2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-34465 | HIGH | 8.1 | 0.9% | Jun 23, 2023 | XWiki Platform is a generic wiki platform. Starting in version 11.8-rc-1 and prior to versions 14.4.8, 14.10.6, and 15.2... |
| CVE-2023-36289 | MEDIUM | 6.1 | 1.2% | Jun 23, 2023 | An unauthenticated Cross-Site Scripting (XSS) vulnerability found in Webkul QloApps 1.6.0 allows an attacker to obtain a... |
| CVE-2023-36288 | MEDIUM | 5.4 | 0.4% | Jun 23, 2023 | An unauthenticated Cross-Site Scripting (XSS) vulnerability found in Webkul QloApps 1.6.0 allows an attacker to obtain a... |
| CVE-2023-36274 | HIGH | 8.8 | 0.9% | Jun 23, 2023 | LibreDWG v0.11 to v0.12.5 was discovered to contain a heap buffer overflow via the function bit_write_TF at bits.c. |
| CVE-2023-36273 | HIGH | 8.8 | 0.7% | Jun 23, 2023 | LibreDWG v0.12.5 was discovered to contain a heap buffer overflow via the function bit_calc_CRC at bits.c. |
| CVE-2023-36272 | HIGH | 8.8 | 0.9% | Jun 23, 2023 | LibreDWG v0.10 to v0.12.5 was discovered to contain a heap buffer overflow via the function bit_utf8_to_TU at bits.c. |
| CVE-2023-36271 | HIGH | 8.8 | 0.9% | Jun 23, 2023 | LibreDWG v0.10 to v0.12.5 was discovered to contain a heap buffer overflow via the function bit_wcs2nlen at bits.c. |
| CVE-2023-34464 | MEDIUM | 5.4 | 0.7% | Jun 23, 2023 | XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Starting in ver... |
| CVE-2023-23679 | HIGH | 8.8 | 0.5% | Jun 23, 2023 | Authorization Bypass Through User-Controlled Key vulnerability in JS Help Desk js-support-ticket allows Accessing Functi... |
| CVE-2023-3304 | MEDIUM | 5.4 | 0.4% | Jun 23, 2023 | Improper Access Control in GitHub repository admidio/admidio prior to 4.2.9. |
| CVE-2023-3303 | LOW | 3.5 | 0.4% | Jun 23, 2023 | Improper Access Control in GitHub repository admidio/admidio prior to 4.2.9. |
| CVE-2023-3302 | HIGH | 7.8 | 0.5% | Jun 23, 2023 | Improper Neutralization of Formula Elements in a CSV File in GitHub repository admidio/admidio prior to 4.2.9. |
| CVE-2023-32580 | MEDIUM | 4.8 | 0.4% | Jun 23, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in WPExperts Password Protected plugin <= 2.6.2 versions. |
| CVE-2023-29100 | MEDIUM | 6.1 | 0.4% | Jun 23, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Dream-Theme The7 plugin <= 11.6.0 versions. |
| CVE-2023-28751 | MEDIUM | 4.8 | 0.4% | Jun 23, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Wpmet Wp Ultimate Review plugin <= 2.0.3 versions. |
| CVE-2023-27427 | MEDIUM | 4.8 | 0.4% | Jun 23, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in NTZApps CRM Memberships plugin <= 1.6 versions. |
| CVE-2023-35048 | MEDIUM | 4.8 | 0.4% | Jun 23, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in MagePeople Team Booking and Rental Manager for Bike pl... |
| CVE-2023-34021 | MEDIUM | 6.1 | 0.4% | Jun 23, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Andy Moyle Church Admin plugin <= 3.7.29 versions. |
| CVE-2023-34012 | MEDIUM | 6.1 | 0.4% | Jun 23, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Premium Addons for Elementor Premium Addons PRO plugin <= ... |
| CVE-2023-30362 | HIGH | 7.5 | 0.8% | Jun 23, 2023 | Buffer Overflow vulnerability in coap_send function in libcoap library 4.3.1-103-g52cfd56 fixed in 4.3.1-120-ge242200 al... |
| CVE-2023-30260 | HIGH | 8.8 | 2.5% | Jun 23, 2023 | Command injection vulnerability in RaspAP raspap-webgui 2.8.8 and earlier allows remote attackers to run arbitrary comma... |
| CVE-2023-30258 | CRITICAL | 9.8 | 94.3% | Jun 23, 2023 | Command Injection vulnerability in MagnusSolution magnusbilling 6.x and 7.x allows remote attackers to run arbitrary com... |
| CVE-2023-29860 | HIGH | 7.5 | 0.6% | Jun 23, 2023 | An insecure permissions in /Taier/API/tenant/listTenant interface in DTStack Taier 1.3.0 allows attackers to view sensit... |
| CVE-2023-28065 | HIGH | 7.3 | 0.2% | Jun 23, 2023 | Dell Command | Update, Dell Update, and Alienware Update versions 4.8.0 and prior contain an Insecure Operation on Wind... |
| CVE-2023-3383 | CRITICAL | 9.8 | 0.8% | Jun 23, 2023 | A vulnerability, which was classified as critical, was found in SourceCodester Game Result Matrix System 1.0. This affec... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now