Vulnerabilities
Vulnerable Software
Security Vulnerabilities - CVEs Published In October 2023
Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in WEN Solutions Notice Bar plugin <= 3.1.0 versions.
CVSS Score
6.5
EPSS Score
0.001
Published
2023-10-02
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Hennessey Digital Attorney theme <= 3 theme.
CVSS Score
7.1
EPSS Score
0.001
Published
2023-10-02
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Rescue Themes Rescue Shortcodes allows Stored XSS.This issue affects Rescue Shortcodes: from n/a through 2.5.
CVSS Score
6.5
EPSS Score
0.001
Published
2023-10-02
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in SendPress Newsletters plugin <= 1.22.3.31 versions.
CVSS Score
5.9
EPSS Score
0.001
Published
2023-10-02
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in I Thirteen Web Solution WordPress publish post email notification plugin <= 1.0.2.2 versions.
CVSS Score
5.9
EPSS Score
0.001
Published
2023-10-02
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in YYDevelopment Back To The Top Button plugin <= 2.1.5 versions.
CVSS Score
5.9
EPSS Score
0.001
Published
2023-10-02
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in nigauri Insert Estimated Reading Time plugin <= 1.2 versions.
CVSS Score
5.9
EPSS Score
0.001
Published
2023-10-02
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Gopi Ramasamy Email posts to subscribers plugin <= 6.2 versions.
CVSS Score
5.9
EPSS Score
0.001
Published
2023-10-02
FD Application Apr. 2022 Edition (Version 9.01) and earlier improperly restricts XML external entity references (XXE). By processing a specially crafted XML file, arbitrary files on the system may be read by an attacker.
CVSS Score
5.5
EPSS Score
0.0
Published
2023-10-02
In rpmb , there is a possible double free due to improper locking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07912966; Issue ID: ALPS07912961.
CVSS Score
6.7
EPSS Score
0.0
Published
2023-10-02


Contact Us

Shodan ® - All rights reserved