2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-36678 | MEDIUM | 4.8 | 0.3% | Aug 5, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in WP-buy WP Content Copy Protection & No Right Click plu... |
| CVE-2023-34377 | MEDIUM | 4.8 | 0.3% | Aug 5, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Joseph C Dolson My Content Management plugin <= 1.7.6 ... |
| CVE-2023-34010 | MEDIUM | 6.1 | 0.3% | Aug 5, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in submodule of David Lingren Media Library Assistant plugin ... |
| CVE-2023-30491 | MEDIUM | 6.1 | 0.3% | Aug 5, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in CodeBard CodeBard's Patron Button and Widgets for Patreon ... |
| CVE-2023-4171 | MEDIUM | 5.3 | 0.9% | Aug 5, 2023 | A vulnerability classified as problematic was found in Chengdu Flash Flood Disaster Monitoring and Warning System 2.0. T... |
| CVE-2023-4189 | MEDIUM | 4.8 | 0.4% | Aug 5, 2023 | Cross-site Scripting (XSS) - Reflected in GitHub repository instantsoft/icms2 prior to 2.16.1-git. |
| CVE-2023-4188 | CRITICAL | 9.1 | 0.8% | Aug 5, 2023 | SQL Injection in GitHub repository instantsoft/icms2 prior to 2.16.1-git. |
| CVE-2023-4170 | MEDIUM | 4.8 | 0.5% | Aug 5, 2023 | A vulnerability was found in DedeBIZ 6.2.10. It has been rated as problematic. Affected by this issue is some unknown fu... |
| CVE-2023-4187 | MEDIUM | 4.8 | 0.4% | Aug 5, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository instantsoft/icms2 prior to 2.16.1-git. |
| CVE-2023-4169 | HIGH | 8.8 | 47.1% | Aug 5, 2023 | A vulnerability was found in Ruijie RG-EW1200G 1.0(1)B1P5. It has been declared as critical. Affected by this vulnerabil... |
| CVE-2023-4168 | HIGH | 7.5 | 36.2% | Aug 5, 2023 | A vulnerability was found in Templatecookie Adlisting 2.14.0. It has been classified as problematic. Affected is an unkn... |
| CVE-2023-4167 | MEDIUM | 6.1 | 0.5% | Aug 5, 2023 | A vulnerability was found in Media Browser Emby Server 4.7.13.0 and classified as problematic. This issue affects some u... |
| CVE-2023-4166 | CRITICAL | 9.8 | 10.8% | Aug 5, 2023 | A vulnerability has been found in Tongda OA and classified as critical. This vulnerability affects unknown code of the f... |
| CVE-2023-4165 | CRITICAL | 9.8 | 10.8% | Aug 5, 2023 | A vulnerability, which was classified as critical, was found in Tongda OA. This affects an unknown part of the file gene... |
| CVE-2023-39508 | HIGH | 8.8 | 2.4% | Aug 5, 2023 | Execution with Unnecessary Privileges, : Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apa... |
| CVE-2023-36095 | CRITICAL | 9.8 | 1.2% | Aug 5, 2023 | An issue in Harrison Chase langchain v.0.0.194 allows an attacker to execute arbitrary code via the python exec calls in... |
| CVE-2023-38943 | HIGH | 8.8 | 1.5% | Aug 5, 2023 | ShuiZe_0x727 v1.0 was discovered to contain a remote command execution (RCE) vulnerability via the component /iniFile/co... |
| CVE-2023-33367 | CRITICAL | 9.8 | 1.1% | Aug 5, 2023 | A SQL injection vulnerability exists in Control ID IDSecure 4.7.26.0 and prior, allowing unauthenticated attackers to wr... |
| CVE-2023-39346 | CRITICAL | 9.8 | 0.9% | Aug 4, 2023 | LinuxASMCallGraph is software for drawing the call graph of the programming code. Linux ASMCallGraph before commit 20dba... |
| CVE-2023-39344 | HIGH | 8.8 | 1.3% | Aug 4, 2023 | social-media-skeleton is an uncompleted social media project. A SQL injection vulnerability in the project allows UNION ... |
| CVE-2023-38696 | — | — | — | Aug 4, 2023 | Rejected reason: This CVE has been rejected because it is unclear whether the issue rests in the original repository `mi... |
| CVE-2023-39552 | — | — | — | Aug 4, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2023-0527. Reason: This candidate is a reservation du... |
| CVE-2023-39551 | CRITICAL | 9.8 | 1.1% | Aug 4, 2023 | PHPGurukul Online Security Guards Hiring System v.1.0 is vulnerable to SQL Injection via osghs/admin/search.php. |
| CVE-2023-38707 | — | — | — | Aug 4, 2023 | Rejected reason: This CVE has been rejected because of [CNA rule 7.4.7](https://www.cve.org/ResourcesSupport/AllResource... |
| CVE-2023-38702 | HIGH | 8.8 | 1.1% | Aug 4, 2023 | Knowage is an open source analytics and business intelligence suite. Starting in the 6.x.x branch and prior to version 8... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now