2023 CVE Vulnerabilities

31,411 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-34796MEDIUM6.1Cross site scripting (XSS) vulnerabiliy in dmarcts-report-viewer dashboard versions 1.1 and thru commit 8a1d882b4c481a05...
CVE-2023-3326CRITICAL9.8pam_krb5 authenticates a user by essentially running kinit with the password, getting a ticket-granting ticket (tgt) fro...
CVE-2023-3256HIGH8.1Advantech R-SeeNet versions 2.4.22 allows low-level users to access and load the content of local files.
CVE-2023-2611CRITICAL9.8Advantech R-SeeNet versions 2.4.22 is installed with a hidden root-level user that is not available in the users lis...
CVE-2023-36097CRITICAL9.8funadmin v3.3.2 and v3.3.3 are vulnerable to Insecure file upload via the plugins install.
CVE-2023-36093MEDIUM5.4There is a storage type cross site scripting (XSS) vulnerability in the filing number of the Basic Information tab on th...
CVE-2023-34170MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in WP Overnight Quick/Bulk Order Form for WooCommerce plu...
CVE-2023-34028HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in realmag777 WOLF – WordPress Posts Bulk Editor and Manager Professiona...
CVE-2023-36371HIGH7.5An issue in the GDKfree component of MonetDB Server v11.45.17 and v11.46.0 allows attackers to cause a Denial of Service...
CVE-2023-36370HIGH7.5An issue in the gc_col component of MonetDB Server v11.45.17 and v11.46.0 allows attackers to cause a Denial of Service ...
CVE-2023-36369HIGH7.5An issue in the list_append component of MonetDB Server v11.45.17 and v11.46.0 allows attackers to cause a Denial of Ser...
CVE-2023-36368HIGH7.5An issue in the cs_bind_ubat component of MonetDB Server v11.45.17 and v11.46.0 allows attackers to cause a Denial of Se...
CVE-2023-36367HIGH7.5An issue in the BLOBcmp component of MonetDB Server v11.45.17 and v11.46.0 allows attackers to cause a Denial of Service...
CVE-2023-36366HIGH7.5An issue in the log_create_delta component of MonetDB Server v11.45.17 and v11.46.0 allows attackers to cause Denial of ...
CVE-2023-36365HIGH7.5An issue in the sql_trans_copy_key component of MonetDB Server v11.45.17 and v11.46.0 allows attackers to cause a Denial...
CVE-2023-36364HIGH7.5An issue in the rel_deps component of MonetDB Server v11.45.17 and v11.46.0 allows attackers to cause a Denial of Servic...
CVE-2023-36363HIGH7.5An issue in the __nss_database_lookup component of MonetDB Server v11.45.17 and v11.46.0 allows attackers to cause a Den...
CVE-2023-36362HIGH7.5An issue in the rel_sequences component of MonetDB Server v11.45.17 and v11.46.0 allows attackers to cause a Denial of S...
CVE-2023-35926CRITICAL9.9Backstage is an open platform for building developer portals. The Backstage scaffolder-backend plugin uses a templating ...
CVE-2023-35174CRITICAL9.8Livebook is a web application for writing interactive and collaborative code notebooks. On Windows, it is possible to op...
CVE-2023-34927MEDIUM6.5Casdoor v1.331.0 and below was discovered to contain a Cross-Site Request Forgery (CSRF) in the endpoint /api/set-passwo...
CVE-2023-34368MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Kanban for WordPress Kanban Boards for WordPress plugi...
CVE-2023-34006MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Marco Milesi Telegram Bot & Channel plugin <= 3.6.2 ve...
CVE-2023-33997MEDIUM6.1Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Robin Wilson bbp style pack plugin <= 5.5.5 versions.
CVE-2023-33323MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Repute InfoSystems ARMember plugin <= 4.0.2 versions.

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now