Search

Search Results (346191 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2023-47761 2026-04-23 4.3 Medium
Missing Authorization vulnerability in WPDeveloper Simple 301 Redirects by BetterLinks simple-301-redirects allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Simple 301 Redirects by BetterLinks: from n/a through <= 2.0.7.
CVE-2023-47760 1 Wpdeveloper 1 Essential Blocks 2026-04-23 4.3 Medium
Missing Authorization vulnerability in WPDeveloper Essential Blocks for Gutenberg essential-blocks allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Essential Blocks for Gutenberg: from n/a through <= 4.2.0.
CVE-2023-47759 1 Premio 1 Chaty 2026-04-23 5.9 Medium
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Premio Chaty chaty allows DOM-Based XSS.This issue affects Chaty: from n/a through <= 3.1.2.
CVE-2023-47756 2026-04-23 4.3 Medium
Missing Authorization vulnerability in David Vongries Welcome Email Editor welcome-email-editor allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Welcome Email Editor: from n/a through <= 5.0.6.
CVE-2023-47698 1 Artisanworkshop 1 Japanized For Woocommerce 2026-04-23 8.6 High
Missing Authorization vulnerability in shohei.tanaka Japanized For WooCommerce woocommerce-for-japan allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Japanized For WooCommerce: from n/a through <= 2.6.4.
CVE-2023-47694 2026-04-23 5.4 Medium
Missing Authorization vulnerability in appsbd Mini Cart Drawer For WooCommerce woo-mini-cart-drawer allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Mini Cart Drawer For WooCommerce: from n/a through <= 4.0.0.
CVE-2023-47693 2 Themefic, Wordpress 2 Ultimate Addons For Contact Form 7, Wordpress 2026-04-23 7.5 High
Missing Authorization vulnerability in Themefic Ultimate Addons for Contact Form 7 ultimate-addons-for-contact-form-7 allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Ultimate Addons for Contact Form 7: from n/a through <= 3.2.6.
CVE-2023-47692 2 Flothemes, Wordpress 2 Flo Forms, Wordpress 2026-04-23 4.3 Medium
Missing Authorization vulnerability in flothemesplugins Flo Forms flo-forms allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Flo Forms: from n/a through <= 1.0.41.
CVE-2023-47689 1 Wordpress 1 Wordpress 2026-04-23 6.5 Medium
Missing Authorization vulnerability in Toast Plugins Animator scroll-triggered-animations allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Animator: from n/a through <= 3.0.10.
CVE-2023-47661 2026-04-23 5.4 Medium
Missing Authorization vulnerability in Dragfy Dragfy Addons for Elementor dragfy-addons-for-elementor allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Dragfy Addons for Elementor: from n/a through <= 1.0.2.
CVE-2023-47648 2 Spider-themes, Wordpress 2 Eazydocs, Wordpress 2026-04-23 7.5 High
Missing Authorization vulnerability in Spider Themes EazyDocs eazydocs allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects EazyDocs: from n/a through <= 2.3.5.
CVE-2023-47647 2026-04-23 4.3 Medium
Missing Authorization vulnerability in learningtimes BadgeOS badgeos allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects BadgeOS: from n/a through <= 3.7.1.6.
CVE-2023-47557 2026-04-23 4.3 Medium
Missing Authorization vulnerability in wp-buy Visitors Traffic Real Time Statistics visitors-traffic-real-time-statistics allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Visitors Traffic Real Time Statistics: from n/a through <= 7.2.
CVE-2023-47525 1 Awplife 1 Event Monster 2026-04-23 5.9 Medium
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in A WP Life Event Management Tickets Booking event-monster allows DOM-Based XSS.This issue affects Event Management Tickets Booking: from n/a through <= 1.4.9.
CVE-2023-47523 1 Wordpress 1 Wordpress 2026-04-23 4.3 Medium
Missing Authorization vulnerability in Ecreate Infotech Auto Tag Creator auto-tag-creator allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Auto Tag Creator: from n/a through <= 1.0.2.
CVE-2023-47517 1 Pressified 1 Sendpress 2026-04-23 7.1 High
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in brewlabs SendPress Newsletters sendpress allows DOM-Based XSS.This issue affects SendPress Newsletters: from n/a through <= 1.23.11.6.
CVE-2023-47515 2026-04-23 5.3 Medium
Missing Authorization vulnerability in Nick Spencer Seers seers-cookie-consent-banner-privacy-policy allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Seers: from n/a through <= 8.1.1.
CVE-2023-47241 2026-04-23 5.3 Medium
Missing Authorization vulnerability in CoCart Headless CoCart – Headless ecommerce cart-rest-api-for-woocommerce allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects CoCart – Headless ecommerce: from n/a through <= 3.11.2.
CVE-2023-47225 2 Kaizencoders, Wordpress 2 Short Url, Wordpress 2026-04-23 5.4 Medium
Missing Authorization vulnerability in KaizenCoders Short URL shorten-url allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Short URL: from n/a through <= 1.6.8.
CVE-2023-47224 2026-04-23 7.5 High
Missing Authorization vulnerability in WP Travel WP Travel wp-travel allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WP Travel: from n/a through <= 7.8.0.