2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-45275 | MEDIUM | 6.5 | 0.4% | Jan 2, 2025 | Missing Authorization vulnerability in WP Chill Kali Forms kali-forms allows Exploiting Incorrectly Configured Access Co... |
| CVE-2023-45271 | MEDIUM | 4.3 | 0.3% | Jan 2, 2025 | Missing Authorization vulnerability in WPXPO WowStore product-blocks allows Exploiting Incorrectly Configured Access Con... |
| CVE-2023-45110 | MEDIUM | 4.3 | 0.3% | Jan 2, 2025 | Missing Authorization vulnerability in boldthemes Bold Timeline Lite bold-timeline-lite allows Exploiting Incorrectly Co... |
| CVE-2023-45104 | HIGH | 8.8 | 0.3% | Jan 2, 2025 | Missing Authorization vulnerability in WPDeveloper BetterLinks betterlinks allows Exploiting Incorrectly Configured Acce... |
| CVE-2023-45101 | MEDIUM | 4.3 | 0.3% | Jan 2, 2025 | Missing Authorization vulnerability in CusRev Customer Reviews for WooCommerce customer-reviews-woocommerce allows Explo... |
| CVE-2023-45061 | MEDIUM | 5.3 | 0.4% | Jan 2, 2025 | Missing Authorization vulnerability in awsm.in WP Job Openings wp-job-openings allows Exploiting Incorrectly Configured ... |
| CVE-2023-45045 | MEDIUM | 5.4 | 0.3% | Jan 2, 2025 | Missing Authorization vulnerability in krozero WP Custom Widget area wp-custom-widget-area allows Exploiting Incorrectly... |
| CVE-2023-45002 | MEDIUM | 4.3 | 0.3% | Jan 2, 2025 | Missing Authorization vulnerability in weDevs WP User Frontend allows Exploiting Incorrectly Configured Access Control S... |
| CVE-2023-44988 | MEDIUM | 4.3 | 0.3% | Jan 2, 2025 | Missing Authorization vulnerability in Martin Gibson WP Custom Admin Interface allows Exploiting Incorrectly Configured ... |
| CVE-2023-44258 | MEDIUM | 5.3 | 0.4% | Jan 2, 2025 | Missing Authorization vulnerability in vberkel Schema App Structured Data schema-app-structured-data-for-schemaorg allow... |
| CVE-2023-6603 | HIGH | 7.5 | 0.5% | Dec 31, 2024 | A flaw was found in FFmpeg's HLS playlist parsing. This vulnerability allows a denial of service via a maliciously craft... |
| CVE-2023-6602 | MEDIUM | 5.3 | 0.4% | Dec 31, 2024 | A flaw was found in FFmpeg's TTY Demuxer. This vulnerability allows possible data exfiltration via improper parsing of n... |
| CVE-2023-50850 | MEDIUM | 4.3 | 0.4% | Dec 31, 2024 | Missing Authorization vulnerability in Woo WooCommerce Subscriptions allows Exploiting Incorrectly Configured Access Con... |
| CVE-2023-48775 | MEDIUM | 5.3 | 0.4% | Dec 31, 2024 | Missing Authorization vulnerability in Gfazioli WP Cleanfix allows Exploiting Incorrectly Configured Access Control Secu... |
| CVE-2023-52718 | HIGH | 8.1 | 0.1% | Dec 28, 2024 | A connection hijacking vulnerability exists in some Huawei home routers. Successful exploitation of this vulnerability m... |
| CVE-2023-7266 | HIGH | 8.1 | 0.3% | Dec 28, 2024 | Some Huawei home routers have a connection hijacking vulnerability. Successful exploitation of this vulnerability may ca... |
| CVE-2023-7263 | HIGH | 7.3 | 0.3% | Dec 28, 2024 | Some Huawei home music system products have a path traversal vulnerability. Successful exploitation of this vulnerabilit... |
| CVE-2023-7300 | HIGH | 8 | 0.3% | Dec 26, 2024 | Huawei Home Music System has a path traversal vulnerability. Successful exploitation of this vulnerability may cause the... |
| CVE-2023-5117 | LOW | 3.7 | 0.3% | Dec 25, 2024 | An issue was discovered in GitLab CE/EE affecting all versions before 17.6.0 in which users were unaware that files uplo... |
| CVE-2023-31280 | MEDIUM | 5.3 | 0.4% | Dec 21, 2024 | An AirVantage online Warranty Checker tool vulnerability could allow an attacker to perform bulk enumeration of IMEI an... |
| CVE-2023-31279 | HIGH | 8.1 | 0.4% | Dec 21, 2024 | The AirVantage platform is vulnerable to an unauthorized attacker registering previously unregistered devices on the Ai... |
| CVE-2023-42867 | HIGH | 7.8 | 0.2% | Dec 20, 2024 | This issue was addressed with improved validation of the process entitlement and Team ID. This issue is fixed in GarageB... |
| CVE-2023-7005 | HIGH | 7.5 | 0.2% | Dec 19, 2024 | A specially crafted message can be sent to the TTLock App that downgrades the encryption protocol used for communication... |
| CVE-2023-4617 | CRITICAL | 10 | 0.6% | Dec 19, 2024 | Incorrect authorization vulnerability in HTTP POST method in Govee Home application on Android and iOS allows remote att... |
| CVE-2023-30443 | MEDIUM | 6.5 | 0.4% | Dec 19, 2024 | IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to denial of servic... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now