2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-34162 | HIGH | 7.5 | 0.4% | Jun 19, 2023 | Version update determination vulnerability in the user profile module.Successful exploitation of this vulnerability may ... |
| CVE-2023-34161 | HIGH | 7.5 | 0.4% | Jun 19, 2023 | nappropriate authorization vulnerability in the SettingsProvider module.Successful exploitation of this vulnerability ma... |
| CVE-2023-34160 | MEDIUM | 5.3 | 0.3% | Jun 19, 2023 | Vulnerability of spoofing trustlists of Huawei desktop.Successful exploitation of this vulnerability can cause third-par... |
| CVE-2023-34159 | CRITICAL | 9.8 | 0.5% | Jun 19, 2023 | Improper permission control vulnerability in the Notepad app.Successful exploitation of the vulnerability may lead to pr... |
| CVE-2023-34158 | MEDIUM | 5.3 | 0.3% | Jun 19, 2023 | Vulnerability of spoofing trustlists of Huawei desktop.Successful exploitation of this vulnerability can cause third-par... |
| CVE-2023-34156 | MEDIUM | 5.3 | 0.4% | Jun 19, 2023 | Vulnerability of services denied by early fingerprint APIs on HarmonyOS products.Successful exploitation of this vulnera... |
| CVE-2023-34155 | HIGH | 7.5 | 0.4% | Jun 19, 2023 | Vulnerability of unauthorized calling on HUAWEI phones and tablets.Successful exploitation of this vulnerability may aff... |
| CVE-2023-31411 | CRITICAL | 9.8 | 0.9% | Jun 19, 2023 | A remote unprivileged attacker can modify and access configuration settings on the EventCam App due to the absence of AP... |
| CVE-2023-31410 | HIGH | 7.4 | 0.3% | Jun 19, 2023 | A remote unprivileged attacker can intercept the communication via e.g. Man-In-The-Middle, due to the absence of Transpo... |
| CVE-2023-35779 | MEDIUM | 4.8 | 0.4% | Jun 19, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Seed Webs Seed Fonts plugin <= 2.3.1 versions. |
| CVE-2023-35776 | MEDIUM | 5.4 | 0.5% | Jun 19, 2023 | Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Beplus Sermon'e – Sermons Online plugin <= 1.0.0... |
| CVE-2023-35775 | MEDIUM | 6.1 | 0.4% | Jun 19, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in WP Backup Solutions WP Backup Manager plugin <= 1.13.1 ver... |
| CVE-2023-35772 | MEDIUM | 6.1 | 0.4% | Jun 19, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Alain Gonzalez Google Map Shortcode plugin <= 3.1.2 versio... |
| CVE-2023-3318 | MEDIUM | 5.4 | 0.6% | Jun 19, 2023 | A vulnerability was found in SourceCodester Resort Management System 1.0. It has been declared as problematic. Affected ... |
| CVE-2023-34373 | HIGH | 8.8 | 0.2% | Jun 19, 2023 | Cross-Site Request Forgery (CSRF) vulnerability in Dylan James Zephyr Project Manager plugin <= 3.3.93 versions. |
| CVE-2023-33213 | MEDIUM | 4.8 | 0.4% | Jun 19, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in gVectors Display Custom Fields – wpView plugin <= 1.3.... |
| CVE-2023-2907 | CRITICAL | 9.8 | 0.6% | Jun 19, 2023 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Marksoft allows SQ... |
| CVE-2023-3316 | MEDIUM | 6.5 | 1.1% | Jun 19, 2023 | A NULL pointer dereference in TIFFClose() is caused by a failure to open an output file (non-existent path or a path tha... |
| CVE-2023-27992 | CRITICAL | 9.8 | 84.3% | Jun 19, 2023 | The pre-authentication command injection vulnerability in the Zyxel NAS326 firmware versions prior to V5.21(AAZF.14)C0, ... |
| CVE-2023-34417 | CRITICAL | 9.8 | 0.8% | Jun 19, 2023 | Memory safety bugs present in Firefox 113. Some of these bugs showed evidence of memory corruption and we presume that w... |
| CVE-2023-34416 | CRITICAL | 9.8 | 0.9% | Jun 19, 2023 | Memory safety bugs present in Firefox 113, Firefox ESR 102.11, and Thunderbird 102.12. Some of these bugs showed evidenc... |
| CVE-2023-34415 | MEDIUM | 6.1 | 0.4% | Jun 19, 2023 | When choosing a site-isolated process for a document loaded from a data: URL that was the result of a redirect, Firefox ... |
| CVE-2023-34414 | LOW | 3.1 | 0.9% | Jun 19, 2023 | The error page for sites with invalid TLS certificates was missing the activation-delay Firefox uses to protect prompts ... |
| CVE-2023-2899 | MEDIUM | 5.4 | 0.4% | Jun 19, 2023 | The Google Map Shortcode WordPress plugin through 3.1.2 does not validate and escape some of its shortcode attributes be... |
| CVE-2023-2812 | MEDIUM | 4.8 | 0.5% | Jun 19, 2023 | The Ultimate Dashboard WordPress plugin before 3.7.6 does not sanitise and escape some of its settings, which could allo... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now