2023 CVE Vulnerabilities

31,245 CVEs published in 2023.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2023-5742MEDIUM5.4The EasyRotator for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'easyro...
CVE-2023-5715MEDIUM4.8The Website Optimization – Plerdy plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's tra...
CVE-2023-5708MEDIUM5.4The WP Post Columns plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'column' shortcod...
CVE-2023-5706MEDIUM5.4The VK Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'vk-blocks/ancestor-pag...
CVE-2023-5704MEDIUM5.4The CPO Shortcodes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcodes in all ...
CVE-2023-5667MEDIUM5.4The Tab Ultimate plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcodes in all ve...
CVE-2023-5664MEDIUM5.4The Garden Gnome Package plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'ggpkg' shor...
CVE-2023-5662MEDIUM5.4The Sponsors plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'sponsors' shortcode in ...
CVE-2023-5537MEDIUM4.3The Delete Usermeta plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1...
CVE-2023-5469MEDIUM5.4The Drop Shadow Boxes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'dropshadowbox' shortcode in...
CVE-2023-5419MEDIUM4.3The Funnelforms Free plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability...
CVE-2023-5417MEDIUM4.3The Funnelforms Free plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability...
CVE-2023-5416MEDIUM4.3The Funnelforms Free plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability...
CVE-2023-5415MEDIUM4.3The Funnelforms Free plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability...
CVE-2023-5411MEDIUM4.3The Funnelforms Free plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability...
CVE-2023-5387MEDIUM4.3The Funnelforms Free plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability...
CVE-2023-5386MEDIUM4.3The Funnelforms Free plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability...
CVE-2023-5385MEDIUM4.3The Funnelforms Free plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability...
CVE-2023-5383MEDIUM4.3The Funnelforms Free plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, ...
CVE-2023-5382MEDIUM4.3The Funnelforms Free plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, ...
CVE-2023-5338MEDIUM5.4The Theme Blvd Shortcodes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via shortcodes in versions u...
CVE-2023-5314MEDIUM4.3The WP EXtra plugin for WordPress is vulnerable to unauthorized access to restricted functionality due to a missing capa...
CVE-2023-5234MEDIUM5.4The Related Products for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'woo-related'...
CVE-2023-5163MEDIUM5.4The Weather Atlas Widget plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'shortcode-weather-atlas'...
CVE-2023-5128MEDIUM5.4The TCD Google Maps plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'map' shortcode in versions up...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now