2023 CVE Vulnerabilities

31,404 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-44807CRITICAL9.8D-Link DIR-820L 1.05B03 has a stack overflow vulnerability in the cancelPing function.
CVE-2023-32972HIGH7.2A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system ver...
CVE-2023-32971HIGH7.2A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system ver...
CVE-2023-23371MEDIUM4.4A cleartext transmission of sensitive information vulnerability has been reported to affect QVPN Device Client. If explo...
CVE-2023-23370MEDIUM4.4An insufficiently protected credentials vulnerability has been reported to affect QVPN Device Client. If exploited, the ...
CVE-2023-23366MEDIUM6.5A path traversal vulnerability has been reported to affect Music Station. If exploited, the vulnerability could allow au...
CVE-2023-23365MEDIUM6.5A path traversal vulnerability has been reported to affect Music Station. If exploited, the vulnerability could allow au...
CVE-2023-44243HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Dylan Blokhuis Instant CSS plugin <= 1.2.1 versions.
CVE-2023-44233HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in FooPlugins Best WordPress Gallery Plugin – FooGallery plugin <= 2.2.4...
CVE-2023-39928HIGH8.8A use-after-free vulnerability exists in the MediaRecorder API of Webkit WebKitGTK 2.40.5. A specially crafted web page ...
CVE-2023-44146HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Checkfront Inc. Checkfront Online Booking System plugin <= 3.6 versio...
CVE-2023-41950HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Laposta - Roel Bousardt Laposta Signup Basic plugin <= 1.4.1 versions...
CVE-2023-41801HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in AWP Classifieds Team Ad Directory & Listings by AWP Classifieds plugi...
CVE-2023-41732HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in CodePeople CP Blocks plugin <= 1.0.20 versions.
CVE-2023-41659HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Jules Colle, BDWM Responsive Gallery Grid plugin <= 2.3.10 versions.
CVE-2023-41654HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Andreas Heigl authLdap plugin <= 2.5.8 versions.
CVE-2023-41650HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Venugopal Remove/hide Author, Date, Category Like Entry-Meta plugin <...
CVE-2023-40607HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in CLUEVO CLUEVO LMS, E-Learning Platform plugin <= 1.10.0 versions.
CVE-2023-43810HIGH7.5OpenTelemetry, also known as OTel for short, is a vendor-neutral open-source Observability framework for instrumenting, ...
CVE-2023-43058CRITICAL9.8IBM Robotic Process Automation 23.0.9 is vulnerable to privilege escalation that affects ownership of projects. IBM X-F...
CVE-2023-42445MEDIUM5.3Gradle is a build tool with a focus on build automation and support for multi-language development. In some cases, when ...
CVE-2023-38703CRITICAL9.8PJSIP is a free and open source multimedia communication library written in C with high level API in C, C++, Java, C#, a...
CVE-2023-35897HIGH7.8IBM Spectrum Protect Client and IBM Storage Protect for Virtual Environments 8.1.0.0 through 8.1.19.0 could allow a loca...
CVE-2023-29235HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Fugu Maintenance Switch plugin <= 1.5.2 versions.
CVE-2023-28791HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Gangesh Matta Simple Org Chart plugin <= 2.3.4 versions.

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now