2023 CVE Vulnerabilities
31,397 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-40335 | MEDIUM | 6.1 | 0.2% | Nov 13, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Jeremy O'Connell Cleverwise Daily Quotes allows Stored XSS.This issue... |
| CVE-2023-47801 | MEDIUM | 4.7 | 0.4% | Nov 13, 2023 | An issue was discovered in Click Studios Passwordstate before 9811. Existing users (Security Administrators) could use t... |
| CVE-2023-5747 | HIGH | 8.8 | 0.6% | Nov 13, 2023 | Bashis, a Security Researcher at IPVM has found a flaw that allows for a remote code execution during the installation o... |
| CVE-2023-5741 | MEDIUM | 5.4 | 0.6% | Nov 13, 2023 | The POWR plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'powr-powr-pack' shortcode i... |
| CVE-2023-5037 | HIGH | 7.2 | 1.5% | Nov 13, 2023 | badmonkey, a Security Researcher has found a flaw that allows for a authenticated command injection on the camera. An at... |
| CVE-2023-4775 | MEDIUM | 5.4 | 0.6% | Nov 13, 2023 | The Advanced iFrame plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'advanced_iframe' shortcod... |
| CVE-2023-46201 | MEDIUM | 6.1 | 0.2% | Nov 13, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Jeff Sherk Auto Login New User After Registration allows Stored XSS.T... |
| CVE-2023-47652 | MEDIUM | 6.1 | 0.2% | Nov 13, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Lucian Apostol Auto Affiliate Links allows Stored XSS.This issue affe... |
| CVE-2023-47516 | MEDIUM | 6.1 | 0.2% | Nov 13, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Stark Digital Category Post List Widget allows Stored XSS.This issue ... |
| CVE-2023-46634 | MEDIUM | 6.1 | 0.2% | Nov 13, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in phoeniixx Custom My Account for Woocommerce allows Cross-Site Scripti... |
| CVE-2023-47163 | HIGH | 7.5 | 1.0% | Nov 13, 2023 | Remarshal prior to v0.17.1 expands YAML alias nodes unlimitedly, hence Remarshal is vulnerable to Billion Laughs Attack.... |
| CVE-2023-46207 | HIGH | 7.5 | 0.5% | Nov 13, 2023 | Server-Side Request Forgery (SSRF) vulnerability in StylemixThemes Motors – Car Dealer, Classifieds & Listing.This issue... |
| CVE-2023-41239 | MEDIUM | 6.5 | 0.4% | Nov 13, 2023 | Server-Side Request Forgery (SSRF) vulnerability in Blubrry PowerPress Podcasting plugin by Blubrry.This issue affects P... |
| CVE-2023-38515 | MEDIUM | 4.9 | 0.4% | Nov 13, 2023 | Server-Side Request Forgery (SSRF) vulnerability in Andy Moyle Church Admin.This issue affects Church Admin: from n/a th... |
| CVE-2023-37978 | MEDIUM | 4.9 | 0.4% | Nov 13, 2023 | Server-Side Request Forgery (SSRF) vulnerability in Dimitar Ivanov HTTP Headers.This issue affects HTTP Headers: from n/... |
| CVE-2023-35041 | HIGH | 8.8 | 0.3% | Nov 13, 2023 | Cross-Site Request Forgery (CSRF) vulnerability leading to Local File Inclusion (LF) in Webpushr Web Push Notifications ... |
| CVE-2023-34013 | HIGH | 7.5 | 0.4% | Nov 13, 2023 | Server-Side Request Forgery (SSRF) vulnerability in Poll Maker Team Poll Maker – Best WordPress Poll Plugin.This issue a... |
| CVE-2023-31219 | MEDIUM | 4.9 | 0.6% | Nov 13, 2023 | Server-Side Request Forgery (SSRF) vulnerability in WPChill Download Monitor.This issue affects Download Monitor: from n... |
| CVE-2023-23800 | MEDIUM | 6.5 | 0.5% | Nov 13, 2023 | Server-Side Request Forgery (SSRF) vulnerability in Vova Anokhin WP Shortcodes Plugin — Shortcodes Ultimate.This issue a... |
| CVE-2023-23684 | MEDIUM | 6.5 | 0.4% | Nov 13, 2023 | Server-Side Request Forgery (SSRF) vulnerability in WPGraphQL.This issue affects WPGraphQL: from n/a through 1.14.5. |
| CVE-2023-47669 | HIGH | 8.8 | 0.3% | Nov 13, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Cozmoslabs User Profile Builder – Beautiful User Registration Forms, ... |
| CVE-2023-38364 | MEDIUM | 6.1 | 0.5% | Nov 13, 2023 | IBM CICS TX Advanced 10.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary Java... |
| CVE-2023-38363 | MEDIUM | 4.3 | 0.6% | Nov 13, 2023 | IBM CICS TX Advanced 10.1 does not set the secure attribute on authorization tokens or session cookies. Attackers may b... |
| CVE-2023-34384 | HIGH | 8.8 | 0.3% | Nov 13, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Kebo Kebo Twitter Feed plugin <= 1.5.12 versions. |
| CVE-2023-34378 | HIGH | 8.8 | 0.3% | Nov 13, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in scriptburn.Com WP Hide Post plugin <= 2.0.10 versions. |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now