CVE Feed

    Dashboard / CVE

    5.4
    Medium

    CVE-2023-4798

    Last Modified: 21 Nov 2024

    The User Avatar WordPress plugin before 1.2.2 does not properly sanitize and escape certain of its shortcodes attributes, which could allow relatively low-privileged users like contributors to conduct Stored XSS attacks.

    Published: 16 Oct 2023
    7.5
    High

    CVE-2023-5003

    Last Modified: 23 Apr 2025

    The Active Directory Integration / LDAP Integration WordPress plugin before 4.1.10 stores sensitive LDAP logs in a buffer file when an administrator wants to export said logs. Unfortunately, this log file is never removed, and remains accessible to any users knowing the URL to do so.

    Published: 16 Oct 2023
    7.2
    High

    CVE-2023-3155

    Last Modified: 23 Apr 2025

    The WordPress Gallery Plugin WordPress plugin before 3.39 is vulnerable to Arbitrary File Read and Delete due to a lack of input parameter validation in the `gallery_edit` function, allowing an attacker to access arbitrary resources on the server.

    Published: 16 Oct 2023
    5.4
    Medium

    CVE-2023-4805

    Last Modified: 23 Apr 2025

    The Tutor LMS WordPress plugin before 2.3.0 does not sanitise and escape some of its settings, which could allow users such as subscriber to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)

    Published: 16 Oct 2023
    7.5
    High

    CVE-2023-3154

    Last Modified: 21 Nov 2024

    The WordPress Gallery Plugin WordPress plugin before 3.39 is vulnerable to PHAR Deserialization due to a lack of input parameter validation in the `gallery_edit` function, allowing an attacker to access arbitrary resources on the server.

    Published: 16 Oct 2023
    7.2
    High

    CVE-2023-4691

    Last Modified: 23 Apr 2025

    The WordPress Online Booking and Scheduling Plugin WordPress plugin before 22.4 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by high privilege users such as admin

    Published: 16 Oct 2023
    5.4
    Medium

    CVE-2023-4783

    Last Modified: 23 Apr 2025

    The Magee Shortcodes WordPress plugin through 2.1.1 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks.

    Published: 16 Oct 2023
    5.4
    Medium

    CVE-2023-4795

    Last Modified: 23 Apr 2025

    The Testimonial Slider Shortcode WordPress plugin before 1.1.9 does not validate and escape some of its shortcode attributes before outputting them back in the page, which could allow users with a role as low as contributor to perform Stored Cross-Site Scripting attacks which could be used against high privilege users such as admin

    Published: 16 Oct 2023
    6.1
    Medium

    CVE-2023-4687

    Last Modified: 23 Apr 2025

    The Page Builder: Pagelayer WordPress plugin before 1.7.7 doesn't prevent unauthenticated attackers from updating a post's header or footer code on scheduled posts.

    Published: 16 Oct 2023
    4.8
    Medium

    CVE-2023-4388

    Last Modified: 23 Apr 2025

    The EventON WordPress plugin before 2.2 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)

    Published: 16 Oct 2023
    5.4
    Medium

    CVE-2023-5167

    Last Modified: 23 Apr 2025

    The User Activity Log Pro WordPress plugin before 2.3.4 does not properly escape recorded User-Agents in the user activity logs dashboard, which may allow visitors to conduct Stored Cross-Site Scripting attacks.

    Published: 16 Oct 2023
    8.8
    High

    CVE-2023-4776

    Last Modified: 23 Apr 2025

    The School Management System WordPress plugin before 2.2.5 uses the WordPress esc_sql() function on a field not delimited by quotes and did not first prepare the query, leading to a SQL injection exploitable by relatively low-privilege users like Teachers.

    Published: 16 Oct 2023
    8.8
    High

    CVE-2023-4643

    Last Modified: 23 Apr 2025

    The Enable Media Replace WordPress plugin before 4.1.3 unserializes user input via the Remove Background feature, which could allow Author+ users to perform PHP Object Injection when a suitable gadget is present on the blog

    Published: 16 Oct 2023
    6.1
    Medium

    CVE-2023-4950

    Last Modified: 23 Apr 2025

    The Interactive Contact Form and Multi Step Form Builder WordPress plugin before 3.4 does not sanitise and escape some parameters, which could allow unauthenticated users to perform Cross-Site Scripting attacks

    Published: 16 Oct 2023
    5.4
    Medium

    CVE-2023-5087

    Last Modified: 23 Apr 2025

    The Page Builder: Pagelayer WordPress plugin before 1.7.8 doesn't prevent attackers with author privileges and higher from inserting malicious JavaScript inside a post's header or footer code.

    Published: 16 Oct 2023
    4.8
    Medium

    CVE-2023-4862

    Last Modified: 21 Nov 2024

    The File Manager Pro WordPress plugin before 1.8.1 does not adequately validate and escape some inputs, leading to XSS by high-privilege users.

    Published: 16 Oct 2023
    6.1
    Medium

    CVE-2023-4819

    Last Modified: 23 Apr 2025

    The Shared Files WordPress plugin before 1.7.6 does not return the right Content-Type header for the specified uploaded file. Therefore, an attacker can upload an allowed file extension injected with malicious scripts.

    Published: 16 Oct 2023
    5.3
    Medium

    CVE-2023-5177

    Last Modified: 23 Apr 2025

    The Vrm 360 3D Model Viewer WordPress plugin through 1.2.1 exposes the full path of a file when putting in a non-existent file in a parameter of the shortcode.

    Published: 16 Oct 2023
    7.2
    High

    CVE-2023-4971

    Last Modified: 23 Apr 2025

    The Weaver Xtreme Theme Support WordPress plugin before 6.3.1 unserialises the content of an imported file, which could lead to PHP object injections issues when a high privilege user import a malicious file and a suitable gadget chain is present on the blog.

    Published: 16 Oct 2023
    6.1
    Medium

    CVE-2023-4290

    Last Modified: 23 Apr 2025

    The WP Matterport Shortcode WordPress plugin before 2.1.7 does not escape the PHP_SELF server variable when outputting it in attributes, leading to Reflected Cross-Site Scripting issues which could be used against high privilege users such as admin

    Published: 16 Oct 2023
    4.3
    Medium

    CVE-2023-45150

    Last Modified: 21 Nov 2024

    Nextcloud calendar is a calendar app for the Nextcloud server platform. Due to missing precondition checks the server was trying to validate strings of any length as email addresses even when megabytes of data were provided, eventually making the server busy and unresponsive. It is recommended that the Nextcloud Calendar app is upgraded to 4.4.4. The only workaround for users unable to upgrade is to disable the calendar app.

    Published: 16 Oct 2023
    4.3
    Medium

    CVE-2023-45149

    Last Modified: 21 Nov 2024

    Nextcloud talk is a chat module for the Nextcloud server platform. In affected versions brute force protection of public talk conversation passwords can be bypassed, as there was an endpoint validating the conversation password without registering bruteforce attempts. It is recommended that the Nextcloud Talk app is upgraded to 15.0.8, 16.0.6 or 17.1.1. There are no known workarounds for this vulnerability.

    Published: 16 Oct 2023
    4.3
    Medium

    CVE-2023-45148

    Last Modified: 21 Nov 2024

    Nextcloud is an open source home cloud server. When Memcached is used as `memcache.distributed` the rate limiting in Nextcloud Server could be reset unexpectedly resetting the rate count earlier than intended. Users are advised to upgrade to versions 25.0.11, 26.0.6 or 27.1.0. Users unable to upgrade should change their config setting `memcache.distributed` to `\OC\Memcache\Redis` and install Redis instead of Memcached.

    Published: 16 Oct 2023
    6.5
    Medium

    CVE-2023-45151

    Last Modified: 21 Nov 2024

    Nextcloud server is an open source home cloud platform. Affected versions of Nextcloud stored OAuth2 tokens in plaintext which allows an attacker who has gained access to the server to potentially elevate their privilege. This issue has been addressed and users are recommended to upgrade their Nextcloud Server to version 25.0.8, 26.0.3 or 27.0.1. There are no known workarounds for this vulnerability.

    Published: 16 Oct 2023
    4.3
    Medium

    CVE-2023-45660

    Last Modified: 21 Nov 2024

    Nextcloud mail is an email app for the Nextcloud home server platform. In affected versions a missing check of origin, target and cookies allows for an attacker to abuse the proxy endpoint to denial of service a third server. It is recommended that the Nextcloud Mail is upgraded to 2.2.8 or 3.3.0. There are no known workarounds for this vulnerability.

    Published: 16 Oct 2023
    7.5
    High

    CVE-2023-40180

    Last Modified: 21 Nov 2024

    silverstripe-graphql is a package which serves Silverstripe data in GraphQL representations. An attacker could use a recursive graphql query to execute a Distributed Denial of Service attack (DDOS attack) against a website. This mostly affects websites with publicly exposed graphql schemas. If your Silverstripe CMS project does not expose a public facing graphql schema, a user account is required to trigger the DDOS attack. If your site is hosted behind a content delivery network (CDN), such as Imperva or CloudFlare, this may further mitigate the risk. This issue has been addressed in versions 3.8.2, 4.1.3, 4.2.5, 4.3.4, and 5.0.3. Users are advised to upgrade. There are no known workarounds for this vulnerability.

    Published: 16 Oct 2023
    4.9
    Medium

    CVE-2023-45690

    Last Modified: 21 Nov 2024

    Default file permissions on South River Technologies' Titan MFT and Titan SFTP servers on Linux allows a user that's authentication to the OS to read sensitive files on the filesystem

    Published: 16 Oct 2023
    6.5
    Medium

    CVE-2023-45689

    Last Modified: 21 Nov 2024

    Lack of sufficient path validation in South River Technologies' Titan MFT and Titan SFTP servers on Windows and Linux allows an authenticated attacker with administrative privileges to read any file on the filesystem via path traversal

    Published: 16 Oct 2023
    4.3
    Medium

    CVE-2023-45688

    Last Modified: 21 Nov 2024

    Lack of sufficient path validation in South River Technologies' Titan MFT and Titan SFTP servers on Linux allows an authenticated attacker to get the size of an arbitrary file on the filesystem using path traversal in the ftp "SIZE" command

    Published: 16 Oct 2023
    8.8
    High

    CVE-2023-45687

    Last Modified: 21 Nov 2024

    A session fixation vulnerability in South River Technologies' Titan MFT and Titan SFTP servers on Linux and Windows allows an attacker to bypass the server's authentication if they can trick an administrator into authorizating a session id of their choosing

    Published: 16 Oct 2023
    7.2
    High

    CVE-2023-45686

    Last Modified: 21 Nov 2024

    Insufficient path validation when writing a file via WebDAV in South River Technologies' Titan MFT and Titan SFTP servers on Linux allows an authenticated attacker to write a file to any location on the filesystem via path traversal

    Published: 16 Oct 2023
    9.1
    Critical

    CVE-2023-45685

    Last Modified: 21 Nov 2024

    Insufficient path validation when extracting a zip archive in South River Technologies' Titan MFT and Titan SFTP servers on Windows and Linux allows an authenticated attacker to write a file to any location on the filesystem via path traversal

    Published: 16 Oct 2023
    10
    Critical

    CVE-2023-20198

    Last Modified: 28 Oct 2025

    Cisco is providing an update for the ongoing investigation into observed exploitation of the web UI feature in Cisco IOS XE Software. We are updating the list of fixed releases and adding the Software Checker. Our investigation has determined that the actors exploited two previously unknown issues. The attacker first exploited CVE-2023-20198 to gain initial access and issued a privilege 15 command to create a local user and password combination. This allowed the user to log in with normal user access. The attacker then exploited another component of the web UI feature, leveraging the new local user to elevate privilege to root and write the implant to the file system. Cisco has assigned CVE-2023-20273 to this issue. CVE-2023-20198 has been assigned a CVSS Score of 10.0. CVE-2023-20273 has been assigned a CVSS Score of 7.2. Both of these CVEs are being tracked by CSCwh87343.

    Published: 16 Oct 2023
    4.3
    Medium

    CVE-2023-46087

    Last Modified: 28 Apr 2026

    Cross-Site Request Forgery (CSRF) vulnerability in Mahlamusa Who Hit The Page – Hit Counter plugin <= 1.4.14.3 versions.

    Published: 16 Oct 2023
    6.5
    Medium

    CVE-2023-5575

    Last Modified: 21 Nov 2024

    Improper access control in the permission inheritance in Devolutions Server 2022.3.13.0 and earlier allows an attacker that compromised a low privileged user to access entries via a specific combination of permissions in the entry and in its parent.

    Published: 16 Oct 2023
    5.9
    Medium

    CVE-2023-46066

    Last Modified: 28 Apr 2026

    Auth. (editor+) Stored Cross-Site Scripting (XSS) vulnerability in Codedrafty Mediabay – Media Library Folders plugin <= 1.6 versions.

    Published: 16 Oct 2023
    5.9
    Medium

    CVE-2023-44987

    Last Modified: 21 Nov 2024

    Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Timely - Appointment software Timely Booking Button plugin <= 2.0.2 versions.

    Published: 16 Oct 2023
    5.9
    Medium

    CVE-2023-44986

    Last Modified: 21 Nov 2024

    Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Tyche Softwares Abandoned Cart Lite for WooCommerce plugin <= 5.15.2 versions.

    Published: 16 Oct 2023
    6.5
    Medium

    CVE-2023-44985

    Last Modified: 28 Apr 2026

    Auth. (contributo+) Stored Cross-Site Scripting (XSS) vulnerability in Cytech BuddyMeet plugin <= 2.2.0 versions.

    Published: 16 Oct 2023
    6.5
    Medium

    CVE-2023-44984

    Last Modified: 21 Nov 2024

    Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Robin Wilson bbp style pack plugin <= 5.6.7 versions.

    Published: 16 Oct 2023
    5.9
    Medium

    CVE-2023-44229

    Last Modified: 21 Nov 2024

    Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Gopi Ramasamy Tiny Carousel Horizontal Slider plugin <= 8.1 versions.

    Published: 16 Oct 2023
    4.3
    Medium

    CVE-2023-45836

    Last Modified: 28 Apr 2026

    Cross-Site Request Forgery (CSRF) vulnerability in XYDAC Ultimate Taxonomy Manager plugin <= 2.0 versions.

    Published: 16 Oct 2023
    5.4
    Medium

    CVE-2023-45831

    Last Modified: 19 Feb 2025

    Cross-Site Request Forgery (CSRF) vulnerability in Pixelative, Mohsin Rafique AMP WP – Google AMP For WordPress plugin <= 1.5.15 versions.

    Published: 16 Oct 2023
    5.4
    Medium

    CVE-2023-45763

    Last Modified: 28 Apr 2026

    Cross-Site Request Forgery (CSRF) vulnerability in Taggbox plugin <= 2.9 versions.

    Published: 16 Oct 2023
    4.3
    Medium

    CVE-2023-45753

    Last Modified: 28 Apr 2026

    Cross-Site Request Forgery (CSRF) vulnerability in Gilles Dumas which template file plugin <= 4.6.0 versions.

    Published: 16 Oct 2023
    4.3
    Medium

    CVE-2023-45752

    Last Modified: 28 Apr 2026

    Cross-Site Request Forgery (CSRF) vulnerability in 10 Quality Post Gallery plugin <= 2.3.12 versions.

    Published: 16 Oct 2023
    4.3
    Medium

    CVE-2023-45749

    Last Modified: 28 Apr 2026

    Cross-Site Request Forgery (CSRF) vulnerability in Alexey Golubnichenko AGP Font Awesome Collection plugin <= 3.2.4 versions.

    Published: 16 Oct 2023
    4.3
    Medium

    CVE-2023-45748

    Last Modified: 28 Apr 2026

    Cross-Site Request Forgery (CSRF) vulnerability in MailMunch MailChimp Forms by MailMunch plugin <= 3.1.4 versions.

    Published: 16 Oct 2023
    5.4
    Medium

    CVE-2023-45647

    Last Modified: 28 Apr 2026

    Cross-Site Request Forgery (CSRF) vulnerability in MailMunch Constant Contact Forms by MailMunch plugin <= 2.0.10 versions.

    Published: 16 Oct 2023
    5.4
    Medium

    CVE-2023-45645

    Last Modified: 28 Apr 2026

    Cross-Site Request Forgery (CSRF) vulnerability in InfoD74 WP Open Street Map plugin <= 1.25 versions.

    Published: 16 Oct 2023