| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2023-47789 | WordPress WooCommerce Canada Post Shipping Plugin <= 2.8.3 is vulnerable to Cross Site Request Forgery (CSRF) | WooCommerce | Canada Post Shipping Method | Medium | 4.3 | 2023-12-18 15:43:24 | Deep Dive |
| CVE-2023-50372 | WordPress Custom Post Type Page Template Plugin <= 1.1 is vulnerable to Cross Site Request Forgery (CSRF) | Hiroaki Miyashita | Custom Post Type Page Template | Medium | 4.3 | 2023-12-18 10:15:29 | Deep Dive |
| CVE-2023-49179 | WordPress Event post Plugin <= 5.8.6 is vulnerable to Cross Site Scripting (XSS) | N.O.U.S. Open Useful and Simple | Event post | Medium | 6.5 | 2023-12-15 14:45:18 | Deep Dive |
| CVE-2023-49157 | WordPress Multiple Post Passwords Plugin <= 1.1.1 is vulnerable to Cross Site Scripting (XSS) | Andreas Münch | Multiple Post Passwords | Medium | 5.9 | 2023-12-14 17:16:00 | Deep Dive |
| CVE-2023-47521 | WordPress Q2W3 Post Order Plugin <= 1.2.8 is vulnerable to Cross Site Scripting (XSS) | Max Bond, AndreSC | Q2W3 Post Order | High | 7.1 | 2023-11-30 16:59:43 | Deep Dive |
| CVE-2023-48317 | WordPress Display Custom Post Plugin <= 2.2.1 is vulnerable to Cross Site Scripting (XSS) | Vikas Vatsa | Display Custom Post | Medium | 6.5 | 2023-11-30 16:34:38 | Deep Dive |
| CVE-2023-48754 | WordPress Delete Post Revisions In WordPress Plugin <= 4.6 is vulnerable to Cross Site Request Forgery (CSRF) | Wap Nepal | Delete Post Revisions In WordPress | Medium | 5.4 | 2023-11-30 16:02:54 | Deep Dive |
| CVE-2023-40211 | WordPress Post Grid Plugin <= 2.2.50 is vulnerable to Sensitive Data Exposure | PickPlugins | Post Grid Combo – 36+ Gutenberg Blocks | High | 7.5 | 2023-11-30 15:03:24 | Deep Dive |
| CVE-2023-48279 | WordPress Seraphinite Post .DOCX Source Plugin <= 2.16.6 is vulnerable to Cross Site Request Forgery (CSRF) | Seraphinite Solutions | Seraphinite Post .DOCX Source | Medium | 4.3 | 2023-11-30 13:14:04 | Deep Dive |
| CVE-2023-6137 | WordPress Frontier Post Plugin <= 6.1 is vulnerable to Cross Site Request Forgery (CSRF) | finnj | Frontier Post | Medium | 5.4 | 2023-11-30 12:50:03 | Deep Dive |
| CVE-2023-41127 | WordPress Evergreen Content Poster Plugin <= 1.3.6.1 is vulnerable to Cross Site Scripting (XSS) | Evergreen Content Poster | Evergreen Content Poster – Auto Post and Schedule Your Best Content to Social Media | Medium | 5.9 | 2023-11-30 12:19:02 | Deep Dive |
| CVE-2023-5958 | POST SMTP Mailer < 2.7.1 - Unauthenticated Cross-site Scripting | Unknown | POST SMTP Mailer | 高危 | - | 2023-11-27 16:22:04 | Deep Dive |
| CVE-2023-47766 | WordPress Post Status Notifier Lite Plugin <= 1.11.0 is vulnerable to Cross Site Scripting (XSS) | Timo Reith | Post Status Notifier Lite | High | 7.1 | 2023-11-22 21:56:11 | Deep Dive |
| CVE-2023-5708 | WP Post Columns <= 2.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode | sammyb | WP Post Columns | Medium | 6.4 | 2023-11-22 15:33:36 | Deep Dive |
| CVE-2023-5815 | News & Blog Designer Pack – WordPress Blog Plugin <= 3.4.1 - Unauthenticated Remote Code Execution via Local File Inclusion | infornweb | Blog Designer Pack – Blog, Post Grid, Post Slider, Post Carousel, Category Post, News | High | 8.1 | 2023-11-22 15:33:22 | Deep Dive |
| CVE-2023-5776 | Post Meta Data Manager <= 1.2.1 - Cross-Site Request Forgery to Post, Term, and User Meta Deletion | gandhihitesh9 | Post Meta Data Manager | Medium | 4.3 | 2023-11-21 08:32:48 | Deep Dive |
| CVE-2023-4808 | WP Post Popup <= 3.7.3 - Admin+ Stored XSS | Unknown | WP Post Popup | - | - | 2023-11-20 18:55:05 | Deep Dive |
| CVE-2023-47671 | WordPress Vertical scroll recent post Plugin <= 14.0 is vulnerable to Cross Site Request Forgery (CSRF) | Gopi Ramasamy | Vertical scroll recent post | Medium | 5.4 | 2023-11-18 20:48:09 | Deep Dive |
| CVE-2023-47672 | WordPress WP Category Post List Widget Plugin <= 2.0.3 is vulnerable to Cross Site Request Forgery (CSRF) | Swashata | WP Category Post List Widget | Medium | 4.3 | 2023-11-18 20:44:21 | Deep Dive |
| CVE-2023-47673 | WordPress Post Pay Counter Plugin <= 2.784 is vulnerable to Cross Site Scripting (XSS) | Stefano Ottolenghi | Post Pay Counter | High | 7.1 | 2023-11-13 23:29:13 | Deep Dive |