2023 CVE Vulnerabilities

31,397 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-6196HIGH8.8The Audio Merchant plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including...
CVE-2023-48090HIGH7.1GPAC 2.3-DEV-rev617-g671976fcc-master is vulnerable to memory leaks in extract_attributes media_tools/m3u8.c:329.
CVE-2023-48039MEDIUM5.5GPAC 2.3-DEV-rev617-g671976fcc-master is vulnerable to memory leak in gf_mpd_parse_string media_tools/mpd.c:75.
CVE-2023-47772MEDIUM5.4Contributor+ Stored Cross-Site Scripting (XSS) vulnerability in Slider Revolution <= 6.6.14.
CVE-2023-6045HIGH7.8in OpenHarmony v3.2.2 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through t...
CVE-2023-5593HIGH7.8The out-of-bounds write vulnerability in the Windows-based SecuExtender SSL VPN Client software version 4.0.4.0 could al...
CVE-2023-47217MEDIUM5.5in OpenHarmony v3.2.2 and prior versions allow a local attacker cause DOS through buffer overflow.
CVE-2023-46705MEDIUM5.5in OpenHarmony v3.2.2 and prior versions allow a local attacker causes system information leak through type confusion.
CVE-2023-46100MEDIUM5.5in OpenHarmony v3.2.2 and prior versions allow a local attacker get sensitive buffer information through use of uninitia...
CVE-2023-43612HIGH7.8in OpenHarmony v3.2.2 and prior versions allow a local attacker arbitrary file read and write through improper preservat...
CVE-2023-42774MEDIUM5.5in OpenHarmony v3.2.2 and prior versions allow a local attacker get confidential information through incorrect default ...
CVE-2023-3116HIGH7.1in OpenHarmony v3.2.2 and prior versions allow a local attacker get confidential information or rewrite sensitive file t...
CVE-2023-46302CRITICAL9.8Apache Software Foundation Apache Submarine has a bug when serializing against yaml. The bug is caused by snakeyaml htt...
CVE-2023-3379MEDIUM5.3Wago web-based management of multiple products has a vulnerability which allows an local authenticated attacker to chan...
CVE-2023-47175MEDIUM6.1Cross-site scripting vulnerability in LuxCal Web Calendar prior to 5.2.4M (MySQL version) and LuxCal Web Calendar prior ...
CVE-2023-46700CRITICAL9.8SQL injection vulnerability in LuxCal Web Calendar prior to 5.2.4M (MySQL version) and LuxCal Web Calendar prior to 5.2....
CVE-2023-5341MEDIUM5.5A heap use-after-free flaw was found in coders/bmp.c in ImageMagick.
CVE-2023-41129HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Patreon Patreon WordPress.This issue affects Patreon WordPress: from ...
CVE-2023-32514HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Himanshu Parashar Google Site Verification plugin using Meta Tag.This...
CVE-2023-32504HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Kainex Wise Chat.This issue affects Wise Chat: from n/a through 3.1.3...
CVE-2023-32245HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in WPDeveloper Essential Addons for Elementor Pro.This issue affects Ess...
CVE-2023-31089HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Tradebooster Video XML Sitemap Generator.This issue affects Video XML...
CVE-2023-31075HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Arshid Easy Hide Login.This issue affects Easy Hide Login: from n/a t...
CVE-2023-28780HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Yoast Yoast Local Premium.This issue affects Yoast Local Premium: fro...
CVE-2023-25985HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Tomas | Docs | FAQ | Premium Support WordPress Tooltips.This issue af...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now