Vulnerability Details CVE-2023-28994
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in UX-themes Flatsome plugin <= 3.16.8 versions.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 26.6%
CVSS Severity
CVSS v3 Score 7.1
Products affected by CVE-2023-28994
-
cpe:2.3:a:uxthemes:flatsome:-
-
cpe:2.3:a:uxthemes:flatsome:3.10.1
-
cpe:2.3:a:uxthemes:flatsome:3.10.2
-
cpe:2.3:a:uxthemes:flatsome:3.10.3
-
cpe:2.3:a:uxthemes:flatsome:3.10.4
-
cpe:2.3:a:uxthemes:flatsome:3.11.0
-
cpe:2.3:a:uxthemes:flatsome:3.11.1
-
cpe:2.3:a:uxthemes:flatsome:3.11.2
-
cpe:2.3:a:uxthemes:flatsome:3.11.3
-
cpe:2.3:a:uxthemes:flatsome:3.12.0
-
cpe:2.3:a:uxthemes:flatsome:3.12.1
-
cpe:2.3:a:uxthemes:flatsome:3.12.2
-
cpe:2.3:a:uxthemes:flatsome:3.12.3
-
cpe:2.3:a:uxthemes:flatsome:3.13.0
-
cpe:2.3:a:uxthemes:flatsome:3.13.1
-
cpe:2.3:a:uxthemes:flatsome:3.13.2
-
cpe:2.3:a:uxthemes:flatsome:3.13.3
-
cpe:2.3:a:uxthemes:flatsome:3.14.0
-
cpe:2.3:a:uxthemes:flatsome:3.14.1
-
cpe:2.3:a:uxthemes:flatsome:3.14.2
-
cpe:2.3:a:uxthemes:flatsome:3.14.3
-
cpe:2.3:a:uxthemes:flatsome:3.15
-
cpe:2.3:a:uxthemes:flatsome:3.15.1
-
cpe:2.3:a:uxthemes:flatsome:3.15.2
-
cpe:2.3:a:uxthemes:flatsome:3.15.3
-
cpe:2.3:a:uxthemes:flatsome:3.15.4
-
cpe:2.3:a:uxthemes:flatsome:3.15.5
-
cpe:2.3:a:uxthemes:flatsome:3.15.6
-
cpe:2.3:a:uxthemes:flatsome:3.15.7
-
cpe:2.3:a:uxthemes:flatsome:3.15.8