2023 CVE Vulnerabilities

31,411 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-2897MEDIUM5.3The Brizy Page Builder plugin for WordPress is vulnerable to IP Address Spoofing in versions up to, and including, 2.4.1...
CVE-2023-2896MEDIUM4.3The WP EasyCart plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 5.4.8...
CVE-2023-2895MEDIUM4.3The WP EasyCart plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 5.4.8...
CVE-2023-2894MEDIUM4.3The WP EasyCart plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 5.4.8...
CVE-2023-2893MEDIUM4.3The WP EasyCart plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 5.4.8...
CVE-2023-2892MEDIUM4.3The WP EasyCart plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 5.4.8...
CVE-2023-3177HIGH8.8A vulnerability has been found in SourceCodester Lost and Found Information System 1.0 and classified as critical. Affec...
CVE-2023-3176HIGH8.8A vulnerability, which was classified as critical, was found in SourceCodester Lost and Found Information System 1.0. Af...
CVE-2023-2891MEDIUM4.3The WP EasyCart plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 5.4.8...
CVE-2023-2767MEDIUM5.5The WordPress File Upload and WordPress File Upload Pro plugins for WordPress are vulnerable to Stored Cross-Site Script...
CVE-2023-2764MEDIUM4.3The Draw Attention plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability c...
CVE-2023-2688MEDIUM4.9The WordPress File Upload and WordPress File Upload Pro plugins for WordPress are vulnerable to Path Traversal in versio...
CVE-2023-2607HIGH7.2The Multiple Page Generator Plugin for WordPress is vulnerable to time-based SQL Injection via the orderby and order par...
CVE-2023-2604MEDIUM6.1The Team Circle Image Slider With Lightbox plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ...
CVE-2023-2599MEDIUM6.5The Active Directory Integration plugin for WordPress is vulnerable to Cross-Site Request Forgery leading to time-based ...
CVE-2023-2584MEDIUM4.8The PixelYourSite plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in versions up to...
CVE-2023-2558MEDIUM5.4The WPCS – WordPress Currency Switcher Professional plugin for WordPress is vulnerable to Stored Cross-Site Scripting vi...
CVE-2023-2557MEDIUM4.3The WPCS – WordPress Currency Switcher Professional plugin for WordPress is vulnerable to unauthorized modification of d...
CVE-2023-2556MEDIUM4.3The WPCS – WordPress Currency Switcher Professional plugin for WordPress is vulnerable to unauthorized modification of d...
CVE-2023-2555MEDIUM4.3The WPCS – WordPress Currency Switcher Professional plugin for WordPress is vulnerable to unauthorized modification of d...
CVE-2023-2526MEDIUM5.4The Easy Google Maps plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, ...
CVE-2023-2484MEDIUM4.9The Active Directory Integration plugin for WordPress is vulnerable to time-based SQL Injection via the orderby and orde...
CVE-2023-2452MEDIUM4.4The Advanced Woo Search plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in version...
CVE-2023-2450MEDIUM4.4The FiboSearch - AJAX Search for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin...
CVE-2023-2414MEDIUM4.3The Online Booking & Scheduling Calendar for WordPress by vcita plugin for WordPress is vulnerable to unauthorized modif...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now