2023 CVE Vulnerabilities
31,401 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-5631 | MEDIUM | 5.4 | 70.9% | Oct 18, 2023 | Roundcube before 1.4.15, 1.5.x before 1.5.5, and 1.6.x before 1.6.4 allows stored XSS via an HTML e-mail message with a ... |
| CVE-2023-45632 | MEDIUM | 6.1 | 0.3% | Oct 18, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in WebDorado SpiderVPlayer plugin <= 1.5.22 versions. |
| CVE-2023-45630 | MEDIUM | 6.1 | 0.3% | Oct 18, 2023 | Unauth. Stored Cross-Site Scripting (XSS) vulnerability in wpdevart Gallery – Image and Video Gallery with Thumbnails pl... |
| CVE-2023-45628 | MEDIUM | 5.4 | 0.3% | Oct 18, 2023 | Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in QROkes QR Twitter Widget plugin <= 0.2.3 version... |
| CVE-2023-45607 | MEDIUM | 5.4 | 0.3% | Oct 18, 2023 | Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Hector Cabrera WordPress Popular Posts plugin <=... |
| CVE-2023-45604 | MEDIUM | 4.8 | 0.3% | Oct 18, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Scott Reilly Get Custom Field Values plugin <= 4.0.1 v... |
| CVE-2023-45602 | MEDIUM | 6.1 | 0.3% | Oct 18, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Shopfiles Ltd Ebook Store plugin <= 5.785 versions. |
| CVE-2023-30781 | MEDIUM | 6.1 | 0.3% | Oct 18, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Theme Blvd Tweeple plugin <= 0.9.5 versions. |
| CVE-2023-46007 | CRITICAL | 9.8 | 0.7% | Oct 18, 2023 | Sourcecodester Best Courier Management System 1.0 is vulnerable to SQL Injection via the parameter id in /edit_staff.php... |
| CVE-2023-46006 | CRITICAL | 9.8 | 0.7% | Oct 18, 2023 | Sourcecodester Best Courier Management System 1.0 is vulnerable to SQL Injection via the parameter id in /edit_user.php. |
| CVE-2023-46005 | CRITICAL | 9.8 | 0.7% | Oct 18, 2023 | Sourcecodester Best Courier Management System 1.0 is vulnerable to SQL Injection via the parameter id in /edit_branch.ph... |
| CVE-2023-46004 | HIGH | 7.2 | 0.7% | Oct 18, 2023 | Sourcecodester Best Courier Management System 1.0 is vulnerable to Arbitrary file upload in the update_user function. |
| CVE-2023-45608 | MEDIUM | 5.4 | 0.3% | Oct 18, 2023 | Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Nicola Modugno Smart Cookie Kit plugin <= 2.3.1 ... |
| CVE-2023-45073 | MEDIUM | 4.8 | 0.3% | Oct 18, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Michael Koch Mendeley Plugin plugin <= 1.3.2 versions. |
| CVE-2023-45072 | MEDIUM | 4.8 | 0.3% | Oct 18, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Kardi Order auto complete for WooCommerce plugin <= 1.... |
| CVE-2023-45071 | MEDIUM | 6.1 | 0.3% | Oct 18, 2023 | Unauth. Stored Cross-Site Scripting (XSS) vulnerability in 10Web Form Builder Team Form Maker by 10Web – Mobile-Friendly... |
| CVE-2023-45070 | MEDIUM | 6.1 | 0.4% | Oct 18, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in 10Web Form Builder Team Form Maker by 10Web – Mobile-Frien... |
| CVE-2023-45067 | MEDIUM | 5.4 | 0.3% | Oct 18, 2023 | Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Ashish Ajani WordPress Simple HTML Sitemap plugi... |
| CVE-2023-45065 | MEDIUM | 6.1 | 0.3% | Oct 18, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Mad Fish Digital Bulk NoIndex & NoFollow Toolkit plugin <=... |
| CVE-2023-31217 | MEDIUM | 5.4 | 0.3% | Oct 18, 2023 | Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in MyTechTalky User Location and IP plugin <= 1.6 v... |
| CVE-2023-32089 | MEDIUM | 6.1 | 0.3% | Oct 18, 2023 | Pega Platform versions 8.1 to 8.8.2 are affected by an XSS issue with Pin description |
| CVE-2023-32088 | MEDIUM | 6.1 | 0.3% | Oct 18, 2023 | Pega Platform versions 8.1 to Infinity 23.1.0 are affected by an XSS issue with ad-hoc case creation |
| CVE-2023-32087 | MEDIUM | 6.1 | 0.3% | Oct 18, 2023 | Pega Platform versions 8.1 to Infinity 23.1.0 are affected by an XSS issue with task creation |
| CVE-2023-45727 | HIGH | 7.5 | 3.5% | Oct 18, 2023 | Proself Enterprise/Standard Edition Ver5.62 and earlier, Proself Gateway Edition Ver1.65 and earlier, and Proself Mail S... |
| CVE-2023-5632 | HIGH | 7.5 | 0.7% | Oct 18, 2023 | In Eclipse Mosquito before and including 2.0.5, establishing a connection to the mosquitto server without sending data c... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now