2023 CVE Vulnerabilities
31,397 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-5975 | MEDIUM | 4.3 | 0.3% | Nov 7, 2023 | The ImageMapper plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.2.6... |
| CVE-2023-5743 | MEDIUM | 5.4 | 0.5% | Nov 7, 2023 | The Telephone Number Linker plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'telnumli... |
| CVE-2023-5658 | MEDIUM | 5.4 | 0.5% | Nov 7, 2023 | The WP MapIt plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'wp_mapit' shortcode in ... |
| CVE-2023-5532 | MEDIUM | 4.3 | 0.2% | Nov 7, 2023 | The ImageMapper plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.2.6... |
| CVE-2023-5507 | MEDIUM | 5.4 | 0.4% | Nov 7, 2023 | The ImageMapper plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'imagemap' shortcode in versions u... |
| CVE-2023-5506 | MEDIUM | 4.3 | 0.4% | Nov 7, 2023 | The ImageMapper plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the... |
| CVE-2023-46819 | MEDIUM | 5.3 | 1.8% | Nov 7, 2023 | Missing Authentication in Apache Software Foundation Apache OFBiz when using the Solr plugin. This issue affects Apache ... |
| CVE-2023-47510 | MEDIUM | 6.1 | 0.4% | Nov 7, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in WPSolutions-HQ WPDBSpringClean plugin <= 1.6 versions. |
| CVE-2023-46851 | MEDIUM | 4.9 | 1.6% | Nov 7, 2023 | Allura Discussion and Allura Forum importing does not restrict URL values specified in attachments. Project administrato... |
| CVE-2023-5076 | MEDIUM | 5.4 | 0.4% | Nov 7, 2023 | The Ziteboard Online Whiteboard plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'ziteboard' sh... |
| CVE-2023-46845 | HIGH | 7.2 | 1.6% | Nov 7, 2023 | EC-CUBE 3 series (3.0.0 to 3.0.18-p6) and 4 series (4.0.0 to 4.0.6-p3, 4.1.0 to 4.1.2-p2, and 4.2.0 to 4.2.2) contain an... |
| CVE-2023-43886 | HIGH | 7.1 | 0.6% | Nov 7, 2023 | A buffer overflow in the HTTP server component of Tenda RX9 Pro v22.03.02.20 might allow an authenticated attacker to ov... |
| CVE-2023-43885 | HIGH | 8.1 | 0.7% | Nov 7, 2023 | Missing error handling in the HTTP server component of Tenda RX9 Pro Firmware V22.03.02.20 allows authenticated attacker... |
| CVE-2023-42555 | MEDIUM | 5.5 | 0.2% | Nov 7, 2023 | Use of implicit intent for sensitive communication vulnerability in EasySetup prior to version 11.1.13 allows attackers ... |
| CVE-2023-42554 | MEDIUM | 6.8 | 0.3% | Nov 7, 2023 | Improper Authentication vulnerabiity in Samsung Pass prior to version 4.3.00.17 allows physical attackers to bypass auth... |
| CVE-2023-42553 | MEDIUM | 5.3 | 0.4% | Nov 7, 2023 | Improper authorization verification vulnerability in Samsung Email prior to version 6.1.90.4 allows attackers to read sa... |
| CVE-2023-42552 | LOW | 3.3 | 0.2% | Nov 7, 2023 | Implicit intent hijacking vulnerability in Firewall application prior to versions 12.1.00.24 in Android 11, 13.1.00.16 i... |
| CVE-2023-42551 | MEDIUM | 6.5 | 0.4% | Nov 7, 2023 | Use of implicit intent for sensitive communication vulnerability in startTncActivity in Samsung Account prior to version... |
| CVE-2023-42550 | MEDIUM | 6.5 | 0.4% | Nov 7, 2023 | Use of implicit intent for sensitive communication vulnerability in startSignIn in Samsung Account prior to version 14.5... |
| CVE-2023-42549 | MEDIUM | 6.5 | 0.4% | Nov 7, 2023 | Use of implicit intent for sensitive communication vulnerability in startNameValidationActivity in Samsung Account prior... |
| CVE-2023-42548 | MEDIUM | 6.5 | 0.4% | Nov 7, 2023 | Use of implicit intent for sensitive communication vulnerability in startMandatoryCheckActivity in Samsung Account prior... |
| CVE-2023-42547 | MEDIUM | 6.5 | 0.4% | Nov 7, 2023 | Use of implicit intent for sensitive communication vulnerability in startEmailValidationActivity in Samsung Account prio... |
| CVE-2023-42546 | MEDIUM | 6.5 | 0.4% | Nov 7, 2023 | Use of implicit intent for sensitive communication vulnerability in startAgreeToDisclaimerActivity in Samsung Account pr... |
| CVE-2023-42545 | HIGH | 7.5 | 0.4% | Nov 7, 2023 | Use of implicit intent for sensitive communication vulnerability in Phone prior to versions 12.7.20.12 in Android 11, 13... |
| CVE-2023-42544 | MEDIUM | 5.5 | 0.2% | Nov 7, 2023 | Improper access control vulnerability in Quick Share prior to 13.5.52.0 allows local attacker to access local files. |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now