2023 CVE Vulnerabilities
31,250 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-1884 | MEDIUM | 6.1 | 0.4% | Apr 5, 2023 | Cross-site Scripting (XSS) - Generic in GitHub repository thorsten/phpmyfaq prior to 3.1.12. |
| CVE-2023-1883 | MEDIUM | 5.4 | 0.5% | Apr 5, 2023 | Improper Access Control in GitHub repository thorsten/phpmyfaq prior to 3.1.12. |
| CVE-2023-1882 | MEDIUM | 5.4 | 0.5% | Apr 5, 2023 | Cross-site Scripting (XSS) - DOM in GitHub repository thorsten/phpmyfaq prior to 3.1.12. |
| CVE-2023-1881 | MEDIUM | 5.4 | 0.5% | Apr 5, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository microweber/microweber prior to 1.3.3. |
| CVE-2023-1880 | MEDIUM | 6.1 | 1.6% | Apr 5, 2023 | Cross-site Scripting (XSS) - Reflected in GitHub repository thorsten/phpmyfaq prior to 3.1.12. |
| CVE-2023-1879 | MEDIUM | 5.4 | 0.5% | Apr 5, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.1.12. |
| CVE-2023-1878 | MEDIUM | 5.4 | 0.5% | Apr 5, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.1.12. |
| CVE-2023-29389 | MEDIUM | 6.8 | 0.7% | Apr 5, 2023 | Toyota RAV4 2021 vehicles automatically trust messages from other ECUs on a CAN bus, which allows physically proximate a... |
| CVE-2023-28633 | MEDIUM | 5.4 | 0.5% | Apr 5, 2023 | GLPI is a free asset and IT management software package. Starting in version 0.84 and prior to versions 9.5.13 and 10.0.... |
| CVE-2023-20068 | MEDIUM | 6.1 | 0.5% | Apr 5, 2023 | A vulnerability in the web-based management interface of Cisco Prime Infrastructure Software could allow an unauthentica... |
| CVE-2023-20030 | MEDIUM | 6 | 0.8% | Apr 5, 2023 | A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticat... |
| CVE-2023-20023 | MEDIUM | 6.7 | 0.5% | Apr 5, 2023 | Multiple vulnerabilities in specific Cisco Identity Services Engine (ISE) CLI commands could allow an authenticated, loc... |
| CVE-2023-20022 | MEDIUM | 6.7 | 0.5% | Apr 5, 2023 | Multiple vulnerabilities in specific Cisco Identity Services Engine (ISE) CLI commands could allow an authenticated, loc... |
| CVE-2023-1758 | MEDIUM | 5.4 | 0.5% | Apr 5, 2023 | Failure to Sanitize Special Elements into a Different Plane (Special Element Injection) in GitHub repository thorsten/ph... |
| CVE-2023-1757 | MEDIUM | 5.4 | 0.5% | Apr 5, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.1.12. |
| CVE-2023-1756 | MEDIUM | 5.4 | 0.5% | Apr 5, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.1.12. |
| CVE-2023-20021 | MEDIUM | 6.7 | 0.5% | Apr 5, 2023 | Multiple vulnerabilities in specific Cisco Identity Services Engine (ISE) CLI commands could allow an authenticated, loc... |
| CVE-2023-1871 | MEDIUM | 4.3 | 0.3% | Apr 5, 2023 | The YourChannel plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.2.4... |
| CVE-2023-1870 | MEDIUM | 4.3 | 0.3% | Apr 5, 2023 | The YourChannel plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.2.4... |
| CVE-2023-1869 | MEDIUM | 4.8 | 0.5% | Apr 5, 2023 | The YourChannel plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in versions up to,... |
| CVE-2023-1868 | MEDIUM | 5.3 | 0.6% | Apr 5, 2023 | The YourChannel plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check when c... |
| CVE-2023-1867 | MEDIUM | 4.3 | 0.3% | Apr 5, 2023 | The YourChannel plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.2.4... |
| CVE-2023-1866 | MEDIUM | 4.3 | 0.3% | Apr 5, 2023 | The YourChannel plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.2.4... |
| CVE-2023-1865 | MEDIUM | 6.5 | 0.7% | Apr 5, 2023 | The YourChannel plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check when ... |
| CVE-2023-26789 | MEDIUM | 6.1 | 0.5% | Apr 5, 2023 | Veritas NetBackUp OpsCenter Version 9.1.0.1 is vulnerable to Reflected Cross-site scripting (XSS). The Web App fails to ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now