2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-34796 | MEDIUM | 6.1 | 0.7% | Jun 22, 2023 | Cross site scripting (XSS) vulnerabiliy in dmarcts-report-viewer dashboard versions 1.1 and thru commit 8a1d882b4c481a05... |
| CVE-2023-3326 | CRITICAL | 9.8 | 1.1% | Jun 22, 2023 | pam_krb5 authenticates a user by essentially running kinit with the password, getting a ticket-granting ticket (tgt) fro... |
| CVE-2023-3256 | HIGH | 8.1 | 0.6% | Jun 22, 2023 | Advantech R-SeeNet versions 2.4.22 allows low-level users to access and load the content of local files. |
| CVE-2023-2611 | CRITICAL | 9.8 | 0.7% | Jun 22, 2023 | Advantech R-SeeNet versions 2.4.22 is installed with a hidden root-level user that is not available in the users lis... |
| CVE-2023-36097 | CRITICAL | 9.8 | 0.9% | Jun 22, 2023 | funadmin v3.3.2 and v3.3.3 are vulnerable to Insecure file upload via the plugins install. |
| CVE-2023-36093 | MEDIUM | 5.4 | 0.4% | Jun 22, 2023 | There is a storage type cross site scripting (XSS) vulnerability in the filing number of the Basic Information tab on th... |
| CVE-2023-34170 | MEDIUM | 4.8 | 0.4% | Jun 22, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in WP Overnight Quick/Bulk Order Form for WooCommerce plu... |
| CVE-2023-34028 | HIGH | 8.8 | 0.3% | Jun 22, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in realmag777 WOLF – WordPress Posts Bulk Editor and Manager Professiona... |
| CVE-2023-36371 | HIGH | 7.5 | 0.7% | Jun 22, 2023 | An issue in the GDKfree component of MonetDB Server v11.45.17 and v11.46.0 allows attackers to cause a Denial of Service... |
| CVE-2023-36370 | HIGH | 7.5 | 0.7% | Jun 22, 2023 | An issue in the gc_col component of MonetDB Server v11.45.17 and v11.46.0 allows attackers to cause a Denial of Service ... |
| CVE-2023-36369 | HIGH | 7.5 | 0.7% | Jun 22, 2023 | An issue in the list_append component of MonetDB Server v11.45.17 and v11.46.0 allows attackers to cause a Denial of Ser... |
| CVE-2023-36368 | HIGH | 7.5 | 0.7% | Jun 22, 2023 | An issue in the cs_bind_ubat component of MonetDB Server v11.45.17 and v11.46.0 allows attackers to cause a Denial of Se... |
| CVE-2023-36367 | HIGH | 7.5 | 0.7% | Jun 22, 2023 | An issue in the BLOBcmp component of MonetDB Server v11.45.17 and v11.46.0 allows attackers to cause a Denial of Service... |
| CVE-2023-36366 | HIGH | 7.5 | 0.7% | Jun 22, 2023 | An issue in the log_create_delta component of MonetDB Server v11.45.17 and v11.46.0 allows attackers to cause Denial of ... |
| CVE-2023-36365 | HIGH | 7.5 | 0.7% | Jun 22, 2023 | An issue in the sql_trans_copy_key component of MonetDB Server v11.45.17 and v11.46.0 allows attackers to cause a Denial... |
| CVE-2023-36364 | HIGH | 7.5 | 0.8% | Jun 22, 2023 | An issue in the rel_deps component of MonetDB Server v11.45.17 and v11.46.0 allows attackers to cause a Denial of Servic... |
| CVE-2023-36363 | HIGH | 7.5 | 0.8% | Jun 22, 2023 | An issue in the __nss_database_lookup component of MonetDB Server v11.45.17 and v11.46.0 allows attackers to cause a Den... |
| CVE-2023-36362 | HIGH | 7.5 | 0.8% | Jun 22, 2023 | An issue in the rel_sequences component of MonetDB Server v11.45.17 and v11.46.0 allows attackers to cause a Denial of S... |
| CVE-2023-35926 | CRITICAL | 9.9 | 1.9% | Jun 22, 2023 | Backstage is an open platform for building developer portals. The Backstage scaffolder-backend plugin uses a templating ... |
| CVE-2023-35174 | CRITICAL | 9.8 | 1.0% | Jun 22, 2023 | Livebook is a web application for writing interactive and collaborative code notebooks. On Windows, it is possible to op... |
| CVE-2023-34927 | MEDIUM | 6.5 | 3.1% | Jun 22, 2023 | Casdoor v1.331.0 and below was discovered to contain a Cross-Site Request Forgery (CSRF) in the endpoint /api/set-passwo... |
| CVE-2023-34368 | MEDIUM | 4.8 | 0.4% | Jun 22, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Kanban for WordPress Kanban Boards for WordPress plugi... |
| CVE-2023-34006 | MEDIUM | 4.8 | 0.4% | Jun 22, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Marco Milesi Telegram Bot & Channel plugin <= 3.6.2 ve... |
| CVE-2023-33997 | MEDIUM | 6.1 | 0.4% | Jun 22, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Robin Wilson bbp style pack plugin <= 5.5.5 versions. |
| CVE-2023-33323 | MEDIUM | 4.8 | 0.4% | Jun 22, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Repute InfoSystems ARMember plugin <= 4.0.2 versions. |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now