2023 CVE Vulnerabilities
31,399 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-45646 | MEDIUM | 5.4 | 0.4% | Oct 25, 2023 | Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Henryholtgeerts PDF Block plugin <= 1.1.0 versio... |
| CVE-2023-45644 | MEDIUM | 4.8 | 0.4% | Oct 25, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Anurag Deshmukh CPT Shortcode Generator plugin <= 1.0 ... |
| CVE-2023-45640 | MEDIUM | 5.4 | 0.4% | Oct 25, 2023 | Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in TechnoWich WP ULike – Most Advanced WordPress Ma... |
| CVE-2023-45637 | MEDIUM | 6.1 | 0.4% | Oct 25, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in EventPrime EventPrime – Events Calendar, Bookings and Tick... |
| CVE-2023-45634 | MEDIUM | 6.1 | 0.4% | Oct 25, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Biztechc Copy or Move Comments plugin <= 5.0.4 versions. |
| CVE-2023-45555 | HIGH | 7.8 | 0.9% | Oct 25, 2023 | File Upload vulnerability in zzzCMS v.2.1.9 allows a remote attacker to execute arbitrary code via a crafted file to the... |
| CVE-2023-45554 | CRITICAL | 9.8 | 1.5% | Oct 25, 2023 | File Upload vulnerability in zzzCMS v.2.1.9 allows a remote attacker to execute arbitrary code via modification of the i... |
| CVE-2023-45321 | HIGH | 8.8 | 0.1% | Oct 25, 2023 | The Android Client application, when enrolled with the define method 1 (the user manually inserts the server ip address... |
| CVE-2023-45220 | HIGH | 8.8 | 0.4% | Oct 25, 2023 | The Android Client application, when enrolled with the define method 1(the user manually inserts the server ip address),... |
| CVE-2023-44794 | CRITICAL | 9.8 | 1.0% | Oct 25, 2023 | An issue in Dromara SaToken version 1.36.0 and before allows a remote attacker to escalate privileges via a crafted payl... |
| CVE-2023-44769 | MEDIUM | 5.4 | 0.7% | Oct 25, 2023 | A Cross-Site Scripting (XSS) vulnerability in Zenario CMS v.9.4.59197 allows a local attacker to execute arbitrary code ... |
| CVE-2023-44767 | MEDIUM | 4.8 | 0.5% | Oct 25, 2023 | A File upload vulnerability in RiteCMS 3.0 allows a local attacker to upload a SVG file with XSS content. |
| CVE-2023-43961 | HIGH | 8.8 | 0.8% | Oct 25, 2023 | An issue in Dromara SaToken version 1.3.50RC and before when using Spring dynamic controllers, a specially crafted reque... |
| CVE-2023-43795 | CRITICAL | 9.8 | 67.7% | Oct 25, 2023 | GeoServer is an open source software server written in Java that allows users to share and edit geospatial data. The OGC... |
| CVE-2023-43510 | MEDIUM | 6.3 | 0.6% | Oct 25, 2023 | A vulnerability in the ClearPass Policy Manager web-based management interface allows remote authenticated users to run ... |
| CVE-2023-43509 | MEDIUM | 5.8 | 0.6% | Oct 25, 2023 | A vulnerability in the web-based management interface of ClearPass Policy Manager could allow an unauthenticated remote ... |
| CVE-2023-43508 | MEDIUM | 6.5 | 0.4% | Oct 25, 2023 | Vulnerabilities in the web-based management interface of ClearPass Policy Manager allow an attacker with read-only privi... |
| CVE-2023-43507 | HIGH | 8.8 | 0.8% | Oct 25, 2023 | A vulnerability in the web-based management interface of ClearPass Policy Manager could allow an authenticated remote at... |
| CVE-2023-43506 | HIGH | 7.8 | 0.2% | Oct 25, 2023 | A vulnerability in the ClearPass OnGuard Linux agent could allow malicious users on a Linux instance to elevate their us... |
| CVE-2023-43488 | HIGH | 7.8 | 0.2% | Oct 25, 2023 | The vulnerability allows a low privileged (untrusted) application to modify a critical system property that should be d... |
| CVE-2023-43360 | MEDIUM | 5.4 | 0.5% | Oct 25, 2023 | Cross Site Scripting vulnerability in CMSmadesimple v.2.2.18 allows a local attacker to execute arbitrary code via a cra... |
| CVE-2023-43281 | MEDIUM | 6.5 | 1.0% | Oct 25, 2023 | Double Free vulnerability in Nothings Stb Image.h v.2.28 allows a remote attacker to cause a denial of service via a cra... |
| CVE-2023-42494 | CRITICAL | 9.8 | 0.7% | Oct 25, 2023 | EisBaer Scada - CWE-749: Exposed Dangerous Method or Function |
| CVE-2023-42493 | CRITICAL | 9.8 | 0.4% | Oct 25, 2023 | EisBaer Scada - CWE-256: Plaintext Storage of a Password |
| CVE-2023-42492 | CRITICAL | 9.8 | 0.4% | Oct 25, 2023 | EisBaer Scada - CWE-321: Use of Hard-coded Cryptographic Key |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now