[WordPress Security] 43 Vulnerabilities in This Week's Wordfence Intelligence WordPress Vulnerability Report (August 21, 2023 to August 27, 2023)

From: Wordfence <list_at_wordfence.com>
Date: Thu, 31 Aug 2023 06:27:33 -0700

43 vulnerabilities were disclosed in WordPress software last week. Review the report now to determine if your site is affected.

Wordfence-Logo.png (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VXc_D644-qgsW4p_bmT5QzHMJW3Z50n152TXvDN6pj1WP3prCCW6N1vHY6lZ3m-W1LS12n68ZtJkW4y_3vh3_KMZkW2SKSCm2TvHv5W51bk_96-Sf3nW63C04-9cg1tdW4JNcph66N3KwW4ZnsMy7R71h5VJWBN27Yd-C-W888r_L4ydSXfW8qhWTq6mJ_lbW3WQmcq8NhDGVW996wcg7fGKngW5gnsB-5cYj00W7JBdlV3wxT61W4TTdbs35n2hpVvMNRw5xL1fPVQV8s_4kRrfBW583stB5TGFcjW45LwsL4HHnx4W3k3C2q1vd6SxW70PXFY6fCpb3N96LYL4mG183f5m5Mfv04 )

WFI-Vuln-Report-Weekofaug21 (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VXc_D644-qgsW4p_bmT5QzHMJW3Z50n152TXvDN6pj1Wv5m_5PW69t95C6lZ3mNVfX_Nm3HzR90W218vmF5tNVM2W2pxML263YlbSW3wjpwY22V1HpW2vTd593XnrVrW7kHYHv7YKPKBVGGxBY4QbXZbW6DtQl_4dTjrSVMv_-H87CrcPW8kMrXL6Fk3xpW4QLmkl6P8HN2W53hhj640SCpLW8wnhHT1Rv3n6W8zrV_x2bJdSnW8hmxYJ16SD15W4C1sbh8Bj7n3W8RqDfl6Tk5H1W3jZr_f92t_tFW4PBngX2qG1p_W3TSgks1hflWTVZvbJb6MhzpyW5TwkPH8V9fsQW2NFTyY64D9z8W1F4Yzc4n25tmW3hkH5j4cC-RbW86wls53G2-FrW5bcqYw2JxWglW10RGV288wcNVW77lLW85SsBYyW3b6Tk715zMydW22nTZf3vB1PJW3ZF4SZ8D2JKVW7570jf6sxvf_W2Llktk5pHgwJW3cTKvz8z32dMW2gWDvk7_J9Vqf8KnWJY04 )

Last week, there were 43 vulnerabilities disclosed in 38 WordPress Plugins and no WordPress themes (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VXc_D644-qgsW4p_bmT5QzHMJW3Z50n152TXvDN6pj1Wv5m_5PW69t95C6lZ3mNVfX_Nm3HzR90W218vmF5tNVM2W2pxML263YlbSW3wjpwY22V1HpW2vTd593XnrVrW7kHYHv7YKPKBVGGxBY4QbXZbW6DtQl_4dTjrSVMv_-H87CrcPW8kMrXL6Fk3xpW4QLmkl6P8HN2W53hhj640SCpLW8wnhHT1Rv3n6W8zrV_x2bJdSnW8hmxYJ16SD15W4C1sbh8Bj7n3W8RqDfl6Tk5H1W3jZr_f92t_tFW4PBngX2qG1p_W3TSgks1hflWTVZvbJb6MhzpyW5TwkPH8V9fsQW2NFTyY64D9z8W1F4Yzc4n25tmW3hkH5j4cC-RbW86wls53G2-FrW5bcqYw2JxWglW10RGV288wcNVW77lLW85SsBYyW3b6Tk715zMydW22nTZf3vB1PJW3ZF4SZ8D2JKVW7570jf6sxvf_W2Llktk5pHgwJW3cTKvz8z32dMW2gWDvk7_J9Vqf8KnWJY04 ) that have been added to the Wordfence Intelligence Vulnerability Database by the Wordfence Threat Intelligence Team.

🎉 We'd like to say a special thank you to the 23 Vulnerability Researchers (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VXc_D644-qgsW4p_bmT5QzHMJW3Z50n152TXvDN6pj1X45m_5PW7lCGcx6lZ3pMW1-LSpT1Zcks_W8q_rp63782wlW7LJK5R25y0BrV1kbZ_5Wc3lzW96vjbJ4ZZk3_W7wL_ML723wv9N1lY6X_p1jpLW1TvpqD3l1yB_W3wwlXm2-JpjWW5Zzfrp48M1VdW17Z0dz6LtCV9W8KMsgg3LKxw8W6QkT8S6JCHCPV9CGH_4Mr7NYW1Fctn78hSVJ0W2qq4lX3hJcbQW858ZHH3mYz3qW60-FdY5f1579W2vpKXS6NLXNCW74hzVj2ty_fRW1QFpl22rJWZbW34MpyP1rvtVkW2c3LBv1rlsq_W2q-LMC7ZHZpfW1GZKyM3LF1n3W1PkThR1T-VPSW2BYHFQ7vvlLfW2n5lt36D-hG3N9cNrGrGmdTDW3M1VSY7yFyZmW4Ph5X883w3hPV5xXW42s2jCpW1cckRr3YF3tPVhrLs-3VhV-wW8lz3Hf6qNVsJW386CsP2R-GzLW14WxTr5PglC9W6DTkxR20-1_bW1y7P935vdt4zW2XKTbx4KtmXSf7gSNs-04 ) that contributed to WordPress Security by responsibly disclosing those vulnerabilities!

The team also deployed 1 new firewall rule (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VXc_D644-qgsW4p_bmT5QzHMJW3Z50n152TXvDN6pj1WP5m_5PW6N1X8z6lZ3n1W8sbmQq2WxgLbVmJGyr4X4Cf-W1qlflg2TspvzW7Qkmv-1KFwWNN53fZwlZj6YDW6fT5v24lS7rjW87nPfh42KDP0W1Tgcl_7xpLj5VKbx9r2L7SNgW82H1_x1K71GDW22bxPC39SsqWW1DQs5n13c2x0W75CDwQ168pt-W6C1qc733sgXJW92ngFc2cVgm3VvkVnx54P-c2N2VfSMD5NSw-W5FJz0Q6fVsFZW1zsJG17LJ2ymW47VP_K1PHd5TW2f_nn-7Dmr9rF1VzP7723CxW1B_0cH4l5lDpW2k_gV968rKwGW46GfGP5Kzm2DW1hGp2255k0WVW7jdQg16rvpqWW5rdvGN1GFRkZW4xY_jL4LNsBjW61TWTp56PhHtW28DCyM16PfGcW5ctmth71J1fKW2mN_8G8sPh3XW1x9Zgp8tJxdgW7MkSPZ7ZJmSgW5-Wr2t1_njY1W26drJV1YkL6dW4y-Cp02NLfkNf6GYkWx04 ) that provides Wordfence Premium (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VXc_D644-qgsW4p_bmT5QzHMJW3Z50n152TXvDN6pj1Xn3prCCW7Y8-PT6lZ3nkW3L1hZZ3Dn40HW6jFgR97BD26MW4L5xbl5MLFyhW61D-DJ7WccNjVZsdrR81xDBsW2PRrcY57V1lFW4Z0j5y6PKnnqW2PtFt54tNX4zW6PbxCl75QYKMW7T7-R11TwR3kW5Rrx0H88SgpgW2BM5Sm4nrGLQN58h7pyvfpsbW2mZlxY5pD4z2W7zc3PF2Hg2_wW5CHtTL49gTdGW5-mKkn79tyv-W3xvQZ370lsFVW6C2fg11fc2qPW84k1k29kstKHW529q9f49k-jXW6n01-m5-w_qzW4-PMJb87wvxvW3bHGNL4T7hGgW2qHM034nwhqfW4VJcD_5LgL60f4tj1-n04 ) , Wordfence Care (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VXc_D644-qgsW4p_bmT5QzHMJW3Z50n152TXvDN6pj1Xn3prCCW7Y8-PT6lZ3pfW2HLwJK7KyPtgW1GY7yC3-fNLzW5dgK5Q1mwTlzW5J5bPf8VFTnWN7-R52Xt5_5dW7z8clv5XD7gwW5qhdwj7NpdyfV8r6HN65HjLnW8prHJt8jPj-LW8lbtB_1-8QF2W16qYCw95z27VW8s205C5yXlz2W3Prfry8n-mNNW2M6vl574v_66W1vcNB48s_VJBW781Zk334GfCJW62NrVy6HCn75W1lk5B07vpJYTW2bMVHX6JGD_DW5bR5vw7n1qFWW7bRg-C5cS9VKW8q-LX_47GD4XW2jNc8S2VXNk_W5C6gxF6-ywy3W6fHX6y5Jhv_-VPycLr991SMTf5s0ZHx04 ) , and Wordfence Response (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VXc_D644-qgsW4p_bmT5QzHMJW3Z50n152TXvDN6pj1Xn3prCCW7Y8-PT6lZ3lQW7xpsWS376FX_N6803WQXn4LhW8ZGQpQ6zHB7HW876qp22RHhm0W4zF7Zg7F5WWdW22pNNl1K5MLzW7yCFY623hlxbW2pqZFR9bKkHbW2ZG5P53v6FX1W1R5wPb3sYrvvW4jbzlG11VkQLW329v7w8jCf5vW1B5h3J5pvlCMW2F4VxM2XbqzNW4f6zgr7qHd1HW6G972X7SxxMXW1Kyl9Q4XH8qFW5LVsXh8bwvNKW7kk3Sx7FsfHBW1JGWm36gKW5MN1cLfqrQHXWTW8gJTVd5yNvddW4KJhQ7385vwsW3y0tqP6gKN6hW5XkqV54zf8mLW5TJZXF2Dgd0df7x8zW804 ) customers with enhanced vulnerability protection for a vulnerability. Wordfence free users will receive this protection after a 30 day delay.

VIEW THE REPORT NOW
(https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VXc_D644-qgsW4p_bmT5QzHMJW3Z50n152TXvDN6pj1Wv5m_5PW69t95C6lZ3mNVfX_Nm3HzR90W218vmF5tNVM2W2pxML263YlbSW3wjpwY22V1HpW2vTd593XnrVrW7kHYHv7YKPKBVGGxBY4QbXZbW6DtQl_4dTjrSVMv_-H87CrcPW8kMrXL6Fk3xpW4QLmkl6P8HN2W53hhj640SCpLW8wnhHT1Rv3n6W8zrV_x2bJdSnW8hmxYJ16SD15W4C1sbh8Bj7n3W8RqDfl6Tk5H1W3jZr_f92t_tFW4PBngX2qG1p_W3TSgks1hflWTVZvbJb6MhzpyW5TwkPH8V9fsQW2NFTyY64D9z8W1F4Yzc4n25tmW3hkH5j4cC-RbW86wls53G2-FrW5bcqYw2JxWglW10RGV288wcNVW77lLW85SsBYyW3b6Tk715zMydW22nTZf3vB1PJW3ZF4SZ8D2JKVW7570jf6sxvf_W2Llktk5pHgwJW3cTKvz8z32dMW2gWDvk7_J9Vqf8KnWJY04 )

The Full Product Lineup:

wf-stacked-free-1 (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VXc_D644-qgsW4p_bmT5QzHMJW3Z50n152TXvDN6pj1Xn3prCCW7Y8-PT6lZ3lbW2s6Ct49lkwkmN4mCwXLjTbv0W6Hp0pR7Y643gW1nMvBg2HczkcW4sxNbm7Hh7ZKVs6xJf3LjhKTW30v9627qQq_sW6Rb0jN30xwjcW2jxtBP2KYb4dW78P_1B34PtvVW3Rblpp2kFZy4W4BJBLR8gDmrdW5Ymp8T7CKgjfW3YSC1r8Wgcw7W7d4tLH5yx6VHW3ls1-r6-Y_p5W5ZTwTT4yRlV8W5QdVFS265_S_W9k_tZV8sLdFRW5s3tM_87J9yxW5Lz9D854M9jMW6Mqw3r6LkkGfW4yqdnk90PP3CW68R4rh5k6cW5W5qf_7v4rgRsLW2MHYQy3xbd13f6mBRtY04 )

wf-stacked-premium-1 (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VXc_D644-qgsW4p_bmT5QzHMJW3Z50n152TXvDN6pj1Xn3prCCW7Y8-PT6lZ3m4W2qKnNh3DDWxxW8Lpnx-4njnp1W3jlPHm7dBj_DW34NhC81gTG9lW7lkNVC3Nl9GdN4gLNVcy3HShW29l8Z17vrYQcW6XVmN_3cDwcsW6DbsMp7QrKQVW6ZswH73k7YdMVHk1zy6-fk8xW2XKk861mXVgfW1mY2Gh46v3Q5N203rXcVLwJ3W1RvtNk6nfgphW25_FqM6X7cbZW5B8xxd3jJZjJW282v6M7TG1JWN3Mr1QFV_m9ZW3NWRqJ84J9WtW4LgFD678Cpl3W7zKdgW2YS7nKW1SQqxR2nzlVcW2L06Px8bwlTrW5V6QMm7-mMRrW1-WzLv2gMdwTf9b_YjC04 )

wf-stacked-care-3 (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VXc_D644-qgsW4p_bmT5QzHMJW3Z50n152TXvDN6pj1Xn3prCCW7Y8-PT6lZ3pSW6ccvR18m8fR5W1f-W_v94VwJYW7yqVk76zvsDSW7sBH5k4GRrFSW2b235h5C0kQxW8ShW-c6WnfSSW2X03CQ2b5mk3W5dRZ-d1S1RCmW4t1ZWd2kLz4xW42Kqsb3s1G7HW4Grl_l3G7YMPW9lShKf3GTQwVV8Y-m76lTnXzW93Dj2x5vhcgcW6XtgHk1GpNzGW2J8kG76BmkgjW1LlX2b7ZlXDlW6LkF3c7bTPJkW6kqTqZ73jWkBW5zvBgD3QLrZ9W6dWRwm5MhgbtW7wRtrZ8wKGkvW2xghYD1gMQLGW296Lsn1dbcWTW830j5F5PLkR7W5dshLQ4fgqZmf6QsmnR04 )

wf-stacked-response-2 (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VXc_D644-qgsW4p_bmT5QzHMJW3Z50n152TXvDN6pj1Xn3prCCW7Y8-PT6lZ3pdW3llCtt6WhBByW1gC78B1zXNTWW558wzR3KSkHNW2Q9Lg212gbM5W1r3dQW8xHD-DW1fLkbB272jcSW4sjd7r5Tmf37W16cCLH4DnKfYW8_69t05fslzgN63R1p9GHW6HW7mtzhV2hfs8zW7y6bxm5X8xM-W628rmc4zQm2mW5KTGwD7fGkVJW8h1_-L8-LNCnW187jWZ6RSymSW8n38rB8H34Q7W1NLK4Q4-jmNfW5F17613fWFGJW6T1Kvg6G6fdrW2XgnHT47m_z3LX8qs-wfklW7YHlCS4Bhxl4VBnKXH6kSWxsVZj2HM7Q-WnVW8Gt6r_4MssCzf61_SW404 )

wf-stacked-commandline (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VXc_D644-qgsW4p_bmT5QzHMJW3Z50n152TXvDN6pj1Xn3prCCW7Y8-PT6lZ3lPW4s1sVJ43QvH4W4P5_gN31mbQLW5rcCtx4dDzd8W3PFCxT54Tq01W44mHxr8qCbMrW8py_VJ1mDKRYW2p1--D6DPkK8W4NCFgX5b0L3GW5PPKKp6XckcnW107kWp3KnYHSW7v8Bx43g8tmmW6WVkQb3ssPjLW9cFxb05S62cBN2rX3b6Ws_z0T_P-p2mQ3q4W7StrRJ15Sk4pW2Hh-dY6_5SM5W81kpL3840TWfW7QxBB01yCD8cVcmkC62Z2pD4VPcp-X2TTGJGN6kVNd0zfpBrW1NStVz844ysgW1HWpPQ6McpTlV8FRLj6TS15CW8J4R0D5Bg6kdf22S4nC04 )

wf-intel-footer (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VXc_D644-qgsW4p_bmT5QzHMJW3Z50n152TXvDN6pj1X43prCCW7lCdLW6lZ3lFW1v6FT68_5286W55GmN04jPhwcVblPHx13l2jBW7qh8SN34ncGCW6yWJj01kYZjpW7BmLy22y0DJXW62TZ5b7CSwPnW4Jh4dF1c0kstW7Nq4b31cCyVcW2K1LnC1cHxy5W68pvV57X0cpfW4QsT--5qy1bVW5JlLN48W6XrRW9968vY4C5mfxV8-GkL6ZNNmrVKZMJd2QW6pkW77n1z08Cg7r5W7trzSW2K8KfxN74lkJDfhDJ3V-Yn465nHXkPW74Ps0S1QdHCdW4_xVm38zxV6ZW5ZBkr04mXyFMW6PPrMY6vNRM_f7h9p6C04 )

logo-defiant (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VXc_D644-qgsW4p_bmT5QzHMJW3Z50n152TXvDN6pj1WP3prCCW6N1vHY6lZ3mTW22hQGn3xchNfN2t6-bcBqL4rW3RnXkj6Y6V65W6dfkM65-wFWyW5WwY8c4kHnS0W4dkmM45SjkhkW5-7Lxn6QNmSMW5QCTRj2hSyFxW1yxk085pgMPfN4NkNz6Nht9ZW97gKxR3Hk_G0N8bvt-jTTwPkW84sRR36SxCPfW897P_v8SgK0qW4b4hp62TRDfwW2wSSJz6XQkywW4zRvtk5zScTFVjnj8Y5wvb81W6ZYHgx4_wDTMW1g6HJ-7q3ZBSW8gwlhZ8VTdpBW69Xhc46R_m_1f1V-W0j04 )

Defiant, Inc., 1700 Westlake Ave N STE 200, Seattle, WA 98109, United States

Unsubscribe (https://email.wordfence.com/hs/manage-preferences/unsubscribe-all?languagePreference=en&d=Vn9bTK892TtnVsxx1M3JN_XyW41Rcn-4h29fmN6J4V3XmWFg0W53S0kj5pZVFyV25CXv4MpbN7N6xBjTJWKcxMN85k4pRXk_7QMbvXyB9Z_gtW7TrGDG7msFxfw6F2Ylz51_2&v=3&_hsenc=p2ANqtz-8WwnDP-euSHBaVDOjqMyA0dfWMoo4rZg7t_fo-1jySxspyKZ6vLIjv4wmksq8FoSW_oyM7RJnC9epefa-OqdvkHdMzww&_hsmi=272477277 )

Manage preferences (https://email.wordfence.com/hs/manage-preferences/unsubscribe?languagePreference=en&d=Vn9bTK892TtnVsxx1M3JN_XyW41Rcn-4h29fmN6J4V3XmWFg0W53S0kj5pZVFyV25CXv4MpbN7N6xBjTJWKcxMN85k4pRXk_7QMbvXyB9Z_gtW7TrGDG7msFxfw6F2Ylz51_2&v=3&_hsenc=p2ANqtz-8WwnDP-euSHBaVDOjqMyA0dfWMoo4rZg7t_fo-1jySxspyKZ6vLIjv4wmksq8FoSW_oyM7RJnC9epefa-OqdvkHdMzww&_hsmi=272477277 )

You're receiving this email because you signed up to the Wordfence WordPress security mailing list.
Received on Thu Aug 31 2023 - 15:27:35 CEST

This archive was generated by hypermail 2.3.0 : Thu Aug 31 2023 - 15:32:55 CEST