Search Results (346191 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2023-23989 1 Metagauss 1 Registrationmagic 2026-04-23 5.3 Medium
Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in Metagauss RegistrationMagic custom-registration-form-builder-with-submission-manager allows Code Injection.This issue affects RegistrationMagic: from n/a through <= 5.1.9.2.
CVE-2023-23987 1 Wpeverest 1 User Registration 2026-04-23 5.9 Medium
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpeverest User Registration user-registration allows DOM-Based XSS.This issue affects User Registration: from n/a through <= 2.3.0.
CVE-2023-23986 2026-04-23 5.4 Medium
Missing Authorization vulnerability in Noah Hearle Reviews and Rating – Google My Business g-business-reviews-rating allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Reviews and Rating – Google My Business: from n/a through <= 4.14.
CVE-2023-23975 1 Fullworksplugins 1 Quick Event Manager 2026-04-23 5.3 Medium
Missing Authorization vulnerability in brightvesseldev Quick Event Manager quick-event-manager allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Quick Event Manager: from n/a through <= 9.7.4.
CVE-2023-23895 1 Codepeople 1 Wp Time Slots Booking Form 2026-04-23 4.7 Medium
Missing Authorization vulnerability in codepeople WP Time Slots Booking Form wp-time-slots-booking-form allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WP Time Slots Booking Form: from n/a through <= 1.1.82.
CVE-2023-23893 1 Ibenic 1 Simple Giveaways 2026-04-23 5.3 Medium
Missing Authorization vulnerability in Igor Benic Simple Giveaways giveasap allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Simple Giveaways: from n/a through <= 2.48.0.
CVE-2023-23887 1 Ibenic 1 Simple Giveaways 2026-04-23 5.3 Medium
Missing Authorization vulnerability in Shahjada Easy Google Analytics for WordPress easy-google-analytics-for-wordpress allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Easy Google Analytics for WordPress: from n/a through <= 1.6.0.
CVE-2023-23886 2 Mg12, Wordpress 2 Wp-recentcomments, Wordpress 2026-04-23 5.4 Medium
Missing Authorization vulnerability in mg12 WP-RecentComments wp-recentcomments allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WP-RecentComments: from n/a through <= 2.2.7.
CVE-2023-23868 2026-04-23 5.4 Medium
Missing Authorization vulnerability in WPFactory Cost of Goods for WooCommerce cost-of-goods-for-woocommerce allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Cost of Goods for WooCommerce: from n/a through <= 2.8.6.
CVE-2023-23834 1 Brainstormforce 1 Spectra 2026-04-23 4.3 Medium
Missing Authorization vulnerability in Brainstorm Force Spectra ultimate-addons-for-gutenberg allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Spectra: from n/a through <= 2.3.0.
CVE-2023-23825 1 Brainstormforce 1 Spectra 2026-04-23 3.1 Low
Missing Authorization vulnerability in Brainstorm Force Spectra ultimate-addons-for-gutenberg allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Spectra: from n/a through <= 2.3.0.
CVE-2023-23823 2026-04-23 4.3 Medium
Missing Authorization vulnerability in cl272 Enhanced Text Widget enhanced-text-widget allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Enhanced Text Widget: from n/a through <= 1.5.8.
CVE-2023-23814 2026-04-23 3.8 Low
Missing Authorization vulnerability in codepeople CP Multi View Event Calendar cp-multi-view-calendar allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects CP Multi View Event Calendar : from n/a through <= 1.4.13.
CVE-2023-23729 2 Brainstormforce, Wordpress 2 Spectra, Wordpress 2026-04-23 5.4 Medium
Missing Authorization vulnerability in Brainstorm Force Spectra ultimate-addons-for-gutenberg allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Spectra: from n/a through <= 2.3.0.
CVE-2023-23726 2 Tickera, Wordpress 2 Tickera, Wordpress 2026-04-23 5.4 Medium
Cross-Site Request Forgery (CSRF) vulnerability in Tickera Tickera tickera-event-ticketing-system allows Cross Site Request Forgery.This issue affects Tickera: from n/a through <= 3.5.1.0.
CVE-2023-23725 1 Wordpress 1 Wordpress 2026-04-23 4.3 Medium
Missing Authorization vulnerability in Chris Baldelomar Shortcodes wc-shortcodes allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Shortcodes: from n/a through <= 3.46.
CVE-2023-23716 2026-04-23 4.3 Medium
Missing Authorization vulnerability in zendesk_official Zendesk Support for WordPress zendesk allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Zendesk Support for WordPress: from n/a through <= 1.8.4.
CVE-2023-23715 1 Ultimatemember 1 Jobboardwp 2026-04-23 5.2 Medium
Missing Authorization vulnerability in Ultimate Member JobBoardWP – Job Board Listings and Submissions jobboardwp allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects JobBoardWP – Job Board Listings and Submissions: from n/a through <= 1.2.2.
CVE-2023-22708 2026-04-23 4.3 Medium
Missing Authorization vulnerability in karim79 Kraken.io Image Optimizer kraken-image-optimizer allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Kraken.io Image Optimizer: from n/a through <= 2.6.7.
CVE-2023-22701 1 Shopfiles 1 Ebook Store 2026-04-23 7.5 High
Missing Authorization vulnerability in motov.net Ebook Store ebook-store allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Ebook Store: from n/a through <= 5.775.