2023 CVE Vulnerabilities
31,248 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-31862 | MEDIUM | 5.4 | 0.3% | May 19, 2023 | jizhicms v2.4.6 is vulnerable to Cross Site Scripting (XSS). The content of the article published in the front end is on... |
| CVE-2023-31756 | MEDIUM | 6.7 | 1.8% | May 19, 2023 | A command injection vulnerability exists in the administrative web portal in TP-Link Archer VR1600V devices running firm... |
| CVE-2023-26818 | MEDIUM | 5.5 | 0.5% | May 19, 2023 | Telegram 9.3.1 and 9.4.0 allows attackers to access restricted files, microphone ,or video recording via the DYLD_INSERT... |
| CVE-2023-1195 | MEDIUM | 5.5 | 0.2% | May 18, 2023 | A use-after-free flaw was found in reconn_set_ipaddr_from_hostname in fs/cifs/connect.c in the Linux kernel. The issue o... |
| CVE-2023-2025 | MEDIUM | 6.5 | 0.5% | May 18, 2023 | OpenBlue Enterprise Manager Data Collector versions prior to 3.2.5.75 may expose sensitive information to an unauthorize... |
| CVE-2023-29720 | MEDIUM | 6.1 | 0.4% | May 18, 2023 | SofaWiki <=3.8.9 is vulnerable to Cross Site Scripting (XSS) via index.php. |
| CVE-2023-31597 | MEDIUM | 6.5 | 0.4% | May 18, 2023 | An issue in Zammad v5.4.0 allows attackers to bypass e-mail verification using an arbitrary address and manipulate the d... |
| CVE-2023-32322 | MEDIUM | 4.9 | 2.1% | May 18, 2023 | Ombi is an open source application which allows users to request specific media from popular self-hosted streaming serve... |
| CVE-2023-2800 | MEDIUM | 4.7 | 0.3% | May 18, 2023 | Insecure Temporary File in GitHub repository huggingface/transformers prior to 4.30.0. |
| CVE-2023-2790 | MEDIUM | 5.5 | 0.3% | May 18, 2023 | A vulnerability classified as problematic has been found in TOTOLINK N200RE 9.3.5u.6255_B20211224. Affected is an unknow... |
| CVE-2023-30780 | MEDIUM | 5.4 | 0.4% | May 18, 2023 | Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in TheGuideX User IP and Location plugin <= 2.2 ver... |
| CVE-2023-2782 | MEDIUM | 5.5 | 0.2% | May 18, 2023 | Sensitive information disclosure due to improper authorization. The following products are affected: Acronis Cyber Infra... |
| CVE-2023-23999 | MEDIUM | 5.4 | 0.4% | May 18, 2023 | Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in MonsterInsights plugin <= 8.14.0 versions. |
| CVE-2023-23667 | MEDIUM | 5.4 | 0.4% | May 18, 2023 | Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in BeRocket Brands for WooCommerce plugin <= 3.7.0.... |
| CVE-2023-32515 | MEDIUM | 4.8 | 0.4% | May 18, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Matt Gibbs Custom Field Suite plugin <= 2.6.2.1 versio... |
| CVE-2023-31233 | MEDIUM | 4.8 | 0.4% | May 18, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Haoqisir Baidu Tongji generator plugin <= 1.0.2 versio... |
| CVE-2023-30868 | MEDIUM | 6.1 | 4.0% | May 18, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Jon Christopher CMS Tree Page View plugin <= 1.6.7 version... |
| CVE-2023-30487 | MEDIUM | 6.1 | 0.4% | May 18, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in ThimPress LearnPress Export Import plugin <= 4.0.2 version... |
| CVE-2023-33203 | MEDIUM | 6.4 | 0.4% | May 18, 2023 | The Linux kernel before 6.2.9 has a race condition and resultant use-after-free in drivers/net/ethernet/qualcomm/emac/em... |
| CVE-2023-2757 | MEDIUM | 5.4 | 0.5% | May 18, 2023 | The Waiting: One-click countdowns plugin for WordPress is vulnerable to authorization bypass due to a missing capability... |
| CVE-2023-20184 | MEDIUM | 4.3 | 0.5% | May 18, 2023 | Multiple vulnerabilities in the API of Cisco DNA Center Software could allow an authenticated, remote attacker to read i... |
| CVE-2023-20183 | MEDIUM | 4.3 | 0.5% | May 18, 2023 | Multiple vulnerabilities in the API of Cisco DNA Center Software could allow an authenticated, remote attacker to read i... |
| CVE-2023-20174 | MEDIUM | 4.9 | 0.7% | May 18, 2023 | Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an au... |
| CVE-2023-20173 | MEDIUM | 4.9 | 0.8% | May 18, 2023 | Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an au... |
| CVE-2023-20172 | MEDIUM | 4.9 | 0.4% | May 18, 2023 | Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow an authenticated attacker to delete or read... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now