2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-3085MEDIUM6.1A vulnerability, which was classified as problematic, has been found in X-WRT luci up to 22.10_b202303061504. This issue...
CVE-2023-2416MEDIUM6.5The Online Booking & Scheduling Calendar for WordPress by vcita plugin for WordPress is vulnerable to Cross-Site Request...
CVE-2023-2415MEDIUM5.4The Online Booking & Scheduling Calendar for WordPress by vcita plugin for WordPress is vulnerable to unauthorized modif...
CVE-2023-2407MEDIUM6.5The Event Registration Calendar By vcita plugin, versions up to and including 3.10.0, and Online Payments – Get Paid wit...
CVE-2023-2406MEDIUM5.4The Event Registration Calendar By vcita plugin, versions up to and including 3.9.1, and Online Payments – Get Paid with...
CVE-2023-2405MEDIUM6.5The CRM and Lead Management by vcita plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to,...
CVE-2023-2404MEDIUM5.4The CRM and Lead Management by vcita plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'email' p...
CVE-2023-2303MEDIUM6.1The Contact Form and Calls To Action by vcita plugin for WordPress is vulnerable to Cross-Site Request Forgery in versio...
CVE-2023-2302MEDIUM5.4The Contact Form and Calls To Action by vcita plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ...
CVE-2023-2301MEDIUM6.1The Contact Form Builder by vcita plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, an...
CVE-2023-2300MEDIUM5.4The Contact Form Builder by vcita plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'email' para...
CVE-2023-2299MEDIUM5.3The Online Booking & Scheduling Calendar for WordPress by vcita plugin for WordPress is vulnerable to unauthorized medic...
CVE-2023-2298MEDIUM6.1The Online Booking & Scheduling Calendar for WordPress by vcita plugin for WordPress is vulnerable to Stored Cross-Site ...
CVE-2023-0584MEDIUM4.3The VK Blocks plugin for WordPress is vulnerable to improper authorization via the REST 'update_options' function in ver...
CVE-2023-0583MEDIUM4.3The VK Blocks plugin for WordPress is vulnerable to improper authorization via the REST 'update_vk_blocks_options' funct...
CVE-2023-3055MEDIUM4.3The Page Builder by AZEXO plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includ...
CVE-2023-3053MEDIUM4.3The Page Builder by AZEXO plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capab...
CVE-2023-3051MEDIUM5.4The Page Builder by AZEXO plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'azh_post' shortcode in ...
CVE-2023-2816MEDIUM6.5Consul and Consul Enterprise allowed any user with service:write permissions to use Envoy extensions configured via serv...
CVE-2023-33763MEDIUM6.1eMedia Consulting simpleRedak up to v2.47.23.05 was discovered to contain a reflected cross-site scripting (XSS) vulnera...
CVE-2023-33761MEDIUM6.1eMedia Consulting simpleRedak up to v2.47.23.05 was discovered to contain a reflected cross-site scripting (XSS) vulnera...
CVE-2023-3073MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository tsolucio/corebos prior to 8 via evvtgendoc.
CVE-2023-3075MEDIUM6.5Cross-Site Request Forgery (CSRF) in GitHub repository tsolucio/corebos prior to 8.
CVE-2023-3074MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository tsolucio/corebos prior to 8.
CVE-2023-3071MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository tsolucio/corebos prior to 8.

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now