2023 CVE Vulnerabilities
31,401 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-45642 | HIGH | 8.8 | 0.2% | Oct 16, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Hassan Ali Snap Pixel plugin <= 1.5.7 versions. |
| CVE-2023-45641 | HIGH | 8.8 | 0.2% | Oct 16, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Caret Inc. Caret Country Access Limit plugin <= 1.0.2 versions. |
| CVE-2023-45639 | HIGH | 8.8 | 0.2% | Oct 16, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Codex-m Sort SearchResult By Title plugin <= 10.0 versions. |
| CVE-2023-3991 | CRITICAL | 9.8 | 2.4% | Oct 16, 2023 | An OS command injection vulnerability exists in the httpd iperfrun.cgi functionality of FreshTomato 2023.3. A specially ... |
| CVE-2023-5595 | MEDIUM | 5.5 | 0.3% | Oct 16, 2023 | Denial of Service in GitHub repository gpac/gpac prior to 2.3.0-DEV. |
| CVE-2023-5422 | CRITICAL | 9.1 | 0.3% | Oct 16, 2023 | The functions to fetch e-mail via POP3 or IMAP as well as sending e-mail via SMTP use OpenSSL for static SSL or TLS base... |
| CVE-2023-5421 | MEDIUM | 5.5 | 0.4% | Oct 16, 2023 | An attacker who is logged into OTRS as an user with privileges to create and change customer user data may manipulate th... |
| CVE-2023-4834 | MEDIUM | 4.3 | 0.3% | Oct 16, 2023 | In Red Lion Europe mbCONNECT24 and mymbCONNECT24 and Helmholz myREX24 and myREX24.virtual up to and including 2.14.2 an ... |
| CVE-2023-4827 | HIGH | 8.8 | 6.8% | Oct 16, 2023 | The File Manager Pro WordPress plugin before 1.8 does not properly check the CSRF nonce in the `fs_connector` AJAX actio... |
| CVE-2023-4822 | HIGH | 7.2 | 1.1% | Oct 16, 2023 | Grafana is an open-source platform for monitoring and observability. The vulnerability impacts Grafana instances with se... |
| CVE-2023-4620 | MEDIUM | 6.1 | 0.5% | Oct 16, 2023 | The Booking Calendar WordPress plugin before 9.7.3.1 does not sanitize and escape some of its booking from data, allowin... |
| CVE-2023-45757 | MEDIUM | 6.1 | 1.0% | Oct 16, 2023 | Security vulnerability in Apache bRPC <=1.6.0 on all platforms allows attackers to inject XSS code to the builtin rpcz p... |
| CVE-2023-45656 | HIGH | 8.8 | 0.2% | Oct 16, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Kevin Weber Lazy Load for Videos plugin <= 2.18.2 versions. |
| CVE-2023-45655 | HIGH | 8.8 | 0.2% | Oct 16, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in PixelGrade PixFields plugin <= 0.7.0 versions. |
| CVE-2023-45654 | HIGH | 8.8 | 0.2% | Oct 16, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Pixelgrade Comments Ratings plugin <= 1.1.7 versions. |
| CVE-2023-45653 | HIGH | 8.8 | 0.2% | Oct 16, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Galaxy Weblinks Video Playlist For YouTube plugin <= 6.0 versions. |
| CVE-2023-45651 | HIGH | 8.8 | 0.2% | Oct 16, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Marco Milesi WP Attachments allows Cross Site Request Forgery.This is... |
| CVE-2023-45650 | HIGH | 8.8 | 0.2% | Oct 16, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Fla-shop.Com HTML5 Maps plugin <= 1.7.1.4 versions. |
| CVE-2023-45638 | HIGH | 8.8 | 0.3% | Oct 16, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in euPago Eupago Gateway For Woocommerce plugin <= 3.1.9 versions. |
| CVE-2023-45629 | HIGH | 8.8 | 0.2% | Oct 16, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in wpdevart Gallery – Image and Video Gallery with Thumbnails plugin <= ... |
| CVE-2023-45606 | HIGH | 8.8 | 0.2% | Oct 16, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Lasso Simple URLs plugin <= 120 versions. |
| CVE-2023-45605 | HIGH | 8.8 | 0.2% | Oct 16, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Christopher Finke Feed Statistics plugin <= 4.1 versions. |
| CVE-2023-45274 | HIGH | 8.8 | 0.2% | Oct 16, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in SendPulse SendPulse Free Web Push plugin <= 1.3.1 versions. |
| CVE-2023-45273 | HIGH | 8.8 | 0.2% | Oct 16, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Matt McKenny Stout Google Calendar plugin <= 1.2.3 versions. |
| CVE-2023-43668 | CRITICAL | 9.8 | 1.0% | Oct 16, 2023 | Authorization Bypass Through User-Controlled Key vulnerability in Apache InLong.This issue affects Apache InLong: from 1... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now