2023 CVE Vulnerabilities
31,244 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-32299 | MEDIUM | 6.5 | 0.4% | Dec 9, 2024 | Missing Authorization vulnerability in Anzar Ahmed Ni WooCommerce Sales Report ni-woocommerce-sales-report allows Exploi... |
| CVE-2023-32293 | MEDIUM | 5.3 | 0.5% | Dec 9, 2024 | Missing Authorization vulnerability in Realwebcare WRC Pricing Tables allows Exploiting Incorrectly Configured Access Co... |
| CVE-2023-32126 | MEDIUM | 4.3 | 0.4% | Dec 9, 2024 | Missing Authorization vulnerability in WPoperation SALERT allows Exploiting Incorrectly Configured Access Control Securi... |
| CVE-2023-32117 | CRITICAL | 9.8 | 6.3% | Dec 9, 2024 | Missing Authorization vulnerability in SoftLab Integrate Google Drive allows Exploiting Incorrectly Configured Access Co... |
| CVE-2023-32094 | MEDIUM | 5.4 | 0.3% | Dec 9, 2024 | Missing Authorization vulnerability in Felix Welberg Extended Post Status allows Exploiting Incorrectly Configured Acces... |
| CVE-2023-31214 | MEDIUM | 5.4 | 0.3% | Dec 9, 2024 | Missing Authorization vulnerability in Arul Prasad J WP Quick Post Duplicator allows Exploiting Incorrectly Configured A... |
| CVE-2023-31073 | MEDIUM | 4.3 | 0.4% | Dec 9, 2024 | Missing Authorization vulnerability in Jose Vega Display custom fields in the frontend – Post and User Profile Fields al... |
| CVE-2023-30873 | HIGH | 8.8 | 0.5% | Dec 9, 2024 | Missing Authorization vulnerability in Fahad Mahmood WP Docs allows Exploiting Incorrectly Configured Access Control Sec... |
| CVE-2023-30870 | MEDIUM | 6.5 | 0.4% | Dec 9, 2024 | Missing Authorization vulnerability in wooproductimporter Sharkdropship for AliExpress Dropship and Affiliate allows Exp... |
| CVE-2023-30783 | MEDIUM | 4.3 | 0.4% | Dec 9, 2024 | Missing Authorization vulnerability in YummyWP Smart WooCommerce Search allows Exploiting Incorrectly Configured Access ... |
| CVE-2023-30748 | MEDIUM | 6.1 | 0.3% | Dec 9, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Nikola Loncar Easy... |
| CVE-2023-30488 | MEDIUM | 5.3 | 0.4% | Dec 9, 2024 | Missing Authorization vulnerability in WP OnlineSupport, Essential Plugin Featured Post Creative allows Exploiting Incor... |
| CVE-2023-30486 | MEDIUM | 4.3 | 0.7% | Dec 9, 2024 | Missing Authorization vulnerability in HashThemes Square allows Exploiting Incorrectly Configured Access Control Securit... |
| CVE-2023-30479 | MEDIUM | 5.3 | 0.5% | Dec 9, 2024 | Missing Authorization vulnerability in Stamped.io Stamped.io Product Reviews & UGC for WooCommerce allows Exploiting Inc... |
| CVE-2023-30476 | MEDIUM | 4.3 | 0.4% | Dec 9, 2024 | Missing Authorization vulnerability in Sparkle Themes Blogger Buzz allows Exploiting Incorrectly Configured Access Contr... |
| CVE-2023-29433 | MEDIUM | 5.4 | 0.4% | Dec 9, 2024 | Missing Authorization vulnerability in 腾讯云 tencentcloud-cos allows Exploiting Incorrectly Configured Access Control Secu... |
| CVE-2023-29431 | MEDIUM | 4.3 | 0.4% | Dec 9, 2024 | Missing Authorization vulnerability in OntheGoSystems qTranslate X Cleanup and WPML Import allows Exploiting Incorrectly... |
| CVE-2023-29429 | MEDIUM | 5.3 | 0.4% | Dec 9, 2024 | Missing Authorization vulnerability in WPEverest User Registration allows Exploiting Incorrectly Configured Access Contr... |
| CVE-2023-29422 | MEDIUM | 4.3 | 0.4% | Dec 9, 2024 | Missing Authorization vulnerability in AlexaCRM Dynamics 365 Integration allows Exploiting Incorrectly Configured Access... |
| CVE-2023-29239 | MEDIUM | 5.4 | 0.3% | Dec 9, 2024 | Missing Authorization vulnerability in LuckyWP LuckyWP Scripts Control allows Exploiting Incorrectly Configured Access C... |
| CVE-2023-29237 | MEDIUM | 6.3 | 0.3% | Dec 9, 2024 | Missing Authorization vulnerability in Muhammad Rehman Remove Duplicate Posts allows Exploiting Incorrectly Configured A... |
| CVE-2023-29173 | MEDIUM | 5.3 | 0.4% | Dec 9, 2024 | Missing Authorization vulnerability in AWESOME TOGI Product Category Tree allows Exploiting Incorrectly Configured Acces... |
| CVE-2023-28689 | MEDIUM | 6.5 | 0.5% | Dec 9, 2024 | Missing Authorization vulnerability in JoomSky JS Job Manager allows Exploiting Incorrectly Configured Access Control Se... |
| CVE-2023-28688 | MEDIUM | 5.4 | 0.2% | Dec 9, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in ThemeHunk TH Variation Swatches allows Cross Site Request Forgery.Thi... |
| CVE-2023-28536 | MEDIUM | 5.3 | 0.4% | Dec 9, 2024 | Missing Authorization vulnerability in Acato Branded Social Images allows Exploiting Incorrectly Configured Access Contr... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now