2023 CVE Vulnerabilities
31,404 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-4098 | HIGH | 8.8 | 0.5% | Oct 3, 2023 | It has been identified that the web application does not correctly filter input parameters, allowing SQL injections, DoS... |
| CVE-2023-40210 | HIGH | 8.8 | 0.2% | Oct 3, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Sean Barton (Tortoise IT) SB Child List plugin <= 4.5 versions. |
| CVE-2023-39989 | HIGH | 8.8 | 0.2% | Oct 3, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in 99robots Header Footer Code Manager plugin <= 1.1.34 versions. |
| CVE-2023-39923 | HIGH | 8.8 | 0.2% | Oct 3, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in RadiusTheme The Post Grid plugin <= 7.2.7 versions. |
| CVE-2023-39917 | HIGH | 8.8 | 0.2% | Oct 3, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Photo Gallery Team Photo Gallery by Ays – Responsive Image Gallery pl... |
| CVE-2023-39165 | HIGH | 8.8 | 0.2% | Oct 3, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Fetch Designs Sign-up Sheets plugin <= 2.2.8 versions. |
| CVE-2023-2830 | HIGH | 8.8 | 0.3% | Oct 3, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Trustindex.Io WP Testimonials plugin <= 1.4.2 versions. |
| CVE-2023-25989 | HIGH | 8.8 | 0.4% | Oct 3, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Meks Video Importer, Meks Time Ago, Meks ThemeForest Smart Widget, Me... |
| CVE-2023-4097 | HIGH | 8.8 | 0.5% | Oct 3, 2023 | The file upload functionality is not implemented correctly and allows uploading of any type of file. As a prerequisite, ... |
| CVE-2023-38398 | HIGH | 8.8 | 0.2% | Oct 3, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Taboola plugin <= 2.0.1 versions. |
| CVE-2023-38396 | HIGH | 8.8 | 0.2% | Oct 3, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Alain Gonzalez plugin <= 3.1.2 versions. |
| CVE-2023-38390 | HIGH | 8.8 | 0.2% | Oct 3, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Anshul Labs Mobile Address Bar Changer plugin <= 3.0 versions. |
| CVE-2023-37990 | HIGH | 8.8 | 0.2% | Oct 3, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Mike Perelink Pro plugin <= 2.1.4 versions. |
| CVE-2023-25463 | HIGH | 8.8 | 0.2% | Oct 3, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Gopi Ramasamy WP tell a friend popup form plugin <= 7.1 versions. |
| CVE-2023-24518 | HIGH | 7.1 | 0.2% | Oct 3, 2023 | A Cross-site Request Forgery (CSRF) vulnerability in Pandora FMS allows an attacker to force authenticated users to send... |
| CVE-2023-0828 | MEDIUM | 6.1 | 0.3% | Oct 3, 2023 | Cross-site Scripting (XSS) vulnerability in Syslog Section of Pandora FMS allows attacker to cause that users cookie val... |
| CVE-2023-38381 | HIGH | 8.8 | 0.2% | Oct 3, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Cyle Conoly WP-FlyBox plugin <= 6.46 versions. |
| CVE-2023-37998 | HIGH | 8.8 | 0.2% | Oct 3, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Saas Disabler allows Cross Site Request Forgery.This issue affects Di... |
| CVE-2023-37996 | HIGH | 8.8 | 0.2% | Oct 3, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in GTmetrix GTmetrix for WordPress plugin <= 0.4.7 versions. |
| CVE-2023-37992 | HIGH | 8.8 | 0.2% | Oct 3, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in PressPage Entertainment Inc. Smarty for WordPress plugin <= 3.1.35 ve... |
| CVE-2023-37991 | HIGH | 8.8 | 0.2% | Oct 3, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Monchito.Net WP Emoji One plugin <= 0.6.0 versions. |
| CVE-2023-37891 | HIGH | 8.8 | 0.2% | Oct 3, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in OptiMonk OptiMonk: Popups, Personalization & A/B Testing plugin <= 2.... |
| CVE-2023-3654 | CRITICAL | 9.8 | 0.3% | Oct 3, 2023 | cashIT! - serving solutions. Devices from "PoS/ Dienstleistung, Entwicklung & Vertrieb GmbH" to 03.A06rks 2023.02.37 are... |
| CVE-2023-44218 | HIGH | 7.8 | 0.2% | Oct 3, 2023 | A flaw within the SonicWall NetExtender Pre-Logon feature enables an unauthorized user to gain access to the host Windo... |
| CVE-2023-44217 | HIGH | 7.8 | 0.2% | Oct 3, 2023 | A local privilege escalation vulnerability in SonicWall Net Extender MSI client for Windows 10.2.336 and earlier versio... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now