2023 CVE Vulnerabilities
31,411 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-1019 | MEDIUM | 5.4 | 0.5% | May 15, 2023 | The Help Desk WP WordPress plugin through 1.2.0 does not sanitise and escape some parameters, which could allow users wi... |
| CVE-2023-0892 | MEDIUM | 4.8 | 0.5% | May 15, 2023 | The BizLibrary WordPress plugin through 1.1 does not sanitise and escape some of its settings, which could allow high pr... |
| CVE-2023-0812 | HIGH | 7.5 | 0.8% | May 15, 2023 | The Active Directory Integration / LDAP Integration WordPress plugin before 4.1.1 does not have proper authorization or ... |
| CVE-2023-0763 | MEDIUM | 4.3 | 0.3% | May 15, 2023 | The Clock In Portal- Staff & Attendance Management WordPress plugin through 2.1 does not have CSRF check when deleting H... |
| CVE-2023-0762 | MEDIUM | 4.3 | 0.3% | May 15, 2023 | The Clock In Portal- Staff & Attendance Management WordPress plugin through 2.1 does not have CSRF check when deleting d... |
| CVE-2023-0761 | MEDIUM | 4.3 | 0.3% | May 15, 2023 | The Clock In Portal- Staff & Attendance Management WordPress plugin through 2.1 does not have CSRF check when deleting S... |
| CVE-2023-0644 | MEDIUM | 6.1 | 0.5% | May 15, 2023 | The Push Notifications for WordPress by PushAssist WordPress plugin through 3.0.8 does not sanitise and escape various p... |
| CVE-2023-0600 | CRITICAL | 9.8 | 4.2% | May 15, 2023 | The WP Visitor Statistics (Real Time Traffic) WordPress plugin before 6.9 does not escape user input which is concatenat... |
| CVE-2023-0520 | MEDIUM | 5.4 | 0.2% | May 15, 2023 | The RapidExpCart WordPress plugin through 1.0 does not sanitize and escape the url parameter in the rapidexpcart endpoin... |
| CVE-2023-0490 | MEDIUM | 5.4 | 0.5% | May 15, 2023 | The f(x) TOC WordPress plugin through 1.1.0 does not validate and escape some of its shortcode attributes before outputt... |
| CVE-2023-0233 | MEDIUM | 5.4 | 0.5% | May 15, 2023 | The ActiveCampaign WordPress plugin before 8.1.12 does not validate and escape some of its block options before outputti... |
| CVE-2023-31986 | CRITICAL | 9.8 | 8.2% | May 15, 2023 | A Command Injection vulnerability in Edimax Wireless Router N300 Firmware BR-6428NS_v4 allows attacker to execute arbitr... |
| CVE-2023-23688 | MEDIUM | 5.4 | 0.4% | May 15, 2023 | Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Sumo Social Share Boost plugin <= 4.4 versions. |
| CVE-2023-23683 | MEDIUM | 4.8 | 0.4% | May 15, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Ozan Canakli White Label Branding for Elementor Page B... |
| CVE-2023-23674 | MEDIUM | 4.8 | 0.4% | May 15, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in RVOLA WP Original Media Path plugin <= 2.4.0 versions. |
| CVE-2023-23654 | MEDIUM | 4.8 | 0.4% | May 15, 2023 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in SparkPost plugin <= 3.2.5 versions. |
| CVE-2023-22717 | MEDIUM | 5.4 | 0.4% | May 15, 2023 | Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in nCrafts FormCraft plugin <= 1.2.6 versions. |
| CVE-2023-22706 | MEDIUM | 6.1 | 0.4% | May 15, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in PropertyHive plugin <= 1.5.48 versions. |
| CVE-2023-31409 | HIGH | 7.5 | 1.1% | May 15, 2023 | Uncontrolled Resource Consumption in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120114, 1120... |
| CVE-2023-31408 | HIGH | 7.5 | 0.4% | May 15, 2023 | Cleartext Storage of Sensitive Information in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120... |
| CVE-2023-23450 | CRITICAL | 9.8 | 0.7% | May 15, 2023 | Use of Password Hash Instead of Password for Authentication in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 11002... |
| CVE-2023-23449 | MEDIUM | 5.3 | 0.8% | May 15, 2023 | Observable Response Discrepancy in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120114, 112011... |
| CVE-2023-23448 | MEDIUM | 5.3 | 0.8% | May 15, 2023 | Inclusion of Sensitive Information in Source Code in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 110021... |
| CVE-2023-23447 | HIGH | 7.5 | 1.1% | May 15, 2023 | Uncontrolled Resource Consumption in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120114, 1120... |
| CVE-2023-23446 | HIGH | 7.5 | 0.9% | May 15, 2023 | Improper Access Control in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120114, 1120116, 11225... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now