2023 CVE Vulnerabilities
31,245 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-5742 | MEDIUM | 5.4 | 0.4% | Nov 22, 2023 | The EasyRotator for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'easyro... |
| CVE-2023-5715 | MEDIUM | 4.8 | 0.5% | Nov 22, 2023 | The Website Optimization – Plerdy plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's tra... |
| CVE-2023-5708 | MEDIUM | 5.4 | 0.4% | Nov 22, 2023 | The WP Post Columns plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'column' shortcod... |
| CVE-2023-5706 | MEDIUM | 5.4 | 0.5% | Nov 22, 2023 | The VK Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'vk-blocks/ancestor-pag... |
| CVE-2023-5704 | MEDIUM | 5.4 | 0.4% | Nov 22, 2023 | The CPO Shortcodes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcodes in all ... |
| CVE-2023-5667 | MEDIUM | 5.4 | 0.5% | Nov 22, 2023 | The Tab Ultimate plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcodes in all ve... |
| CVE-2023-5664 | MEDIUM | 5.4 | 0.6% | Nov 22, 2023 | The Garden Gnome Package plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'ggpkg' shor... |
| CVE-2023-5662 | MEDIUM | 5.4 | 0.5% | Nov 22, 2023 | The Sponsors plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'sponsors' shortcode in ... |
| CVE-2023-5537 | MEDIUM | 4.3 | 0.3% | Nov 22, 2023 | The Delete Usermeta plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1... |
| CVE-2023-5469 | MEDIUM | 5.4 | 0.5% | Nov 22, 2023 | The Drop Shadow Boxes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'dropshadowbox' shortcode in... |
| CVE-2023-5419 | MEDIUM | 4.3 | 0.4% | Nov 22, 2023 | The Funnelforms Free plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability... |
| CVE-2023-5417 | MEDIUM | 4.3 | 0.4% | Nov 22, 2023 | The Funnelforms Free plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability... |
| CVE-2023-5416 | MEDIUM | 4.3 | 0.4% | Nov 22, 2023 | The Funnelforms Free plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability... |
| CVE-2023-5415 | MEDIUM | 4.3 | 0.4% | Nov 22, 2023 | The Funnelforms Free plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability... |
| CVE-2023-5411 | MEDIUM | 4.3 | 0.4% | Nov 22, 2023 | The Funnelforms Free plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability... |
| CVE-2023-5387 | MEDIUM | 4.3 | 0.4% | Nov 22, 2023 | The Funnelforms Free plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability... |
| CVE-2023-5386 | MEDIUM | 4.3 | 0.4% | Nov 22, 2023 | The Funnelforms Free plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability... |
| CVE-2023-5385 | MEDIUM | 4.3 | 0.4% | Nov 22, 2023 | The Funnelforms Free plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability... |
| CVE-2023-5383 | MEDIUM | 4.3 | 0.2% | Nov 22, 2023 | The Funnelforms Free plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, ... |
| CVE-2023-5382 | MEDIUM | 4.3 | 0.3% | Nov 22, 2023 | The Funnelforms Free plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, ... |
| CVE-2023-5338 | MEDIUM | 5.4 | 0.4% | Nov 22, 2023 | The Theme Blvd Shortcodes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via shortcodes in versions u... |
| CVE-2023-5314 | MEDIUM | 4.3 | 0.4% | Nov 22, 2023 | The WP EXtra plugin for WordPress is vulnerable to unauthorized access to restricted functionality due to a missing capa... |
| CVE-2023-5234 | MEDIUM | 5.4 | 0.5% | Nov 22, 2023 | The Related Products for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'woo-related'... |
| CVE-2023-5163 | MEDIUM | 5.4 | 0.6% | Nov 22, 2023 | The Weather Atlas Widget plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'shortcode-weather-atlas'... |
| CVE-2023-5128 | MEDIUM | 5.4 | 0.5% | Nov 22, 2023 | The TCD Google Maps plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'map' shortcode in versions up... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now