2023 CVE Vulnerabilities
31,404 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-3720 | MEDIUM | 6.5 | 0.3% | Aug 30, 2023 | The Upload Media By URL WordPress plugin before 1.0.8 does not have CSRF check when uploading files, which could allow a... |
| CVE-2023-3501 | MEDIUM | 4.8 | 0.4% | Aug 30, 2023 | The FormCraft WordPress plugin before 1.2.7 does not sanitise and escape some of its settings, which could allow high pr... |
| CVE-2023-3356 | MEDIUM | 4.3 | 0.2% | Aug 30, 2023 | The Subscribers Text Counter WordPress plugin before 1.7.1 does not have CSRF check in place when updating its settings,... |
| CVE-2023-34173 | MEDIUM | 4.8 | 0.4% | Aug 30, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Alexander Semikashev Yandex Metrica Counter plugin <= ... |
| CVE-2023-34172 | MEDIUM | 4.8 | 0.4% | Aug 30, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Miled WordPress Social Login plugin <= 3.0.4 versions. |
| CVE-2023-34032 | MEDIUM | 6.1 | 0.5% | Aug 30, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Pascal Casier bbPress Toolkit plugin <= 1.0.12 versions. |
| CVE-2023-34023 | MEDIUM | 6.1 | 0.4% | Aug 30, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Miled WordPress Social Login plugin <= 3.0.4 versions. |
| CVE-2023-34022 | MEDIUM | 6.1 | 0.5% | Aug 30, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Rakib Hasan Dynamic QR Code Generator plugin <= 0.0.5 vers... |
| CVE-2023-34008 | MEDIUM | 6.1 | 0.5% | Aug 30, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in weDevs WP ERP plugin <= 1.12.3 versions. |
| CVE-2023-34004 | MEDIUM | 5.4 | 0.4% | Aug 30, 2023 | Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in WooCommerce WooCommerce Box Office plugin <= 1.1... |
| CVE-2023-1982 | MEDIUM | 4.8 | 0.4% | Aug 30, 2023 | The Front Editor WordPress plugin through 4.0.4 does not sanitize and escape some of its form settings, which could allo... |
| CVE-2023-41539 | HIGH | 7.5 | 0.6% | Aug 30, 2023 | phpjabbers Business Directory Script 3.2 is vulnerable to SQL Injection via the column parameter. |
| CVE-2023-41538 | MEDIUM | 6.1 | 1.1% | Aug 30, 2023 | phpjabbers PHP Forum Script 3.0 is vulnerable to Cross Site Scripting (XSS) via the keyword parameter. |
| CVE-2023-41537 | MEDIUM | 6.1 | 0.4% | Aug 30, 2023 | phpjabbers Business Directory Script 3.2 is vulnerable to Cross Site Scripting (XSS) via the keyword parameter. |
| CVE-2023-34187 | MEDIUM | 4.8 | 0.4% | Aug 30, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Alan Tien Call Now Icon Animate plugin <= 0.1.0 versio... |
| CVE-2023-34184 | MEDIUM | 6.1 | 0.4% | Aug 30, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Bhavik Patel Woocommerce Order address Print plugin <= 3.2... |
| CVE-2023-34183 | MEDIUM | 4.8 | 0.4% | Aug 30, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Valiano Unite Gallery Lite plugin <= 1.7.61 versions. |
| CVE-2023-34180 | MEDIUM | 6.1 | 0.4% | Aug 30, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in KAPlugins Google Fonts For WordPress plugin <= 3.0.0 versi... |
| CVE-2023-34176 | MEDIUM | 6.1 | 0.4% | Aug 30, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Chilexpress Chilexpress woo oficial plugin <= 1.2.9 versio... |
| CVE-2023-34175 | MEDIUM | 6.1 | 0.4% | Aug 30, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in GrandSlambert Login Configurator plugin <= 2.1 versions. |
| CVE-2023-34174 | MEDIUM | 6.1 | 0.4% | Aug 30, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in BBS e-Theme BBS e-Popup plugin <= 2.4.5 versions. |
| CVE-2023-4624 | LOW | 2.4 | 0.5% | Aug 30, 2023 | Server-Side Request Forgery (SSRF) in GitHub repository bookstackapp/bookstack prior to v23.08. |
| CVE-2023-41563 | CRITICAL | 9.8 | 0.7% | Aug 30, 2023 | Tenda AC9 V3.0 V15.03.06.42_multi and Tenda AC5 US_AC5V1.0RTL_V15.03.06.28 were discovered to contain a stack overflow v... |
| CVE-2023-41562 | CRITICAL | 9.8 | 0.7% | Aug 30, 2023 | Tenda AC7 V1.0 V15.03.06.44, Tenda AC9 V3.0 V15.03.06.42_multi, and Tenda AC5 US_AC5V1.0RTL_V15.03.06.28 were discovered... |
| CVE-2023-41561 | CRITICAL | 9.8 | 0.7% | Aug 30, 2023 | Tenda AC9 V3.0 V15.03.06.42_multi and Tenda AC5 US_AC5V1.0RTL_V15.03.06.28 were discovered to contain a stack overflow v... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now