2023 CVE Vulnerabilities

31,411 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-36678MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in WP-buy WP Content Copy Protection & No Right Click plu...
CVE-2023-34377MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Joseph C Dolson My Content Management plugin <= 1.7.6 ...
CVE-2023-34010MEDIUM6.1Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in submodule of David Lingren Media Library Assistant plugin ...
CVE-2023-30491MEDIUM6.1Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in CodeBard CodeBard's Patron Button and Widgets for Patreon ...
CVE-2023-4171MEDIUM5.3A vulnerability classified as problematic was found in Chengdu Flash Flood Disaster Monitoring and Warning System 2.0. T...
CVE-2023-4189MEDIUM4.8Cross-site Scripting (XSS) - Reflected in GitHub repository instantsoft/icms2 prior to 2.16.1-git.
CVE-2023-4188CRITICAL9.1 SQL Injection in GitHub repository instantsoft/icms2 prior to 2.16.1-git.
CVE-2023-4170MEDIUM4.8A vulnerability was found in DedeBIZ 6.2.10. It has been rated as problematic. Affected by this issue is some unknown fu...
CVE-2023-4187MEDIUM4.8Cross-site Scripting (XSS) - Stored in GitHub repository instantsoft/icms2 prior to 2.16.1-git.
CVE-2023-4169HIGH8.8A vulnerability was found in Ruijie RG-EW1200G 1.0(1)B1P5. It has been declared as critical. Affected by this vulnerabil...
CVE-2023-4168HIGH7.5A vulnerability was found in Templatecookie Adlisting 2.14.0. It has been classified as problematic. Affected is an unkn...
CVE-2023-4167MEDIUM6.1A vulnerability was found in Media Browser Emby Server 4.7.13.0 and classified as problematic. This issue affects some u...
CVE-2023-4166CRITICAL9.8A vulnerability has been found in Tongda OA and classified as critical. This vulnerability affects unknown code of the f...
CVE-2023-4165CRITICAL9.8A vulnerability, which was classified as critical, was found in Tongda OA. This affects an unknown part of the file gene...
CVE-2023-39508HIGH8.8Execution with Unnecessary Privileges, : Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apa...
CVE-2023-36095CRITICAL9.8An issue in Harrison Chase langchain v.0.0.194 allows an attacker to execute arbitrary code via the python exec calls in...
CVE-2023-38943HIGH8.8ShuiZe_0x727 v1.0 was discovered to contain a remote command execution (RCE) vulnerability via the component /iniFile/co...
CVE-2023-33367CRITICAL9.8A SQL injection vulnerability exists in Control ID IDSecure 4.7.26.0 and prior, allowing unauthenticated attackers to wr...
CVE-2023-39346CRITICAL9.8LinuxASMCallGraph is software for drawing the call graph of the programming code. Linux ASMCallGraph before commit 20dba...
CVE-2023-39344HIGH8.8social-media-skeleton is an uncompleted social media project. A SQL injection vulnerability in the project allows UNION ...
CVE-2023-38696Rejected reason: This CVE has been rejected because it is unclear whether the issue rests in the original repository `mi...
CVE-2023-39552Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2023-0527. Reason: This candidate is a reservation du...
CVE-2023-39551CRITICAL9.8PHPGurukul Online Security Guards Hiring System v.1.0 is vulnerable to SQL Injection via osghs/admin/search.php.
CVE-2023-38707Rejected reason: This CVE has been rejected because of [CNA rule 7.4.7](https://www.cve.org/ResourcesSupport/AllResource...
CVE-2023-38702HIGH8.8Knowage is an open source analytics and business intelligence suite. Starting in the 6.x.x branch and prior to version 8...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now