2023 CVE Vulnerabilities
31,404 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-38563 | HIGH | 8.8 | 0.5% | Sep 6, 2023 | Archer C1200 firmware versions prior to 'Archer C1200(JP)_V2_230508' and Archer C9 firmware versions prior to 'Archer C9... |
| CVE-2023-37284 | HIGH | 8.8 | 0.4% | Sep 6, 2023 | Improper authentication vulnerability in Archer C20 firmware versions prior to 'Archer C20(JP)_V1_230616' allows a netwo... |
| CVE-2023-36489 | HIGH | 8.8 | 0.5% | Sep 6, 2023 | Multiple TP-LINK products allow a network-adjacent unauthenticated attacker to execute arbitrary OS commands. Affected p... |
| CVE-2023-32619 | HIGH | 8.8 | 0.3% | Sep 6, 2023 | Archer C50 firmware versions prior to 'Archer C50(JP)_V3_230505' and Archer C55 firmware versions prior to 'Archer C55(J... |
| CVE-2023-31188 | HIGH | 8 | 0.4% | Sep 6, 2023 | Multiple TP-LINK products allow a network-adjacent authenticated attacker to execute arbitrary OS commands. Affected pro... |
| CVE-2023-4634 | CRITICAL | 9.8 | 82.6% | Sep 6, 2023 | The Media Library Assistant plugin for WordPress is vulnerable to Local File Inclusion and Remote Code Execution in vers... |
| CVE-2023-40601 | MEDIUM | 6.1 | 0.3% | Sep 6, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Estatik Estatik Mortgage Calculator plugin <= 2.0.7 versio... |
| CVE-2023-40560 | MEDIUM | 4.8 | 0.3% | Sep 6, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Greg Ross Schedule Posts Calendar plugin <= 5.2 versio... |
| CVE-2023-40554 | MEDIUM | 6.1 | 0.4% | Sep 6, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Blog2Social, Adenion Blog2Social: Social Media Auto Post &... |
| CVE-2023-40553 | MEDIUM | 6.1 | 0.3% | Sep 6, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Plausible.Io Plausible Analytics plugin <= 1.3.3 versions. |
| CVE-2023-40552 | MEDIUM | 4.8 | 0.3% | Sep 6, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Gurcharan Singh Fitness calculators plugin plugin <= 2... |
| CVE-2023-40329 | MEDIUM | 4.8 | 0.3% | Sep 6, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in WPZest Custom Admin Login Page | WPZest plugin <= 1.2.... |
| CVE-2023-40328 | MEDIUM | 4.8 | 0.3% | Sep 6, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Carrrot plugin <= 1.1.0 versions. |
| CVE-2023-40007 | MEDIUM | 4.8 | 0.3% | Sep 6, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Ujwol Bastakoti CT Commerce plugin <= 2.0.1 versions. |
| CVE-2023-30497 | MEDIUM | 6.1 | 0.3% | Sep 6, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Simon Chuang WP LINE Notify plugin <= 1.4.4 versions. |
| CVE-2023-4705 | — | — | — | Sep 6, 2023 | Rejected reason: CVE-2023-4705 was wrongly assigned to a bug that was deemed to be a non-security issue by the Linux ker... |
| CVE-2023-29441 | MEDIUM | 6.1 | 0.3% | Sep 6, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Robert Heller WebLibrarian plugin <= 3.5.8.1 versions. |
| CVE-2023-4779 | MEDIUM | 5.4 | 0.3% | Sep 6, 2023 | The User Submitted Posts plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's [usp_gallery... |
| CVE-2023-3472 | HIGH | 7.8 | 0.2% | Sep 6, 2023 | Use after free vulnerability in Panasonic KW Watcher versions 1.00 through 2.82 may allow attackers to execute arbitrary... |
| CVE-2023-3471 | HIGH | 7.8 | 0.4% | Sep 6, 2023 | Buffer overflow vulnerability in Panasonic KW Watcher versions 1.00 through 2.82 may allow attackers to execute arbitrar... |
| CVE-2023-35719 | MEDIUM | 6.8 | 20.2% | Sep 6, 2023 | ManageEngine ADSelfService Plus GINA Client Insufficient Verification of Data Authenticity Authentication Bypass Vulnera... |
| CVE-2023-32163 | HIGH | 7.8 | 0.4% | Sep 6, 2023 | Wacom Drivers for Windows Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attac... |
| CVE-2023-32162 | HIGH | 7.8 | 0.4% | Sep 6, 2023 | Wacom Drivers for Windows Incorrect Permission Assignment Local Privilege Escalation Vulnerability. This vulnerability a... |
| CVE-2023-4773 | MEDIUM | 6.4 | 0.4% | Sep 6, 2023 | The WordPress Social Login plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'wordpress_social_l... |
| CVE-2023-30730 | MEDIUM | 5.5 | 0.1% | Sep 6, 2023 | Implicit intent hijacking vulnerability in Camera prior to versions 11.0.16.43 in Android 11, 12.1.00.30, 12.0.07.53, 12... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now