2023 CVE Vulnerabilities
31,397 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-42659 | HIGH | 8.8 | 0.9% | Nov 7, 2023 | In WS_FTP Server versions prior to 8.7.6 and 8.8.4, an unrestricted file upload flaw has been identified. An authentic... |
| CVE-2023-41425 | MEDIUM | 6.1 | 54.3% | Nov 7, 2023 | Cross Site Scripting vulnerability in Wonder CMS v.3.2.0 thru v.3.4.2 allows a remote attacker to execute arbitrary code... |
| CVE-2023-3889 | HIGH | 7.8 | 0.2% | Nov 7, 2023 | A local non-privileged user can make improper GPU memory processing operations. If the operations are carefully prepared... |
| CVE-2023-36527 | HIGH | 8.8 | 0.5% | Nov 7, 2023 | Improper Neutralization of Formula Elements in a CSV File vulnerability in BestWebSoft Post to CSV by BestWebSoft.This i... |
| CVE-2023-25983 | HIGH | 8.8 | 1.1% | Nov 7, 2023 | Improper Neutralization of Formula Elements in a CSV File vulnerability in WPOmnia KB Support.This issue affects KB Supp... |
| CVE-2023-23796 | CRITICAL | 9.8 | 0.5% | Nov 7, 2023 | Improper Neutralization of Formula Elements in a CSV File vulnerability in Muneeb Form Builder | Create Responsive Conta... |
| CVE-2023-23678 | HIGH | 7.2 | 0.6% | Nov 7, 2023 | Improper Neutralization of Formula Elements in a CSV File vulnerability in WPEkaClub WP Cookie Consent ( for GDPR, CCPA ... |
| CVE-2023-22719 | CRITICAL | 9.8 | 0.6% | Nov 7, 2023 | Improper Neutralization of Formula Elements in a CSV File vulnerability in GiveWP.This issue affects GiveWP: from n/a th... |
| CVE-2023-47456 | CRITICAL | 9.1 | 0.8% | Nov 7, 2023 | Tenda AX1806 V1.0.0.1 contains a stack overflow vulnerability in function sub_455D4, called by function fromSetWirelessR... |
| CVE-2023-47455 | CRITICAL | 9.1 | 0.8% | Nov 7, 2023 | Tenda AX1806 V1.0.0.1 contains a heap overflow vulnerability in setSchedWifi function, in which the src and v12 are dire... |
| CVE-2023-33481 | CRITICAL | 9.8 | 0.7% | Nov 7, 2023 | RemoteClinic 2.0 is vulnerable to a time-based blind SQL injection attack in the 'start' GET parameter of patients/index... |
| CVE-2023-33480 | HIGH | 8.8 | 1.9% | Nov 7, 2023 | RemoteClinic 2.0 contains a critical vulnerability chain that can be exploited by a remote attacker with low-privileged ... |
| CVE-2023-33479 | CRITICAL | 9.8 | 0.7% | Nov 7, 2023 | RemoteClinic version 2.0 contains a SQL injection vulnerability in the /staff/edit.php file. |
| CVE-2023-33478 | CRITICAL | 9.8 | 0.7% | Nov 7, 2023 | RemoteClinic 2.0 has a SQL injection vulnerability in the ID parameter of /medicines/stocks.php. |
| CVE-2023-5709 | MEDIUM | 6.5 | 0.9% | Nov 7, 2023 | The WD WidgetTwitter plugin for WordPress is vulnerable to SQL Injection via the plugin's shortcode in versions up to, a... |
| CVE-2023-5703 | MEDIUM | 5.4 | 0.6% | Nov 7, 2023 | The Gift Up Gift Cards for WordPress and WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting v... |
| CVE-2023-5669 | MEDIUM | 5.4 | 0.6% | Nov 7, 2023 | The Featured Image Caption plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode ... |
| CVE-2023-5661 | MEDIUM | 5.4 | 0.5% | Nov 7, 2023 | The Social Feed plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'socialfeed' shortcod... |
| CVE-2023-5660 | MEDIUM | 5.4 | 0.7% | Nov 7, 2023 | The SendPress Newsletters plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode(s... |
| CVE-2023-5659 | MEDIUM | 5.4 | 0.5% | Nov 7, 2023 | The Interact: Embed A Quiz On Your Site plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin... |
| CVE-2023-5577 | MEDIUM | 5.4 | 0.5% | Nov 7, 2023 | The Bitly's plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'wpbitly' shortcode in al... |
| CVE-2023-5567 | MEDIUM | 5.4 | 0.4% | Nov 7, 2023 | The QR Code Tag plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'qrcodetag' shortcode in versions ... |
| CVE-2023-4888 | MEDIUM | 5.4 | 0.6% | Nov 7, 2023 | The Simple Like Page Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'sfp-page-plugin' shor... |
| CVE-2023-4842 | MEDIUM | 5.4 | 0.6% | Nov 7, 2023 | The Social Sharing Plugin - Social Warfare plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'social... |
| CVE-2023-0436 | HIGH | 7.5 | 0.6% | Nov 7, 2023 | The affected versions of MongoDB Atlas Kubernetes Operator may print sensitive information like GCP service account keys... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now