2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-25486 | MEDIUM | 4.3 | 0.5% | Dec 9, 2024 | Missing Authorization vulnerability in Migrate Clone allows Exploiting Incorrectly Configured Access Control Security Le... |
| CVE-2023-25469 | MEDIUM | 5.4 | 0.5% | Dec 9, 2024 | Missing Authorization vulnerability in Magazine3 Easy Table of Contents allows Exploiting Incorrectly Configured Access ... |
| CVE-2023-25455 | MEDIUM | 5.3 | 0.7% | Dec 9, 2024 | Missing Authorization vulnerability in miniOrange WordPress Social Login and Register (Discord, Google, Twitter, LinkedI... |
| CVE-2023-25454 | MEDIUM | 6.5 | 0.6% | Dec 9, 2024 | Missing Authorization vulnerability in Nate Reist Protected Posts Logout Button allows Exploiting Incorrectly Configured... |
| CVE-2023-25067 | MEDIUM | 4.3 | 0.5% | Dec 9, 2024 | Missing Authorization vulnerability in Noah Hearle, Design Extreme We’re Open! allows Exploiting Incorrectly Configured ... |
| CVE-2023-25060 | MEDIUM | 5.3 | 0.6% | Dec 9, 2024 | Missing Authorization vulnerability in WP OnlineSupport, Essential Plugin Album and Image Gallery plus Lightbox allows E... |
| CVE-2023-25048 | MEDIUM | 5.3 | 0.6% | Dec 9, 2024 | Missing Authorization vulnerability in Fantastic Plugins Fantastic Content Protector Free allows Exploiting Incorrectly ... |
| CVE-2023-25037 | MEDIUM | 4.3 | 0.5% | Dec 9, 2024 | Missing Authorization vulnerability in CodePeople Booking Calendar Contact Form allows Exploiting Incorrectly Configured... |
| CVE-2023-25035 | MEDIUM | 6.5 | 0.7% | Dec 9, 2024 | Missing Authorization vulnerability in Fullworks Quick Contact Form allows Exploiting Incorrectly Configured Access Con... |
| CVE-2023-25026 | MEDIUM | 4.3 | 0.5% | Dec 9, 2024 | Missing Authorization vulnerability in PayPal PayPal Brasil para WooCommerce allows Exploiting Incorrectly Configured Ac... |
| CVE-2023-23986 | MEDIUM | 5.4 | 0.5% | Dec 9, 2024 | Missing Authorization vulnerability in Noah Hearle, Design Extreme Reviews and Rating – Google My Business allows Exploi... |
| CVE-2023-23975 | MEDIUM | 5.3 | 0.6% | Dec 9, 2024 | Missing Authorization vulnerability in Fullworks Quick Event Manager allows Exploiting Incorrectly Configured Access Con... |
| CVE-2023-23893 | MEDIUM | 5.3 | 0.5% | Dec 9, 2024 | Missing Authorization vulnerability in Igor Benic Simple Giveaways allows Exploiting Incorrectly Configured Access Contr... |
| CVE-2023-23887 | MEDIUM | 5.3 | 0.6% | Dec 9, 2024 | Missing Authorization vulnerability in Shaon Easy Google Analytics for WordPress allows Exploiting Incorrectly Configure... |
| CVE-2023-23886 | MEDIUM | 5.4 | 0.6% | Dec 9, 2024 | Missing Authorization vulnerability in mg12 WP-RecentComments allows Exploiting Incorrectly Configured Access Control Se... |
| CVE-2023-23868 | MEDIUM | 5.4 | 0.6% | Dec 9, 2024 | Missing Authorization vulnerability in WPFactory Cost of Goods for WooCommerce allows Exploiting Incorrectly Configured ... |
| CVE-2023-23823 | MEDIUM | 4.3 | 0.4% | Dec 9, 2024 | Missing Authorization vulnerability in Clever Widgets Enhanced Text Widget allows Exploiting Incorrectly Configured Acce... |
| CVE-2023-23726 | MEDIUM | 5.4 | 0.3% | Dec 9, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Tickera.com Tickera allows Cross Site Request Forgery.This issue affe... |
| CVE-2023-23725 | MEDIUM | 4.3 | 0.5% | Dec 9, 2024 | Missing Authorization vulnerability in Chris Baldelomar Shortcodes allows Exploiting Incorrectly Configured Access Contr... |
| CVE-2023-23716 | MEDIUM | 4.3 | 0.5% | Dec 9, 2024 | Missing Authorization vulnerability in Zendesk Zendesk Support for WordPress allows Exploiting Incorrectly Configured Ac... |
| CVE-2023-22708 | MEDIUM | 4.3 | 0.6% | Dec 9, 2024 | Missing Authorization vulnerability in Karim Salman Kraken.io Image Optimizer allows Exploiting Incorrectly Configured A... |
| CVE-2023-6978 | MEDIUM | 6.1 | 0.3% | Dec 4, 2024 | The WP Job Manager – Company Profiles plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'comp... |
| CVE-2023-52944 | MEDIUM | 4.3 | 0.4% | Dec 4, 2024 | Incorrect authorization vulnerability in ActionRule webapi component in Synology Surveillance Station before 9.2.0-11289... |
| CVE-2023-52943 | MEDIUM | 4.3 | 0.4% | Dec 4, 2024 | Incorrect authorization vulnerability in Alert.Setting webapi component in Synology Surveillance Station before 9.2.0-11... |
| CVE-2023-2142 | MEDIUM | 6.1 | 0.4% | Nov 26, 2024 | In Nunjucks versions prior to version 3.2.4, it was possible to bypass the restrictions which are provided by the autoe... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now