2023 CVE Vulnerabilities

31,397 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-0817HIGH7.8Buffer Over-read in GitHub repository gpac/gpac prior to v2.3.0-DEV.
CVE-2023-25240HIGH8.8An improper SameSite Attribute vulnerability in pimCore v10.5.15 allows attackers to execute arbitrary code.
CVE-2023-24647HIGH7.5Food Ordering System v2.0 was discovered to contain a SQL injection vulnerability via the email parameter.
CVE-2023-25719HIGH8.8ConnectWise Control before 22.9.10032 (formerly known as ScreenConnect) fails to validate user-supplied parameters such ...
CVE-2023-22854HIGH7.5The ccmweb component of Mitel MiContact Center Business server 9.2.2.0 through 9.4.1.0 could allow an unauthenticated at...
CVE-2023-0263HIGH8.8The WP Yelp Review Slider WordPress plugin before 7.1 does not properly sanitise and escape a parameter before using it ...
CVE-2023-0262HIGH8.8The WP Airbnb Review Slider WordPress plugin before 3.3 does not properly sanitise and escape a parameter before using i...
CVE-2023-0261HIGH8.8The WP TripAdvisor Review Slider WordPress plugin before 10.8 does not properly sanitise and escape a parameter before u...
CVE-2023-0260HIGH8.8The WP Review Slider WordPress plugin before 12.2 does not properly sanitise and escape a parameter before using it in a...
CVE-2023-0259HIGH8.8The WP Google Review Slider WordPress plugin before 11.8 does not properly sanitise and escape a parameter before using ...
CVE-2023-0255HIGH8.8The Enable Media Replace WordPress plugin before 4.0.2 does not prevent authors from uploading arbitrary files to the si...
CVE-2023-0220HIGH8.8The Pinpoint Booking System WordPress plugin before 2.9.9.2.9 does not validate and escape one of its shortcode attribut...
CVE-2023-0159HIGH7.5The Extensive VC Addons for WPBakery page builder WordPress plugin before 1.9.1 does not validate a parameter passed to ...
CVE-2023-0098HIGH8.8The Simple URLs WordPress plugin before 115 does not escape some parameters before using them in various SQL statements ...
CVE-2023-0080HIGH8.8The Customer Reviews for WooCommerce WordPress plugin before 5.16.0 does not validate one of its shortcode attribute, wh...
CVE-2023-22362HIGH7.5SUSHIRO App for Android outputs sensitive information to the log file, which may result in an attacker obtaining a crede...
CVE-2023-22360HIGH7.8Use-after free vulnerability exists in Screen Creator Advance 2 Ver.0.1.1.4 Build01 and earlier due to lack of error han...
CVE-2023-22353HIGH7.8Out-of-bound read vulnerability exists in Screen Creator Advance 2 Ver.0.1.1.4 Build01 and earlier because the end of da...
CVE-2023-22350HIGH7.8Out-of-bound read vulnerability exists in Screen Creator Advance 2 Ver.0.1.1.4 Build01 and earlier because the end of da...
CVE-2023-22349HIGH7.8Out-of-bound read vulnerability exists in Screen Creator Advance 2 Ver.0.1.1.4 Build01 and earlier because the end of da...
CVE-2023-22347HIGH7.8Out-of-bound read vulnerability exists in Screen Creator Advance 2 Ver.0.1.1.4 Build01 and earlier because the end of da...
CVE-2023-22346HIGH7.8Out-of-bound read vulnerability exists in Screen Creator Advance 2 Ver.0.1.1.4 Build01 and earlier because the end of da...
CVE-2023-22345HIGH7.8Out-of-bound write vulnerability exists in Screen Creator Advance 2 Ver.0.1.1.4 Build01 and earlier due to lack of error...
CVE-2023-0793HIGH8.8Weak Password Requirements in GitHub repository thorsten/phpmyfaq prior to 3.1.11.
CVE-2023-0790HIGH8.8Uncaught Exception in GitHub repository thorsten/phpmyfaq prior to 3.1.11.

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now