2023 CVE Vulnerabilities

31,411 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-3091HIGH7.8** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in Captura up to 8.0.0. It has been declared as critical. This...
CVE-2023-3086CRITICAL9Cross-site Scripting (XSS) - Stored in GitHub repository nilsteampassnet/teampass prior to 3.0.9.
CVE-2023-32582MEDIUM4.8Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Kyle Maurer Don8 plugin <= 0.4 versions.
CVE-2023-3085MEDIUM6.1A vulnerability, which was classified as problematic, has been found in X-WRT luci up to 22.10_b202303061504. This issue...
CVE-2023-3084HIGH8.1Cross-site Scripting (XSS) - Stored in GitHub repository nilsteampassnet/teampass prior to 3.0.9.
CVE-2023-3083HIGH8.7Cross-site Scripting (XSS) - Stored in GitHub repository nilsteampassnet/teampass prior to 3.0.9.
CVE-2023-2416MEDIUM6.5The Online Booking & Scheduling Calendar for WordPress by vcita plugin for WordPress is vulnerable to Cross-Site Request...
CVE-2023-2415MEDIUM5.4The Online Booking & Scheduling Calendar for WordPress by vcita plugin for WordPress is vulnerable to unauthorized modif...
CVE-2023-2407MEDIUM6.5The Event Registration Calendar By vcita plugin, versions up to and including 3.10.0, and Online Payments – Get Paid wit...
CVE-2023-2406MEDIUM5.4The Event Registration Calendar By vcita plugin, versions up to and including 3.9.1, and Online Payments – Get Paid with...
CVE-2023-2405MEDIUM6.5The CRM and Lead Management by vcita plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to,...
CVE-2023-2404MEDIUM5.4The CRM and Lead Management by vcita plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'email' p...
CVE-2023-2303MEDIUM6.1The Contact Form and Calls To Action by vcita plugin for WordPress is vulnerable to Cross-Site Request Forgery in versio...
CVE-2023-2302MEDIUM5.4The Contact Form and Calls To Action by vcita plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ...
CVE-2023-2301MEDIUM6.1The Contact Form Builder by vcita plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, an...
CVE-2023-2300MEDIUM5.4The Contact Form Builder by vcita plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'email' para...
CVE-2023-2299MEDIUM5.3The Online Booking & Scheduling Calendar for WordPress by vcita plugin for WordPress is vulnerable to unauthorized medic...
CVE-2023-2298MEDIUM6.1The Online Booking & Scheduling Calendar for WordPress by vcita plugin for WordPress is vulnerable to Stored Cross-Site ...
CVE-2023-0584MEDIUM4.3The VK Blocks plugin for WordPress is vulnerable to improper authorization via the REST 'update_options' function in ver...
CVE-2023-0583MEDIUM4.3The VK Blocks plugin for WordPress is vulnerable to improper authorization via the REST 'update_vk_blocks_options' funct...
CVE-2023-33143HIGH7.5Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
CVE-2023-3055MEDIUM4.3The Page Builder by AZEXO plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includ...
CVE-2023-3053MEDIUM4.3The Page Builder by AZEXO plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capab...
CVE-2023-3052HIGH8.8The Page Builder by AZEXO plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includ...
CVE-2023-3051MEDIUM5.4The Page Builder by AZEXO plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'azh_post' shortcode in ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now