2023 CVE Vulnerabilities
31,404 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-28994 | MEDIUM | 6.1 | 0.4% | Aug 23, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in UX-themes Flatsome plugin <= 3.16.8 versions. |
| CVE-2023-32499 | MEDIUM | 6.1 | 0.4% | Aug 23, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Tony Zeoli, Tony Hayes Radio Station by netmix® – Manage a... |
| CVE-2023-32498 | MEDIUM | 4.8 | 0.4% | Aug 23, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Easy Form team Easy Form by AYS plugin <= 1.2.0 versio... |
| CVE-2023-32497 | MEDIUM | 4.8 | 0.3% | Aug 23, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Supersoju Block Referer Spam plugin <= 1.1.9.4 version... |
| CVE-2023-32496 | MEDIUM | 4.8 | 0.4% | Aug 23, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Bill Minozzi Block Bad Bots and Stop Bad Bots Crawlers... |
| CVE-2023-32236 | MEDIUM | 6.1 | 0.4% | Aug 23, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Booking Ultra Pro Booking Ultra Pro Appointments Booking C... |
| CVE-2023-4042 | MEDIUM | 5.5 | 0.3% | Aug 23, 2023 | A flaw was found in ghostscript. The fix for CVE-2020-16305 in ghostscript was not included in RHSA-2021:1852-06 advisor... |
| CVE-2023-32119 | MEDIUM | 6.1 | 0.3% | Aug 23, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in WPO365 | Mail Integration for Office 365 / Outlook plugin ... |
| CVE-2023-3899 | HIGH | 7.8 | 0.3% | Aug 23, 2023 | A vulnerability was found in subscription-manager that allows local privilege escalation due to inadequate authorization... |
| CVE-2023-41105 | HIGH | 7.5 | 2.2% | Aug 23, 2023 | An issue was discovered in Python 3.11 through 3.11.4. If a path containing '\0' bytes is passed to os.path.normpath(), ... |
| CVE-2023-41104 | MEDIUM | 6.5 | 0.5% | Aug 23, 2023 | libvmod-digest before 1.0.3, as used in Varnish Enterprise 6.0.x before 6.0.11r5, has an out-of-bounds memory access dur... |
| CVE-2023-41100 | MEDIUM | 5.3 | 0.5% | Aug 23, 2023 | An issue was discovered in the hcaptcha (aka hCaptcha for EXT:form) extension before 2.1.2 for TYPO3. It fails to check ... |
| CVE-2023-41098 | MEDIUM | 6.1 | 0.4% | Aug 23, 2023 | An issue was discovered in MISP 2.4.174. In app/Controller/DashboardsController.php, a reflected XSS issue exists via th... |
| CVE-2023-4041 | CRITICAL | 9.8 | 0.3% | Aug 23, 2023 | Buffer Copy without Checking Size of Input ('Classic Buffer Overflow'), Out-of-bounds Write, Download of Code Without In... |
| CVE-2023-40282 | MEDIUM | 5.4 | 0.3% | Aug 23, 2023 | Improper authentication vulnerability in Rakuten WiFi Pocket all versions allows a network-adjacent attacker to log in t... |
| CVE-2023-40144 | HIGH | 8.8 | 1.6% | Aug 23, 2023 | OS command injection vulnerability in the CBC products allows a remote authenticated attacker to execute an arbitrary OS... |
| CVE-2023-40158 | HIGH | 8.8 | 0.9% | Aug 23, 2023 | Hidden functionality vulnerability in the CBC products allows a remote authenticated attacker to execute an arbitrary OS... |
| CVE-2023-38585 | HIGH | 8.8 | 0.8% | Aug 23, 2023 | Improper authentication vulnerability in the CBC products allows a remote authenticated attacker to execute an arbitrary... |
| CVE-2023-4404 | CRITICAL | 9.8 | 0.8% | Aug 23, 2023 | The Donation Forms by Charitable plugin for WordPress is vulnerable to privilege escalation in versions up to, and inclu... |
| CVE-2023-3495 | HIGH | 7.8 | 0.2% | Aug 23, 2023 | ** UNSUPPORTED WHEN ASSIGNED ** Out-of-bounds Write vulnerability in Hitachi EH-VIEW (KeypadDesigner) allows local attac... |
| CVE-2023-39986 | MEDIUM | 5.5 | 0.2% | Aug 23, 2023 | ** UNSUPPORTED WHEN ASSIGNED ** Out-of-bounds Read vulnerability in Hitachi EH-VIEW (Designer) allows local attackers to... |
| CVE-2023-39985 | HIGH | 7.8 | 0.2% | Aug 23, 2023 | ** UNSUPPORTED WHEN ASSIGNED ** Out-of-bounds Write vulnerability in Hitachi EH-VIEW (Designer) allows local attackers t... |
| CVE-2023-39984 | HIGH | 7.8 | 0.2% | Aug 23, 2023 | ** UNSUPPORTED WHEN ASSIGNED ** Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in... |
| CVE-2023-4431 | HIGH | 8.1 | 0.9% | Aug 23, 2023 | Out of bounds memory access in Fonts in Google Chrome prior to 116.0.5845.110 allowed a remote attacker to perform an ou... |
| CVE-2023-4430 | HIGH | 8.8 | 8.8% | Aug 23, 2023 | Use after free in Vulkan in Google Chrome prior to 116.0.5845.110 allowed a remote attacker to potentially exploit heap ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now