| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2023-52142 | WordPress Events Shortcodes & Templates For The Events Calendar Plugin <= 2.3.1 is vulnerable to SQL Injection | Cool Plugins | Events Shortcodes For The Events Calendar | High | 7.6 | 2024-01-08 20:56:11 | Deep Dive |
| CVE-2023-52180 | WordPress Recipe Maker For Your Food Blog from Zip Recipes Plugin <= 8.1.0 is vulnerable to SQL Injection | Really Simple Plugins | Recipe Maker For Your Food Blog from Zip Recipes | High | 7.6 | 2023-12-31 10:17:49 | Deep Dive |
| CVE-2023-51358 | WordPress Block IPs for Gravity Forms Plugin <= 1.0.1 is vulnerable to Cross Site Request Forgery (CSRF) | Bright Plugins | Block IPs for Gravity Forms | Medium | 5.4 | 2023-12-29 12:11:08 | Deep Dive |
| CVE-2023-51361 | WordPress Sticky Chat Widget Plugin <= 1.1.8 is vulnerable to Cross Site Scripting (XSS) | Ginger Plugins | Sticky Chat Widget: Click to chat, SMS, Email, Messages, Call Button, Live Chat and Live Support Button | Medium | 5.9 | 2023-12-29 11:01:30 | Deep Dive |
| CVE-2023-50845 | WordPress GeoDirectory Plugin <= 2.3.28 is vulnerable to SQL Injection | AyeCode - WordPress Business Directory Plugins | GeoDirectory – WordPress Business Directory Plugin, or Classified Directory | High | 7.6 | 2023-12-28 18:23:08 | Deep Dive |
| CVE-2023-47754 | WordPress Delete Duplicate Posts Plugin <= 4.8.9 is vulnerable to Broken Access Control | Clever plugins | Delete Duplicate Posts | Medium | 4.3 | 2023-12-18 23:49:13 | Deep Dive |
| CVE-2023-49749 | WordPress SureTriggers Plugin <= 1.0.23 is vulnerable to Cross Site Request Forgery (CSRF) | SureTriggers | SureTriggers – Connect All Your Plugins, Apps, Tools & Automate Everything! | Medium | 4.3 | 2023-12-15 15:45:01 | Deep Dive |
| CVE-2023-49165 | WordPress Client Dash Plugin <= 2.2.1 is vulnerable to Cross Site Scripting (XSS) | Real Big Plugins | Client Dash | Medium | 5.9 | 2023-12-15 14:01:13 | Deep Dive |
| CVE-2023-49745 | WordPress Spiffy Calendar Plugin <= 4.9.5 is vulnerable to Cross Site Scripting (XSS) | Spiffy Plugins | Spiffy Calendar | Medium | 6.5 | 2023-12-14 14:34:36 | Deep Dive |
| CVE-2023-49802 | MantisBT LinkedCustomFields Cross-site Scripting vulnerability | mantisbt-plugins | LinkedCustomFields | Medium | 6.7 | 2023-12-11 21:11:53 | Deep Dive |
| CVE-2023-5761 | WordPress Plugin Burst Statistics 安全漏洞 | rogierlankhorst | Burst Statistics – Privacy-Friendly Analytics for WordPress | Critical | 9.8 | 2023-12-07 02:00:05 | Deep Dive |
| CVE-2023-33333 | WordPress Complianz and Complianz Premium plugins - Cross-Site Request Forgery (CSRF) leading to Cross-Site Scripting (XSS) | Really Simple Plugins | Complianz | High | 7.1 | 2023-11-30 14:00:36 | Deep Dive |
| CVE-2023-34030 | WordPress Complianz and Complianz Premium plugins - Cross Site Request Forgery (CSRF) | Really Simple Plugins | Complianz | Medium | 6.5 | 2023-11-30 13:54:25 | Deep Dive |
| CVE-2023-47814 | WordPress BMI Calculator Plugin Plugin <= 1.0.3 is vulnerable to Cross Site Scripting (XSS) | Waterloo Plugins | BMI Calculator Plugin | Medium | 6.5 | 2023-11-22 22:45:46 | Deep Dive |
| CVE-2023-27461 | WordPress When Last Login Plugin <= 1.2.1 is vulnerable to Cross Site Request Forgery (CSRF) | Yoohoo Plugins | When Last Login | Medium | 4.3 | 2023-11-22 13:51:44 | Deep Dive |
| CVE-2023-47223 | WordPress Basic Interactive World Map Plugin <= 2.0 is vulnerable to Cross Site Scripting (XSS) | WP Map Plugins | Basic Interactive World Map | 中危 | - | 2023-11-08 18:29:41 | Deep Dive |
| CVE-2023-46783 | WordPress Pre-Orders for WooCommerce Plugin <= 1.2.13 is vulnerable to Cross Site Scripting (XSS) | Bright Plugins | Pre-Orders for WooCommerce | 中危 | - | 2023-11-06 09:26:18 | Deep Dive |
| CVE-2022-46859 | WordPress Spiffy Calendar Plugin <= 4.9.1 is vulnerable to SQL Injection | Spiffy Plugins | Spiffy Calendar | 超危 | - | 2023-11-03 12:43:09 | Deep Dive |
| CVE-2023-46077 | WordPress The Awesome Feed – Custom Feed Plugin <= 2.2.5 is vulnerable to Cross Site Scripting (XSS) | Arrow Plugins | The Awesome Feed – Custom Feed | High | 7.1 | 2023-10-26 12:08:53 | Deep Dive |
| CVE-2023-45003 | WordPress Social Feed Plugin <= 2.2.0 is vulnerable to Cross Site Scripting (XSS) | Arrow Plugins | Social Feed | Custom Feed for Social Media Networks | High | 7.1 | 2023-10-17 10:59:23 | Deep Dive |