 9, 2023 | The WPCS – WordPress Currency Switcher Professional plugin for WordPress is vulnerable to unauthorized modification of d... |
| CVE-2023-2555 | MEDIUM | 4.3 | 0.4% | Jun 9, 2023 | The WPCS – WordPress Currency Switcher Professional plugin for WordPress is vulnerable to unauthorized modification of d... |
| CVE-2023-2526 | MEDIUM | 5.4 | 0.3% | Jun 9, 2023 | The Easy Google Maps plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, ... |
| CVE-2023-2484 | MEDIUM | 4.9 | 0.8% | Jun 9, 2023 | The Active Directory Integration plugin for WordPress is vulnerable to time-based SQL Injection via the orderby and orde... |
| CVE-2023-2452 | MEDIUM | 4.4 | 0.5% | Jun 9, 2023 | The Advanced Woo Search plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in version... |
| CVE-2023-2450 | MEDIUM | 4.4 | 0.6% | Jun 9, 2023 | The FiboSearch - AJAX Search for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now