2023 CVE Vulnerabilities

31,267 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-0369MEDIUM5.4The GoToWP WordPress plugin through 5.1.1 does not validate and escape some of its shortcode attributes before outputtin...
CVE-2023-0365MEDIUM5.4The React Webcam WordPress plugin through 1.2.0 does not validate and escape some of its shortcode attributes before out...
CVE-2023-0364MEDIUM5.4The real.Kit WordPress plugin before 5.1.1 does not validate and escape some of its shortcode attributes before outputti...
CVE-2023-0273MEDIUM5.4The Custom Content Shortcode WordPress plugin through 4.0.2 does not validate and escape some of its shortcode attribute...
CVE-2023-0175MEDIUM5.4The Responsive Clients Logo Gallery Plugin for WordPress plugin through 1.1.9 does not validate and escape some of its s...
CVE-2023-0167MEDIUM5.4The GetResponse for WordPress plugin through 5.5.31 does not validate and escape some of its shortcode attributes before...
CVE-2023-0145MEDIUM5.4The Saan World Clock WordPress plugin through 1.8 does not validate and escape some of its shortcode attributes before o...
CVE-2023-28429MEDIUM6.1Pimcore is an open source data and experience management platform. Versions prior to 10.5.19 have an unsecured tooltip f...
CVE-2023-1515MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/pimcore prior to 10.5.19.
CVE-2023-0320MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Izmir Katip Celebi...
CVE-2023-23718MEDIUM4.8Auth. (admin+) Cross-Site Scripting (XSS) vulnerability in Esstat17 Page Loading Effects plugin <= 2.0.0 versions.
CVE-2023-22682MEDIUM6.1Reflected Cross-Site Scripting (XSS) vulnerability in Manuel Masia | Pixedelic.Com Camera slideshow plugin <= 1.4.0.1 ve...
CVE-2023-22680MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Altanic No API Amazon Affiliate plugin <= 4.2.2 versio...
CVE-2023-22679MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Nicolas Lemoine WP Better Emails plugin <= 0.4 version...
CVE-2023-25795MEDIUM4.8Auth. (admin+) Cross-Site Scripting (XSS) vulnerability in WP-master.Ir Feed Changer & Remover plugin <= 0.2 versions.
CVE-2023-25794MEDIUM4.8Auth. (admin+) Cross-Site Scripting (XSS) vulnerability in Mighty Digital Nooz plugin <= 1.6.0 versions.
CVE-2023-25064MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Matteo Candura WP htpasswd plugin <= 1.7 versions.
CVE-2023-24381MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in NsThemes Advanced Social Pixel plugin <= 2.1.1 version...
CVE-2023-22681MEDIUM6.5Cross-Site Request Forgery (CSRF) vulnerability in Aarvanshinfotech Online Exam Software: eExamhall plugin <= 4.0 versio...
CVE-2023-25782MEDIUM4.8Auth. (admin+) vulnerability in Second2none Service Area Postcode Checker plugin <= 2.0.8 versions.
CVE-2023-1507MEDIUM6.1A vulnerability has been found in SourceCodester E-Commerce System 1.0 and classified as problematic. Affected by this v...
CVE-2023-1248MEDIUM6.1Improper Input Validation vulnerability in OTRS AG OTRS (Ticket Actions modules), OTRS AG ((OTRS)) Community Edition (Ti...
CVE-2023-1500MEDIUM6.1A vulnerability, which was classified as problematic, has been found in code-projects Simple Art Gallery 1.0. Affected b...
CVE-2023-1496MEDIUM5.4Cross-site Scripting (XSS) - Reflected in GitHub repository imgproxy/imgproxy prior to 3.14.0.
CVE-2023-1493MEDIUM5.5A vulnerability was found in Max Secure Anti Virus Plus 19.0.2.1. It has been rated as problematic. This issue affects t...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now