2023 CVE Vulnerabilities

31,397 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-0334MEDIUM6.1The ShortPixel Adaptive Images WordPress plugin before 3.6.3 does not sanitise and escape a parameter before outputting ...
CVE-2023-0230MEDIUM5.4The VK All in One Expansion Unit WordPress plugin before 9.86.0.0 does not validate and escape some of its block options...
CVE-2023-0168MEDIUM5.4The Olevmedia Shortcodes WordPress plugin through 1.1.9 does not validate and escape some of its shortcode attributes be...
CVE-2023-0043MEDIUM6.1The Custom Add User WordPress plugin through 2.0.2 does not sanitise and escape a parameter before outputting it back in...
CVE-2023-27264MEDIUM6.5A missing permissions check in Mattermost Playbooks in Mattermost allows an attacker to modify a playbook via the /plugi...
CVE-2023-27263MEDIUM6.5A missing permissions check in the /plugins/playbooks/api/v0/runs API in Mattermost allows an attacker to list and view ...
CVE-2023-26042MEDIUM6.1Part-DB is an open source inventory management system for your electronic components. User input was found not being pro...
CVE-2023-22860MEDIUM5.4IBM Cloud Pak for Business Automation 18.0.0, 18.0.1, 18.0.2, 19.0.1, 19.0.2, 19.0.3, 20.0.1, 20.0.2, 20.0.3, 21.0.1, 21...
CVE-2023-1068MEDIUM4.3The Download Read More Excerpt Link plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, ...
CVE-2023-1067MEDIUM5.4Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/pimcore prior to 10.5.18.
CVE-2023-1043MEDIUM4.3A vulnerability was found in MuYuCMS 2.2. It has been classified as problematic. Affected is an unknown function of the ...
CVE-2023-1042MEDIUM6.1A vulnerability has been found in SourceCodester Online Pet Shop We App 1.0 and classified as problematic. This vulnerab...
CVE-2023-1041MEDIUM6.1A vulnerability, which was classified as problematic, was found in SourceCodester Simple Responsive Tourism Website 1.0....
CVE-2023-1036MEDIUM6.1A vulnerability was found in SourceCodester Dental Clinic Appointment Reservation System 1.0. It has been declared as pr...
CVE-2023-26091MEDIUM6.1The frp_form_answers (aka Forms Export) extension before 3.1.2, and 4.x before 4.0.2, for TYPO3 allows XSS via saved ema...
CVE-2023-26545MEDIUM4.7In the Linux kernel before 6.1.13, there is a double free in net/mpls/af_mpls.c upon an allocation failure (for register...
CVE-2023-26038MEDIUM6.5ZoneMinder is a free, open source Closed-circuit television software application for Linux which supports IP, USB and An...
CVE-2023-25825MEDIUM6.1ZoneMinder is a free, open source Closed-circuit television software application for Linux which supports IP, USB and An...
CVE-2023-25816MEDIUM6.5Nextcloud is an Open Source private cloud software. Versions 25.0.0 and above, prior to 25.0.3, are subject to Uncontrol...
CVE-2023-1030MEDIUM6.1A vulnerability has been found in SourceCodester/code-projects Online Boat Reservation System 1.0 and classified as prob...
CVE-2023-1029MEDIUM4.3The WP Meta SEO plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 4.5.3...
CVE-2023-23205MEDIUM5.5An issue was discovered in lib60870 v2.3.2. There is a memory leak in lib60870/lib60870-C/examples/multi_client_server/m...
CVE-2023-0586MEDIUM5.4The All in One SEO Pack plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple parameters in ver...
CVE-2023-0585MEDIUM4.8The All in One SEO Pack plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple parameters in ver...
CVE-2023-1010MEDIUM5.5A vulnerability classified as critical was found in vox2png 1.0. Affected by this vulnerability is an unknown functional...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now