2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-40148 | MEDIUM | 6.5 | 0.5% | Apr 10, 2024 | Server-side request forgery (SSRF) in PingFederate allows unauthenticated http requests to attack network resources and ... |
| CVE-2023-6993 | MEDIUM | 6.4 | 0.4% | Apr 9, 2024 | The Custom post types, Custom Fields & more plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the pl... |
| CVE-2023-6965 | MEDIUM | 4.3 | 0.6% | Apr 9, 2024 | The Pods – Custom Content Types and Fields plugin for WordPress is vulnerable to Missing Authorization in all versions u... |
| CVE-2023-6964 | MEDIUM | 6.4 | 0.4% | Apr 9, 2024 | The Gutenberg Blocks by Kadence Blocks – Page Builder Features plugin for WordPress is vulnerable to Server-Side Request... |
| CVE-2023-6799 | MEDIUM | 5.9 | 0.7% | Apr 9, 2024 | The WP Reset – Most Advanced WordPress Reset Tool plugin for WordPress is vulnerable to Sensitive Information Exposure i... |
| CVE-2023-6777 | MEDIUM | 6.5 | 0.8% | Apr 9, 2024 | The WP Go Maps (formerly WP Google Maps) plugin for WordPress is vulnerable to unauthenticated API key disclosure in ver... |
| CVE-2023-6695 | MEDIUM | 6.5 | 0.5% | Apr 9, 2024 | The Beaver Themer plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and includ... |
| CVE-2023-6694 | MEDIUM | 5.4 | 0.3% | Apr 9, 2024 | The Beaver Themer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode(s) in all... |
| CVE-2023-6486 | MEDIUM | 5.4 | 0.6% | Apr 9, 2024 | The Spectra – WordPress Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Custo... |
| CVE-2023-48784 | MEDIUM | 6.7 | 0.8% | Apr 9, 2024 | A use of externally-controlled format string vulnerability [CWE-134] in FortiOS version 7.4.1 and below, version 7.2.7 a... |
| CVE-2023-47542 | MEDIUM | 6.7 | 0.3% | Apr 9, 2024 | A improper neutralization of special elements used in a template engine [CWE-1336] in FortiManager versions 7.4.1 and be... |
| CVE-2023-47541 | MEDIUM | 6.7 | 0.3% | Apr 9, 2024 | An improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Fortinet FortiSandbox... |
| CVE-2023-47540 | MEDIUM | 6.7 | 0.6% | Apr 9, 2024 | An improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet ... |
| CVE-2023-50821 | MEDIUM | 6.9 | 0.2% | Apr 9, 2024 | A vulnerability has been identified in SIMATIC PCS 7 V9.1 (All versions < V9.1 SP2 UC04), SIMATIC WinCC Runtime Professi... |
| CVE-2023-52385 | MEDIUM | 6.2 | 0.1% | Apr 8, 2024 | Out-of-bounds write vulnerability in the RSMC module. Impact: Successful exploitation of this vulnerability will affect ... |
| CVE-2023-52364 | MEDIUM | 6.3 | 0.3% | Apr 8, 2024 | Vulnerability of input parameters being not strictly verified in the RSMC module. Impact: Successful exploitation of thi... |
| CVE-2023-52554 | MEDIUM | 6.5 | 0.2% | Apr 8, 2024 | Permission control vulnerability in the Bluetooth module. Impact: Successful exploitation of this vulnerability may affe... |
| CVE-2023-52551 | MEDIUM | 5.3 | 0.1% | Apr 8, 2024 | Vulnerability of data verification errors in the kernel module. Impact: Successful exploitation of this vulnerability ma... |
| CVE-2023-52544 | MEDIUM | 4.3 | 0.3% | Apr 8, 2024 | Vulnerability of file path verification being bypassed in the email module. Impact: Successful exploitation of this vuln... |
| CVE-2023-52543 | MEDIUM | 6.2 | 0.1% | Apr 8, 2024 | Permission verification vulnerability in the system module. Impact: Successful exploitation of this vulnerability will a... |
| CVE-2023-52542 | MEDIUM | 6.5 | 0.3% | Apr 8, 2024 | Permission verification vulnerability in the system module. Impact: Successful exploitation of this vulnerability will a... |
| CVE-2023-52536 | MEDIUM | 4.4 | 0.1% | Apr 8, 2024 | In faceid service, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial... |
| CVE-2023-52535 | MEDIUM | 4.4 | 0.1% | Apr 8, 2024 | In vsp driver, there is a possible missing verification incorrect input. This could lead to local denial of service with... |
| CVE-2023-52534 | MEDIUM | 5.9 | 0.3% | Apr 8, 2024 | In ngmm, there is a possible undefined behavior due to incorrect error handling. This could lead to remote denial of ser... |
| CVE-2023-52533 | MEDIUM | 5.3 | 0.4% | Apr 8, 2024 | In modem-ps-nas-ngmm, there is a possible undefined behavior due to incorrect error handling. This could lead to remote ... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now