2023 CVE Vulnerabilities
31,249 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-1121 | MEDIUM | 4.8 | 0.4% | Apr 10, 2023 | The Simple Giveaways WordPress plugin before 2.45.1 does not sanitise and escape some of its settings, which could allow... |
| CVE-2023-1120 | MEDIUM | 4.8 | 0.4% | Apr 10, 2023 | The Simple Giveaways WordPress plugin before 2.45.1 does not sanitise and escape some of its settings, which could allow... |
| CVE-2023-0983 | MEDIUM | 6.1 | 0.5% | Apr 10, 2023 | The stylish-cost-calculator-premium WordPress plugin before 7.9.0 does not sanitise and escape a parameter before output... |
| CVE-2023-0893 | MEDIUM | 4.8 | 0.4% | Apr 10, 2023 | The Time Sheets WordPress plugin before 1.29.3 does not sanitise and escape some of its settings, which could allow high... |
| CVE-2023-0874 | MEDIUM | 4.8 | 0.4% | Apr 10, 2023 | The Klaviyo WordPress plugin before 3.0.10 does not sanitize and escape some of its settings, which could allow high-pri... |
| CVE-2023-0605 | MEDIUM | 4.8 | 0.5% | Apr 10, 2023 | The Auto Rename Media On Upload WordPress plugin before 1.1.0 does not sanitise and escape some of its settings, which c... |
| CVE-2023-0546 | MEDIUM | 5.4 | 0.5% | Apr 10, 2023 | The Contact Form Plugin WordPress plugin before 4.3.25 does not properly sanitize and escape the srcdoc attribute in ifr... |
| CVE-2023-0423 | MEDIUM | 4.8 | 0.4% | Apr 10, 2023 | The WordPress Amazon S3 Plugin WordPress plugin before 1.6 does not sanitise and escape a parameter before outputting it... |
| CVE-2023-0422 | MEDIUM | 4.8 | 0.5% | Apr 10, 2023 | The Article Directory WordPress plugin through 1.3 does not properly sanitize the `publish_terms_text` setting before di... |
| CVE-2023-0363 | MEDIUM | 5.4 | 0.4% | Apr 10, 2023 | The Scheduled Announcements Widget WordPress plugin before 1.0 does not validate and escape some of its shortcode attrib... |
| CVE-2023-0157 | MEDIUM | 4.8 | 32.5% | Apr 10, 2023 | The All-In-One Security (AIOS) WordPress plugin before 5.1.5 does not escape the content of log files before outputting ... |
| CVE-2023-0156 | MEDIUM | 4.9 | 19.9% | Apr 10, 2023 | The All-In-One Security (AIOS) WordPress plugin before 5.1.5 does not limit what log files to display in it's settings p... |
| CVE-2023-26788 | MEDIUM | 6.1 | 0.4% | Apr 10, 2023 | Veritas Appliance v4.1.0.1 is affected by Host Header Injection attacks. HTTP host header can be manipulated and cause t... |
| CVE-2023-26120 | MEDIUM | 6.1 | 0.5% | Apr 10, 2023 | This affects all versions of the package com.xuxueli:xxl-job. HTML uploaded payload executed successfully through /xxl-j... |
| CVE-2023-30456 | MEDIUM | 6.5 | 0.5% | Apr 10, 2023 | An issue was discovered in arch/x86/kvm/vmx/nested.c in the Linux kernel before 6.2.8. nVMX on x86_64 lacks consistency ... |
| CVE-2023-30450 | MEDIUM | 4.3 | 0.6% | Apr 8, 2023 | rpk in Redpanda before 23.1.2 mishandles the redpanda.rpc_server_tls field, leading to (for example) situations in which... |
| CVE-2023-1961 | MEDIUM | 6.1 | 0.5% | Apr 8, 2023 | A vulnerability was found in SourceCodester Online Computer and Laptop Store 1.0. It has been classified as problematic.... |
| CVE-2023-1948 | MEDIUM | 6.1 | 0.6% | Apr 8, 2023 | A vulnerability, which was classified as problematic, has been found in PHPGurukul BP Monitoring Management System 1.0. ... |
| CVE-2023-24626 | MEDIUM | 6.5 | 0.5% | Apr 8, 2023 | socket.c in GNU Screen through 4.9.0, when installed setuid or setgid (the default on platforms such as Arch Linux and F... |
| CVE-2023-1946 | MEDIUM | 6.1 | 0.4% | Apr 7, 2023 | A vulnerability was found in SourceCodester Survey Application System 1.0 and classified as problematic. This issue affe... |
| CVE-2023-1801 | MEDIUM | 6.5 | 0.8% | Apr 7, 2023 | The SMB protocol decoder in tcpdump version 4.99.3 can perform an out-of-bounds write when decoding a crafted network pa... |
| CVE-2023-23762 | MEDIUM | 5.3 | 0.6% | Apr 7, 2023 | An incorrect comparison vulnerability was identified in GitHub Enterprise Server that allowed commit smuggling by displa... |
| CVE-2023-23761 | MEDIUM | 5.3 | 0.5% | Apr 7, 2023 | An improper authentication vulnerability was identified in GitHub Enterprise Server that allowed an unauthorized actor t... |
| CVE-2023-1909 | MEDIUM | 6.5 | 0.6% | Apr 7, 2023 | A vulnerability, which was classified as critical, was found in PHPGurukul BP Monitoring Management System 1.0. Affected... |
| CVE-2023-29388 | MEDIUM | 6.1 | 0.4% | Apr 7, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in impleCode Product Catalog Simple plugin <= 1.6.17 versions... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now