2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-23795 | HIGH | 8.8 | 0.3% | Jun 22, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Muneeb Form Builder plugin <= 1.9.9.0 versions. |
| CVE-2023-20895 | CRITICAL | 9.8 | 1.4% | Jun 22, 2023 | The VMware vCenter Server contains a memory corruption vulnerability in the implementation of the DCERPC protocol. A mal... |
| CVE-2023-20894 | CRITICAL | 9.8 | 33.9% | Jun 22, 2023 | The VMware vCenter Server contains an out-of-bounds write vulnerability in the implementation of the DCERPC protocol. A ... |
| CVE-2023-20893 | CRITICAL | 9.8 | 1.2% | Jun 22, 2023 | The VMware vCenter Server contains a use-after-free vulnerability in the implementation of the DCERPC protocol. A malici... |
| CVE-2023-20892 | CRITICAL | 9.8 | 1.8% | Jun 22, 2023 | The vCenter Server contains a heap overflow vulnerability due to the usage of uninitialized memory in the implementation... |
| CVE-2023-35090 | MEDIUM | 5.4 | 0.4% | Jun 22, 2023 | Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in StylemixThemes MasterStudy LMS WordPress Plugin ... |
| CVE-2023-34601 | CRITICAL | 9.8 | 0.7% | Jun 22, 2023 | Jeesite before commit 10742d3 was discovered to contain a SQL injection vulnerability via the component ${businessTable}... |
| CVE-2023-33387 | MEDIUM | 6.1 | 0.5% | Jun 22, 2023 | A reflected cross-site scripting (XSS) vulnerability in DATEV eG Personal-Management System Comfort/Comfort Plus v15.1.0... |
| CVE-2023-31213 | MEDIUM | 5.4 | 0.4% | Jun 22, 2023 | Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in WPBakery Page Builder plugin <= 6.13.0 versions. |
| CVE-2023-29931 | CRITICAL | 9.8 | 0.9% | Jun 22, 2023 | laravel-s 3.7.35 is vulnerable to Local File Inclusion via /src/Illuminate/Laravel.php. |
| CVE-2023-29709 | HIGH | 7.5 | 0.7% | Jun 22, 2023 | An issue was discovered in /cgi-bin/login_rj.cgi in Wildix WSG24POE version 103SP7D190822, allows attackers to bypass au... |
| CVE-2023-29708 | HIGH | 7.5 | 15.3% | Jun 22, 2023 | An issue was discovered in /cgi-bin/adm.cgi in WavLink WavRouter version RPT70HA1.x, allows attackers to force a factory... |
| CVE-2023-29707 | MEDIUM | 4.8 | 0.4% | Jun 22, 2023 | Cross Site Scripting (XSS) vulnerability in GBCOM LAC WEB Control Center version lac-1.3.x, allows attackers to create a... |
| CVE-2023-28695 | MEDIUM | 4.8 | 0.4% | Jun 22, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Drew Phillips VigilanTor plugin <= 1.3.10 versions. |
| CVE-2023-28534 | MEDIUM | 5.4 | 0.4% | Jun 22, 2023 | Auth. (subscriber+) Stored Cross-Site Scripting (XSS) vulnerability in WP Job Portal WP Job Portal – A Complete Job Boar... |
| CVE-2023-28496 | MEDIUM | 4.8 | 0.4% | Jun 22, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in SMTP2GO – Email Made Easy plugin <= 1.4.2 versions. |
| CVE-2023-28423 | MEDIUM | 4.8 | 0.4% | Jun 22, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Prism Tech Studios Modern Footnotes plugin <= 1.4.15 v... |
| CVE-2023-28171 | MEDIUM | 5.4 | 0.4% | Jun 22, 2023 | Auth. (subscriber+) Stored Cross-Site Scripting (XSS) vulnerability in WP Chill Brilliance theme <= 1.3.1 versions. |
| CVE-2023-28166 | MEDIUM | 6.1 | 0.4% | Jun 22, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Aakif Kadiwala Tags Cloud Manager plugin <= 1.0.0 versions... |
| CVE-2023-27618 | MEDIUM | 4.8 | 0.4% | Jun 22, 2023 | Auth. (editor+) Stored Cross-Site Scripting (XSS) vulnerability in AGILELOGIX Store Locator WordPress plugin <= 1.4.9 ve... |
| CVE-2023-27631 | MEDIUM | 5.4 | 0.4% | Jun 22, 2023 | Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in mmrs151 Daily Prayer Time plugin <= 2023.05.04 v... |
| CVE-2023-27629 | MEDIUM | 5.4 | 0.4% | Jun 22, 2023 | Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Paul Ryley Site Reviews plugin <= 6.5.1 versions... |
| CVE-2023-27612 | MEDIUM | 5.4 | 0.4% | Jun 22, 2023 | Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Paul Ryley Site Reviews plugin <= 6.5.1 versions... |
| CVE-2023-27413 | MEDIUM | 5.4 | 0.4% | Jun 22, 2023 | Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Shazzad Hossain Khan W4 Post List plugin <= 2.4.... |
| CVE-2023-32449 | HIGH | 7.8 | 0.1% | Jun 22, 2023 | Dell PowerStore versions prior to 3.5 contain an improper verification of cryptographic signature vulnerability. An att... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now