2023 CVE Vulnerabilities
31,397 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-0334 | MEDIUM | 6.1 | 0.9% | Feb 27, 2023 | The ShortPixel Adaptive Images WordPress plugin before 3.6.3 does not sanitise and escape a parameter before outputting ... |
| CVE-2023-0230 | MEDIUM | 5.4 | 0.6% | Feb 27, 2023 | The VK All in One Expansion Unit WordPress plugin before 9.86.0.0 does not validate and escape some of its block options... |
| CVE-2023-0168 | MEDIUM | 5.4 | 0.5% | Feb 27, 2023 | The Olevmedia Shortcodes WordPress plugin through 1.1.9 does not validate and escape some of its shortcode attributes be... |
| CVE-2023-0043 | MEDIUM | 6.1 | 0.5% | Feb 27, 2023 | The Custom Add User WordPress plugin through 2.0.2 does not sanitise and escape a parameter before outputting it back in... |
| CVE-2023-27264 | MEDIUM | 6.5 | 0.5% | Feb 27, 2023 | A missing permissions check in Mattermost Playbooks in Mattermost allows an attacker to modify a playbook via the /plugi... |
| CVE-2023-27263 | MEDIUM | 6.5 | 0.5% | Feb 27, 2023 | A missing permissions check in the /plugins/playbooks/api/v0/runs API in Mattermost allows an attacker to list and view ... |
| CVE-2023-26042 | MEDIUM | 6.1 | 0.5% | Feb 27, 2023 | Part-DB is an open source inventory management system for your electronic components. User input was found not being pro... |
| CVE-2023-22860 | MEDIUM | 5.4 | 0.4% | Feb 27, 2023 | IBM Cloud Pak for Business Automation 18.0.0, 18.0.1, 18.0.2, 19.0.1, 19.0.2, 19.0.3, 20.0.1, 20.0.2, 20.0.3, 21.0.1, 21... |
| CVE-2023-1068 | MEDIUM | 4.3 | 0.3% | Feb 27, 2023 | The Download Read More Excerpt Link plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, ... |
| CVE-2023-1067 | MEDIUM | 5.4 | 0.4% | Feb 27, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/pimcore prior to 10.5.18. |
| CVE-2023-1043 | MEDIUM | 4.3 | 0.7% | Feb 26, 2023 | A vulnerability was found in MuYuCMS 2.2. It has been classified as problematic. Affected is an unknown function of the ... |
| CVE-2023-1042 | MEDIUM | 6.1 | 0.6% | Feb 26, 2023 | A vulnerability has been found in SourceCodester Online Pet Shop We App 1.0 and classified as problematic. This vulnerab... |
| CVE-2023-1041 | MEDIUM | 6.1 | 0.5% | Feb 26, 2023 | A vulnerability, which was classified as problematic, was found in SourceCodester Simple Responsive Tourism Website 1.0.... |
| CVE-2023-1036 | MEDIUM | 6.1 | 0.8% | Feb 26, 2023 | A vulnerability was found in SourceCodester Dental Clinic Appointment Reservation System 1.0. It has been declared as pr... |
| CVE-2023-26091 | MEDIUM | 6.1 | 0.4% | Feb 26, 2023 | The frp_form_answers (aka Forms Export) extension before 3.1.2, and 4.x before 4.0.2, for TYPO3 allows XSS via saved ema... |
| CVE-2023-26545 | MEDIUM | 4.7 | 0.3% | Feb 25, 2023 | In the Linux kernel before 6.1.13, there is a double free in net/mpls/af_mpls.c upon an allocation failure (for register... |
| CVE-2023-26038 | MEDIUM | 6.5 | 0.5% | Feb 25, 2023 | ZoneMinder is a free, open source Closed-circuit television software application for Linux which supports IP, USB and An... |
| CVE-2023-25825 | MEDIUM | 6.1 | 0.7% | Feb 25, 2023 | ZoneMinder is a free, open source Closed-circuit television software application for Linux which supports IP, USB and An... |
| CVE-2023-25816 | MEDIUM | 6.5 | 1.4% | Feb 25, 2023 | Nextcloud is an Open Source private cloud software. Versions 25.0.0 and above, prior to 25.0.3, are subject to Uncontrol... |
| CVE-2023-1030 | MEDIUM | 6.1 | 0.7% | Feb 24, 2023 | A vulnerability has been found in SourceCodester/code-projects Online Boat Reservation System 1.0 and classified as prob... |
| CVE-2023-1029 | MEDIUM | 4.3 | 0.3% | Feb 24, 2023 | The WP Meta SEO plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 4.5.3... |
| CVE-2023-23205 | MEDIUM | 5.5 | 0.2% | Feb 24, 2023 | An issue was discovered in lib60870 v2.3.2. There is a memory leak in lib60870/lib60870-C/examples/multi_client_server/m... |
| CVE-2023-0586 | MEDIUM | 5.4 | 2.5% | Feb 24, 2023 | The All in One SEO Pack plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple parameters in ver... |
| CVE-2023-0585 | MEDIUM | 4.8 | 0.8% | Feb 24, 2023 | The All in One SEO Pack plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple parameters in ver... |
| CVE-2023-1010 | MEDIUM | 5.5 | 0.4% | Feb 24, 2023 | A vulnerability classified as critical was found in vox2png 1.0. Affected by this vulnerability is an unknown functional... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now