2023 CVE Vulnerabilities
31,397 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-0063 | MEDIUM | 5.4 | 0.5% | Mar 6, 2023 | The WordPress Shortcodes WordPress plugin through 1.6.36 does not validate and escape some of its shortcode attributes b... |
| CVE-2023-1189 | MEDIUM | 5.5 | 0.4% | Mar 6, 2023 | A vulnerability was found in WiseCleaner Wise Folder Hider 4.4.3.202. It has been declared as problematic. Affected by t... |
| CVE-2023-1188 | MEDIUM | 5.5 | 0.4% | Mar 6, 2023 | A vulnerability was found in FabulaTech Webcam for Remote Desktop 2.8.42. It has been classified as problematic. Affecte... |
| CVE-2023-1187 | MEDIUM | 5.5 | 0.4% | Mar 6, 2023 | A vulnerability was found in FabulaTech Webcam for Remote Desktop 2.8.42 and classified as problematic. This issue affec... |
| CVE-2023-1186 | MEDIUM | 5.5 | 0.4% | Mar 6, 2023 | A vulnerability has been found in FabulaTech Webcam for Remote Desktop 2.8.42 and classified as problematic. This vulner... |
| CVE-2023-22858 | MEDIUM | 5.3 | 0.4% | Mar 6, 2023 | An Improper Access Control vulnerability in BlogEngine.NET 3.3.8.0, allows unauthenticated visitors to access the files ... |
| CVE-2023-22857 | MEDIUM | 5.4 | 0.4% | Mar 6, 2023 | A stored Cross-site Scripting (XSS) vulnerability in BlogEngine.NET 3.3.8.0, allows injection of arbitrary JavaScript in... |
| CVE-2023-22856 | MEDIUM | 5.4 | 0.4% | Mar 6, 2023 | A stored Cross-site Scripting (XSS) vulnerability in BlogEngine.NET 3.3.8.0, allows injection of arbitrary JavaScript in... |
| CVE-2023-26108 | MEDIUM | 5.3 | 0.7% | Mar 6, 2023 | Versions of the package @nestjs/core before 9.0.5 are vulnerable to Information Exposure via the StreamableFile pipe. Ex... |
| CVE-2023-25077 | MEDIUM | 5.4 | 0.6% | Mar 6, 2023 | Cross-site scripting vulnerability in Authentication Key Settings of EC-CUBE 4.0.0 to 4.0.6-p2, EC-CUBE 4.1.0 to 4.1.2-p... |
| CVE-2023-22838 | MEDIUM | 5.4 | 0.5% | Mar 6, 2023 | Cross-site scripting vulnerability in Product List Screen and Product Detail Screen of EC-CUBE 4.0.0 to 4.0.6-p2, EC-CUB... |
| CVE-2023-22438 | MEDIUM | 5.4 | 0.7% | Mar 6, 2023 | Cross-site scripting vulnerability in Contents Management of EC-CUBE 4 series (EC-CUBE 4.0.0 to 4.0.6-p2, EC-CUBE 4.1.0 ... |
| CVE-2023-22432 | MEDIUM | 6.1 | 2.4% | Mar 6, 2023 | Open redirect vulnerability exists in web2py versions prior to 2.23.1. When using the tool, a web2py user may be redirec... |
| CVE-2023-27641 | MEDIUM | 6.1 | 1.1% | Mar 5, 2023 | The REPORT (after z but before a) parameter in wa.exe in L-Soft LISTSERV 16.5 before 17 allows an attacker to conduct XS... |
| CVE-2023-26510 | MEDIUM | 5.7 | 0.6% | Mar 5, 2023 | Ghost 5.35.0 allows authorization bypass: contributors can view draft posts of other users, which is arguably inconsiste... |
| CVE-2023-0734 | MEDIUM | 5.3 | 0.5% | Mar 5, 2023 | Improper Authorization in GitHub repository wallabag/wallabag prior to 2.5.4. |
| CVE-2023-1181 | MEDIUM | 5.4 | 0.4% | Mar 5, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository icret/easyimages2.0 prior to 2.6.7. |
| CVE-2023-1180 | MEDIUM | 6.1 | 0.6% | Mar 5, 2023 | A vulnerability has been found in SourceCodester Health Center Patient Record Management System 1.0 and classified as pr... |
| CVE-2023-1179 | MEDIUM | 5.4 | 0.6% | Mar 5, 2023 | A vulnerability, which was classified as problematic, was found in SourceCodester Computer Parts Sales and Inventory Sys... |
| CVE-2023-1175 | MEDIUM | 6.6 | 0.4% | Mar 4, 2023 | Incorrect Calculation of Buffer Size in GitHub repository vim/vim prior to 9.0.1378. |
| CVE-2023-26481 | MEDIUM | 6.5 | 0.3% | Mar 4, 2023 | authentik is an open-source Identity Provider. Due to an insufficient access check, a recovery flow link that is created... |
| CVE-2023-25819 | MEDIUM | 5.3 | 0.5% | Mar 4, 2023 | Discourse is an open source platform for community discussion. Tags that are normally private are showing in metadata. T... |
| CVE-2023-26487 | MEDIUM | 6.1 | 0.8% | Mar 4, 2023 | Vega is a visualization grammar, a declarative format for creating, saving, and sharing interactive visualization design... |
| CVE-2023-26486 | MEDIUM | 6.1 | 0.8% | Mar 4, 2023 | Vega is a visualization grammar, a declarative format for creating, saving, and sharing interactive visualization design... |
| CVE-2023-26491 | MEDIUM | 6.1 | 0.4% | Mar 3, 2023 | RSSHub is an open source and extensible RSS feed generator. When the URL parameters contain certain special characters, ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now