Total
30721 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2023-23856 | 1 Sap | 1 Business Objects Business Intelligence Platform | 2024-08-02 | 4.3 Medium |
In SAP BusinessObjects Business Intelligence (Web Intelligence user interface) - version 430, some calls return json with wrong content type in the header of the response. As a result, a custom application that calls directly the jsp of Web Intelligence DHTML may be vulnerable to XSS attacks. On successful exploitation an attacker can cause a low impact on integrity of the application. | ||||
CVE-2023-23722 | 1 Winwar | 1 Wp Ebay Product Feeds | 2024-08-02 | 5.9 Medium |
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Winwar Media WP eBay Product Feeds plugin <= 3.3.1 versions. | ||||
CVE-2023-23809 | 1 Finviz | 1 Stock Market Charts From Finviz | 2024-08-02 | 5.9 Medium |
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Moris Dov Stock market charts from finviz plugin <= 1.0.1 versions. | ||||
CVE-2023-23786 | 1 Servit | 1 Affiliate-toolkit | 2024-08-02 | 5.9 Medium |
Auth. (editor+) Stored Cross-Site Scripting (XSS) vulnerability in Christof Servit affiliate-toolkit plugin <= 3.3.3 versions. | ||||
CVE-2023-23785 | 1 Exquisite Paypal Donation Project | 1 Exquisite Paypal Donation | 2024-08-02 | 5.9 Medium |
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in DgCult Exquisite PayPal Donation plugin <= v2.0.0 versions. | ||||
CVE-2023-23815 | 1 Multi-column Tag Map Project | 1 Multi-column Tag Map | 2024-08-02 | 6.5 Medium |
Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Alan Jackson Multi-column Tag Map plugin <= 17.0.24 versions. | ||||
CVE-2023-23793 | 1 8web | 1 Read More Without Refresh | 2024-08-02 | 5.9 Medium |
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Eightweb Interactive Read More Without Refresh plugin <= 3.1 versions. | ||||
CVE-2023-23828 | 1 Swas | 1 Wp Category Post List | 2024-08-02 | 6.5 Medium |
Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Swashata WP Category Post List Widget plugin <= 2.0.3 versions. | ||||
CVE-2023-23728 | 1 Winwar | 1 Wp Flipclock | 2024-08-02 | 6.5 Medium |
Auth. (contributor+) Cross-Site Scripting (XSS) vulnerability in Winwar Media WP Flipclock plugin <= 1.7.4 versions. | ||||
CVE-2023-23816 | 1 Sitemap Index Project | 1 Sitemap Index | 2024-08-02 | 5.9 Medium |
Auth. (admin+) Cross-Site Scripting (XSS) vulnerability in Twardes Sitemap Index plugin <= 1.2.3 versions. | ||||
CVE-2023-23799 | 1 Easy Panorama Project | 1 Easy Panorama | 2024-08-02 | 5.9 Medium |
Auth. (admin+) Stored Cross-site Scripting (XSS) vulnerability in Leonardo Giacone Easy Panorama plugin <= 1.1.4 versions. | ||||
CVE-2023-23820 | 1 Properfraction | 1 Profilepress | 2024-08-02 | 6.5 Medium |
Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in ProfilePress Membership Team ProfilePress plugin <= 4.5.4 versions. | ||||
CVE-2023-23812 | 1 Enhanced Wp Contact Form Project | 1 Enhanced Wp Contact Form | 2024-08-02 | 5.9 Medium |
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Joost de Valk Enhanced WP Contact Form plugin <= 2.2.3 versions. | ||||
CVE-2023-23806 | 1 Wordpress Custom Settings Project | 1 Wordpress Custom Settings | 2024-08-02 | 5.9 Medium |
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Davinder Singh Custom Settings plugin <= 1.0 versions. | ||||
CVE-2023-23789 | 1 Premmerce | 1 Premmerce Redirect Manager | 2024-08-02 | 5.9 Medium |
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Premmerce Premmerce Redirect Manager plugin <= 1.0.9 versions. | ||||
CVE-2023-23818 | 1 Aviplugins | 1 Wp Register Profile With Shortcode | 2024-08-02 | 5.9 Medium |
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Aviplugins.Com WP Register Profile With Shortcode plugin <= 3.5.7 versions. | ||||
CVE-2023-23808 | 1 Sponsors Carousel Project | 1 Sponsors Carousel | 2024-08-02 | 5.9 Medium |
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Sergey Panasenko Sponsors Carousel plugin <= 4.02 versions. | ||||
CVE-2023-23788 | 1 Custom More Link Complete Project | 1 Custom More Link Complete | 2024-08-02 | 5.9 Medium |
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Florin Arjocu Custom More Link Complete plugin <= 1.4.1 versions. | ||||
CVE-2023-23708 | 1 Themeisle | 1 Visualizer | 2024-08-02 | 6.5 Medium |
Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Themeisle Visualizer: Tables and Charts Manager for WordPress plugin <= 3.9.4 versions. | ||||
CVE-2023-23710 | 1 Miniorange | 1 Wordpress Social Login And Register \(discord\, Google\, Twitter\, Linkedin\) | 2024-08-02 | 5.9 Medium |
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in miniOrange WordPress Social Login and Register (Discord, Google, Twitter, LinkedIn) plugin <= 7.5.14 versions. |