2023 CVE Vulnerabilities

31,397 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-47547MEDIUM6.1Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in WPFactory Products, Order & Customers Export for WooCommer...
CVE-2023-47546MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Walter Pinem OneClick Chat to Order plugin <= 1.0.4.2 ...
CVE-2023-47545MEDIUM5.4Auth. (editor+) Stored Cross-Site Scripting (XSS) vulnerability in Fatcat Apps Forms for Mailchimp by Optin Cat – Grow Y...
CVE-2023-47544MEDIUM6.1Unauth. Stored Cross-Site Scripting (XSS) vulnerability in Atarim Visual Website Collaboration, Feedback & Project Manag...
CVE-2023-47533MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in wpdevart Countdown and CountUp, WooCommerce Sales Time...
CVE-2023-47130CRITICAL9.8Yii is an open source PHP web framework. yiisoft/yii before version 1.1.29 are vulnerable to Remote Code Execution (RCE)...
CVE-2023-46132MEDIUM6.5Hyperledger Fabric is an open source permissioned distributed ledger framework. Combining two molecules to one another, ...
CVE-2023-36437HIGH8.8Azure DevOps Server Remote Code Execution Vulnerability
CVE-2023-36049CRITICAL9.8.NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability
CVE-2023-36007MEDIUM4.1Microsoft Send Customer Voice survey from Dynamics 365 Spoofing Vulnerability
CVE-2023-34060CRITICAL9.8VMware Cloud Director Appliance contains an authentication bypass vulnerability in case VMware Cloud Director Appliance ...
CVE-2023-47646MEDIUM4.8Auth. (Shop Manager+) Stored Cross-Site Scripting (XSS) vulnerability in CedCommerce Recently viewed and most viewed pro...
CVE-2023-47554MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in DenK BV Actueel Financieel Nieuws – Denk Internet Solu...
CVE-2023-47550MEDIUM6.1Cross-Site Request Forgery (CSRF) vulnerability in RedNao Donations Made Easy – Smart Donations allows Stored XSS.This i...
CVE-2023-47384MEDIUM5.5MP4Box GPAC v2.3-DEV-rev617-g671976fcc-master was discovered to contain a memory leak in the function gf_isom_add_chapte...
CVE-2023-47127MEDIUM5.4TYPO3 is an open source PHP based web content management system released under the GNU GPL. In typo3 installations there...
CVE-2023-47126MEDIUM5.3TYPO3 is an open source PHP based web content management system released under the GNU GPL. In affected versions the log...
CVE-2023-47125MEDIUM6.1TYPO3 is an open source PHP based web content management system released under the GNU GPL. In affected versions DOM pro...
CVE-2023-26222MEDIUM5.4The Web Application component of TIBCO Software Inc.'s TIBCO EBX and TIBCO Product and Service Catalog powered by TIBCO ...
CVE-2023-47658MEDIUM4.8Auth. (ShopManager+) Stored Cross-Site Scripting (XSS) vulnerability in actpro Extra Product Options for WooCommerce plu...
CVE-2023-47656MEDIUM5.4Auth. (editor+) Stored Cross-Site Scripting (XSS) vulnerability in Marco Milesi ANAC XML Bandi di Gara plugin <= 7.5 ver...
CVE-2023-47654MEDIUM5.4Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in livescore.Bz BZScore – Live Score plugin <= 1.03...
CVE-2023-47653MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Abu Bakar TWB Woocommerce Reviews plugin <= 1.7.5 vers...
CVE-2023-40719MEDIUM5.5A use of hard-coded credentials vulnerability in Fortinet FortiAnalyzer and FortiManager 7.0.0 - 7.0.8, 7.2.0 - 7.2.3 an...
CVE-2023-40540MEDIUM4.4Non-Transparent Sharing of Microarchitectural Resources in some Intel(R) NUC BIOS firmware may allow a privileged user t...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now