2023 CVE Vulnerabilities

31,411 CVEs published in 2023.

CVE IDSeverityCVSSDescription
CVE-2023-1807MEDIUM4.3The Elementor Addons, Widgets and Enhancements – Stax plugin for WordPress is vulnerable to Cross-Site Request Forgery i...
CVE-2023-1615MEDIUM6.5The Ultimate Addons for Contact Form 7 plugin for WordPress is vulnerable to SQL Injection via the 'id' parameter in ver...
CVE-2023-1430MEDIUM6.5The FluentCRM - Marketing Automation For WordPress plugin for WordPress is vulnerable to unauthorized modification of d...
CVE-2023-1404MEDIUM5.4The Weaver Show Posts Plugin for WordPress is vulnerable to stored Cross-Site Scripting due to insufficient escaping of ...
CVE-2023-1403MEDIUM5.4The Weaver Xtreme Theme for WordPress is vulnerable to stored Cross-Site Scripting due to insufficient escaping of the p...
CVE-2023-1375MEDIUM4.3The WP Fastest Cache plugin for WordPress is vulnerable to unauthorized cache deletion in versions up to, and including,...
CVE-2023-1169MEDIUM4.3The OoohBoi Steroids for Elementor plugin for WordPress is vulnerable to missing authorization due to a missing capabili...
CVE-2023-1016HIGH7.2The Intuitive Custom Post Order plugin for WordPress is vulnerable to SQL Injection in versions up to, and including, 3....
CVE-2023-0993MEDIUM4.3The Shield Security plugin for WordPress is vulnerable to Missing Authorization on the 'theme-plugin-file' AJAX action i...
CVE-2023-0992MEDIUM6.1The Shield Security plugin for WordPress is vulnerable to stored Cross-Site Scripting in versions up to, and including, ...
CVE-2023-0832MEDIUM4.3The Under Construction plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including...
CVE-2023-0831MEDIUM4.3The Under Construction plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including...
CVE-2023-0729MEDIUM4.3The Wicked Folders plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2....
CVE-2023-0721HIGH7.8The Metform Elementor Contact Form Builder plugin for WordPress is vulnerable to CSV injection in versions up to, and in...
CVE-2023-0710MEDIUM5.4The Metform Elementor Contact Form Builder for WordPress is vulnerable to Cross-Site Scripting by using the 'fname' attr...
CVE-2023-0709MEDIUM5.4The Metform Elementor Contact Form Builder for WordPress is vulnerable to Cross-Site Scripting by using the 'mf_last_nam...
CVE-2023-0708MEDIUM5.4The Metform Elementor Contact Form Builder for WordPress is vulnerable to Cross-Site Scripting by using the 'mf_first_na...
CVE-2023-0695MEDIUM5.4The Metform Elementor Contact Form Builder for WordPress is vulnerable to Cross-Site Scripting by using the 'mf' shortco...
CVE-2023-0694MEDIUM4.3The Metform Elementor Contact Form Builder for WordPress is vulnerable to Information Disclosure via the 'mf' shortcode ...
CVE-2023-0693MEDIUM4.3The Metform Elementor Contact Form Builder for WordPress is vulnerable to Information Disclosure via the 'mf_transaction...
CVE-2023-0692MEDIUM4.3The Metform Elementor Contact Form Builder for WordPress is vulnerable to Information Disclosure via the 'mf_payment_sta...
CVE-2023-0691MEDIUM4.3The Metform Elementor Contact Form Builder for WordPress is vulnerable to Information Disclosure via the 'mf_last_name' ...
CVE-2023-0688MEDIUM6.5The Metform Elementor Contact Form Builder for WordPress is vulnerable to Information Disclosure via the 'mf_thankyou' s...
CVE-2023-0292HIGH8.1The Quiz And Survey Master plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and inclu...
CVE-2023-0291CRITICAL9.1The Quiz And Survey Master for WordPress is vulnerable to authorization bypass due to a missing capability check on the ...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now