[WordPress Security] 109 Vulnerabilities in This Week's Wordfence Intelligence WordPress Vulnerability Report (October 16, 2023 to October 22, 2023)

From: Wordfence <list_at_wordfence.com>
Date: Thu, 26 Oct 2023 12:01:46 -0700

109 vulnerabilities were disclosed in WordPress software last week. Review the report now to determine if your site is affected.

Wordfence-Logo.png (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VVYkfR3LZXNzW6zGfgJ6_8rFDW3S9mTt555s2KN3cFw5H3prCCW6N1vHY6lZ3ncW8xWjQd1Y8Jn7W3vdmN77hPBXxN90K0f9JV3k0W85HmfW6WzqLCMKKZ5DmPDkbVpb20P8W0ZFYW3SL7mT2lDbSGW24bWgM14hRdsW3NqQmw4WmML1W6fnrg_5stBmsW97lz1G3YvHyrW8JtFY-8FS6pRVDBwlB6f1pkZW1XBVlQ8CTjHSW4vfwL06Q7_7BVj4dPq72gV2SW5rMK_987YW96W7hjtq17Q7DQbW3YqhWC8Ml6zQW8kvbbj2C-T3SW1ytY2Y5D47PNW4GSrbd7Cxcxhf8CTzrz04 )

WFI-Vuln-Report-WeekofOct16 (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VVYkfR3LZXNzW6zGfgJ6_8rFDW3S9mTt555s2KN3cFw5n5m_5PW69t95C6lZ3mQW7Srb8F3mgzsGVNY7nT2r_DR1W719k_N86wXQfW6Sb8_86l8nLMW8ZTz2Q4_0BLVVXHTDq7yRWxVN18CFLCG-1MdW1Z3dYk7hsFh3W3qdTlR4s4z0pW3Ch88y7Tkpq5W77FZ_G5m3gsbVj790L1NnT8PW8-KnJC8Cp6pCW8QTsPM4sRqPFVB09QF3LzGv4W4BdNW22bVlvCW7LF3YL2NhlC7W4l1jh08FLSzDW6pNsZG76n2MwW47M0G46LRY5MW4gFB665Mq78PV9tpXg3TS_70W7tgkg621M9gzVfKgYf4djm2rVHKbDT3NrhSgVl0jtT325w5RW2pLpcY7nzGjFW2rNmY-1mCBbhW3y_b5k1LcrWnV_348Z2-XLhHW6fkGjW1mXkgFV9TDKq2J7cD9W8MsfjK6jfkCpN8qgqWc2qKgzW8nP1D72DYHkQW2MyNSL30Wv0Sf54DMyb04 )

Last week, there were 109 vulnerabilities disclosed in 95 WordPress Plugins 1 WordPress theme (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VVYkfR3LZXNzW6zGfgJ6_8rFDW3S9mTt555s2KN3cFw5n5m_5PW69t95C6lZ3mQW7Srb8F3mgzsGVNY7nT2r_DR1W719k_N86wXQfW6Sb8_86l8nLMW8ZTz2Q4_0BLVVXHTDq7yRWxVN18CFLCG-1MdW1Z3dYk7hsFh3W3qdTlR4s4z0pW3Ch88y7Tkpq5W77FZ_G5m3gsbVj790L1NnT8PW8-KnJC8Cp6pCW8QTsPM4sRqPFVB09QF3LzGv4W4BdNW22bVlvCW7LF3YL2NhlC7W4l1jh08FLSzDW6pNsZG76n2MwW47M0G46LRY5MW4gFB665Mq78PV9tpXg3TS_70W7tgkg621M9gzVfKgYf4djm2rVHKbDT3NrhSgVl0jtT325w5RW2pLpcY7nzGjFW2rNmY-1mCBbhW3y_b5k1LcrWnV_348Z2-XLhHW6fkGjW1mXkgFV9TDKq2J7cD9W8MsfjK6jfkCpN8qgqWc2qKgzW8nP1D72DYHkQW2MyNSL30Wv0Sf54DMyb04 ) that have been added to the Wordfence Intelligence Vulnerability Database by the Wordfence Threat Intelligence Team.

🎉 We'd like to say a special thank you to the 39 Vulnerability Researchers (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VVYkfR3LZXNzW6zGfgJ6_8rFDW3S9mTt555s2KN3cFw5-5m_5PW7lCGcx6lZ3pvVLWR-V8nSHW8W6VftJv8v3_WqW6ys7vt4NzNFMW8pj4mm1c-l7lW1nC9DL8tFK4VW5CBMDg3WyymxW7wCJW63P0jlvW7FXhL93qSkZwW1wkP-W4Rx4hkW4mmssJ7vx7QYN7smmy9MFlqsVW3KRJ74DcmlW65v9T15qqGyVW3Gb10H6XZzP3W7PBSnv7y8zjNW2FbdQS9bgrqhW7XVZhz8Hv-6ZVcRq3s67nNyNW3pPW-_7mQjq1W1KHBRC768y_KW7ZPs4s3B0NKGW81zqyW2m_J2kW8GNG-K6dpsHjW20qJBk67cBKHW1brTCY5QlbZSVyWySv6GT4QpW58m8w76BbTjsN1cQYkD1Clm3W2h9qGN5R_N7WW2gyZF-5csN1wW29v2kS2KqKD-W7JRbq61C9YvnW158xtq26Jz01W2Q35Q934xqg7W2N032K4q2dG8VQqlYb7scrwFVvZZ1g3q22B9Vrl32L71Z_8JW1Gxy-r6RGmt3W8DY5ZD4nc0wYf4czKQq04 ) that contributed to WordPress Security by responsibly disclosing those vulnerabilities!

READ THE REPORT NOW
(https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VVYkfR3LZXNzW6zGfgJ6_8rFDW3S9mTt555s2KN3cFw5n5m_5PW69t95C6lZ3mQW7Srb8F3mgzsGVNY7nT2r_DR1W719k_N86wXQfW6Sb8_86l8nLMW8ZTz2Q4_0BLVVXHTDq7yRWxVN18CFLCG-1MdW1Z3dYk7hsFh3W3qdTlR4s4z0pW3Ch88y7Tkpq5W77FZ_G5m3gsbVj790L1NnT8PW8-KnJC8Cp6pCW8QTsPM4sRqPFVB09QF3LzGv4W4BdNW22bVlvCW7LF3YL2NhlC7W4l1jh08FLSzDW6pNsZG76n2MwW47M0G46LRY5MW4gFB665Mq78PV9tpXg3TS_70W7tgkg621M9gzVfKgYf4djm2rVHKbDT3NrhSgVl0jtT325w5RW2pLpcY7nzGjFW2rNmY-1mCBbhW3y_b5k1LcrWnV_348Z2-XLhHW6fkGjW1mXkgFV9TDKq2J7cD9W8MsfjK6jfkCpN8qgqWc2qKgzW8nP1D72DYHkQW2MyNSL30Wv0Sf54DMyb04 )

As a reminder, our mission with Wordfence Intelligence is to make valuable and high quality vulnerability information easily accessible to everyone, like the WordPress community, so individuals and organizations alike can utilize that data to make the internet more secure. That is why the Wordfence Intelligence user interface (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VVYkfR3LZXNzW6zGfgJ6_8rFDW3S9mTt555s2KN3cFw5-3prCCW7lCdLW6lZ3mfW64G5RN4_Wm96VsZSVK5Sdj5_W2L61PX2Gk9k3W5QlbG915QgJCW2KnBz476V8lGVg6shz2PcJnjW4v0qKK3gs3Q3N15P8bLQqZTZW5GrPdV6K4K5vW3qFz6B4vG_3bW4J5FKr6y74DcW4W05VR4kQ1RBW8YPYdr4kzbHZW3s5cV95y_bQwDz2l1mR1zMW2FzS628Flx1VW1B5c7H4j4FSDW2R6By48MzYjSW2B2zZc7CgWk6W33wJyF1gsQxPW98q9BS1HRwflW7QMxkQ7QR0g8W56jZZn35m8rxVlClm-40Rq07f1nLnlx04 ) , vulnerability API (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VVYkfR3LZXNzW6zGfgJ6_8rFDW3S9mTt555s2KN3cFw4P5m_5PW50kH_H6lZ3nJVDHcSJ70vP_qW7yrx9B3GFMnyW5Nq771487mGkV8ZRlj3SrkNrW4hm2My2pygBSW7H6FPH9kKGtqW696PwP10Hr73W1VGrfW4TTD42N1FBGTyKFxJ-W1VpynD2cHyvzW1Q_qjj6n-vCwW50g8wN75xR6gW1Kh4ZZ7N5kprW52XmVG6F4B8SW5bXb4n8wj2NQMRm2Zr_-rs9W8CVdLT1tYtgdW5xQcvH7RrK0lW50FXnL39y07WVZjT1P8SWypwW77ml4C81tmKZW5FvPGd1vTRcdW7ZQrDW5FZf2qW52n1F32wC-8qN6K6X8mwwHMFW1JM8fX578G9yVbmgyl7v0jP9W7lgGkj1K3tCNW64VWrJ7_C3b8W44hn2M8Q3xj0W16Jk728-VvT0W2f-1pn7tNfD7f5h0PkY04 ) and webhook integration (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VVYkfR3LZXNzW6zGfgJ6_8rFDW3S9mTt555s2KN3cFw6z3prCCW8wLKSR6lZ3prW1L0j4w2BlSxKW7rvzQ78pjfyLW9j1LDn445T0GW4DcgHC808SQKW31CRNR36_nyMW2ZwfPH3Fs5HnW49ltPy3VcCYXW4RK4ct7bhT4VW1g5nw056-D61W3CDx4H1mrgJZW5rz1jB8xTDS3Vqrf005-fmtqW8fBWVJ19pfPWN3zRZ0SQ489DW1YhcK94pPH_hW5kP_8j2VcrhCW6RWGVT4rhrSvW6RzYlb15WYbVW3qV0Dd5-wH9dW3j1w-m26CKP0W6LzPJf6RpRyDW4KvbFR9jmDZTVMVXVn87D17dW7pbH_R1XGZT6W961dmc5sTvB7W3-j3Fw4_g_wqW7cNsfd5sB9KFW1Ntj9g5J4QzSf4KRYRW04 ) are completely free to access and utilize both personally and commercially, and why we run this weekly vulnerability report.

Individuals and Enterprises can use the vulnerability Database API (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VVYkfR3LZXNzW6zGfgJ6_8rFDW3S9mTt555s2KN3cFw4P5m_5PW50kH_H6lZ3nJVDHcSJ70vP_qW7yrx9B3GFMnyW5Nq771487mGkV8ZRlj3SrkNrW4hm2My2pygBSW7H6FPH9kKGtqW696PwP10Hr73W1VGrfW4TTD42N1FBGTyKFxJ-W1VpynD2cHyvzW1Q_qjj6n-vCwW50g8wN75xR6gW1Kh4ZZ7N5kprW52XmVG6F4B8SW5bXb4n8wj2NQMRm2Zr_-rs9W8CVdLT1tYtgdW5xQcvH7RrK0lW50FXnL39y07WVZjT1P8SWypwW77ml4C81tmKZW5FvPGd1vTRcdW7ZQrDW5FZf2qW52n1F32wC-8qN6K6X8mwwHMFW1JM8fX578G9yVbmgyl7v0jP9W7lgGkj1K3tCNW64VWrJ7_C3b8W44hn2M8Q3xj0W16Jk728-VvT0W2f-1pn7tNfD7f5h0PkY04 ) to receive a complete dump of our database of over 12,000 vulnerabilities and then utilize the webhook integration (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VVYkfR3LZXNzW6zGfgJ6_8rFDW3S9mTt555s2KN3cFw6z3prCCW8wLKSR6lZ3prW1L0j4w2BlSxKW7rvzQ78pjfyLW9j1LDn445T0GW4DcgHC808SQKW31CRNR36_nyMW2ZwfPH3Fs5HnW49ltPy3VcCYXW4RK4ct7bhT4VW1g5nw056-D61W3CDx4H1mrgJZW5rz1jB8xTDS3Vqrf005-fmtqW8fBWVJ19pfPWN3zRZ0SQ489DW1YhcK94pPH_hW5kP_8j2VcrhCW6RWGVT4rhrSvW6RzYlb15WYbVW3qV0Dd5-wH9dW3j1w-m26CKP0W6LzPJf6RpRyDW4KvbFR9jmDZTVMVXVn87D17dW7pbH_R1XGZT6W961dmc5sTvB7W3-j3Fw4_g_wqW7cNsfd5sB9KFW1Ntj9g5J4QzSf4KRYRW04 ) to stay on top of the newest vulnerabilities added in real-time, as well as any updates made to the database, all for free.

The Full Product Lineup

wf-stacked-free-1 (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VVYkfR3LZXNzW6zGfgJ6_8rFDW3S9mTt555s2KN3cFw6g3prCCW7Y8-PT6lZ3pCW552gNv8BT0FCW4GQdYX80hnsmW2Q0Tkd8VFBSFW2bxptV8hNLX1Vr8SJh5gBZNBVBXyhL4t8-cSW3lNgxp61VQ68W2XJwT11PW-P4W5ykt8f2MK_9JW44lnqw7tFrpXW46P8Wx6ybWrXW13Cy3s7wc6QJW50THrT18SyldW6x0h6b3gSPd_W7lRFNB1clTtTW3nfGL73tXslWW5Lspwn2cFKXGW2D3z4q2tTH-WW2Rrj4l6sQQGKN7l29WZ3TK_PW1bFrmX92DfBBW1bzF2p5WJYVLW6YHL5n5mX-9LVz_sx43ypVKyN8frKZSBZWz0W5Qkpkj6YHzG7f5bt6qR04 )

wf-stacked-premium-1 (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VVYkfR3LZXNzW6zGfgJ6_8rFDW3S9mTt555s2KN3cFw6g3prCCW7Y8-PT6lZ3kHW435h-l6tSQlkW32KBd23S7srtW59S6GG895h0FW69MpW81GRBmmN5rr8jfkyGWtW66Rz2k1N5nD9W82QYTD2lbfPDW2km9fR7pyT9XW3SQKTg6Jx-msW3-qzZJ2NbYDzW16R1JT7ydyclW2SYh3h3VgBSqW59r6qL8gfj6_Vk18Y73q0kVhW8gdqZ98760fWW2sLxpm6xvsqNW7-jTT11nqqmFW74nlF92-vDKcW6sLw8H5KGg6mW8nTfJq1F61MqW4d3P124S2kq9W8BFgbD4Cd1VpW10s6rw6f-X4pW7pBk3V2g7J0bW14WSR36qQDWxW7fkJQ31C_brdf2hV20C04 )

wf-stacked-care-3 (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VVYkfR3LZXNzW6zGfgJ6_8rFDW3S9mTt555s2KN3cFw6g3prCCW7Y8-PT6lZ3pXW4DgNW64DcbNKW5KQwvq3JtNWDW5FcJDg8w_XgqW4vVxDd1SxqnjW8lYDFK5l_vsYW4L0LWV600Q3QW4Y-mgQ3XrX_3W45DBmJ620ld1W5WdnQ82_w7b6W4yjbNz5DzS7wW7Jz3lR2LZRZ6W72f8pK5q2d5RW7gZR5n3G-0HcW45nKzN6XhCcNW2V_tSp7Mf0rfW3b6dGc7pr2pzW5XsfhD81-DKmW7b7v-J167jmbN5HPvL4YTmKxW6ZmyYF4_KxfpW2mqGHq1FKklbW2fhHpl4NFyGTTLD0X61sngYW3wNXv71xypw4W5P6vjv4DBZrdW4SNmnG19mCmLf8vB8FR04 )

wf-stacked-response-2 (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VVYkfR3LZXNzW6zGfgJ6_8rFDW3S9mTt555s2KN3cFw6g3prCCW7Y8-PT6lZ3n4W3JM8rc5453kXW8TPtXJ11_whvW4fyxdF8MM9mKV5frTg7v1BKJW3fmK_w47dPRZW455p3K1J8h2hW2W9WTS7QqLJXW8w6bdQ4nMlTjW7nkWh343z_TYW23ZLS98zqKX7W2klz_B8hRXxwN3b96SB40Qk3W6R1NF84Bgw72VfVZ9F5_5-TzN6ft6jLqTZZ-W737W3Y2k69whW5hSBBy7zfBCzW4rVlwX3DjywCW11D7Xz5B4NXjW7csStt7hczKdW1nvL1b78jMvBW2_D8J-7STqjWM4PBbyGm-BPW7XtnCK5dNqwJW4md-HD5ChFSdW52cPZn1WJmPPf4nygP-04 )

wf-stacked-cli (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VVYkfR3LZXNzW6zGfgJ6_8rFDW3S9mTt555s2KN3cFw6g3prCCW7Y8-PT6lZ3pBW40qpj76jq82bN56MwXsBDznCW5G8pt35rMTlDW12qxHb2b0gHzW7hFBQY2y2NVwW8zxZDn2QTH12W3gY24l3HQSRcW9g78mn27g4SbW1Shrv932GBxGW4w_dC-43rZ8TW1NpnWw2r_csBN1y79h1JFpWjN4q2GK_l1q5HW7Ln-6W1qNWVVW7VGqkz1bG4gxN37mSgDLlpSlVSrTQs7Bs3s9W8R_M6D1fzk1fW3jw7rt2swcG8W3jxqlZ7VZ30ZVKGMj95Yn5CZW1L-vzY1RSK_mW8VzQLb7v4f7_W8SJRJm6K48WCW4pZx2P26rvKbW2q-vJ-2rPqSNf8vy3cP04 )

wf-stacked-intelligence (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VVYkfR3LZXNzW6zGfgJ6_8rFDW3S9mTt555s2KN3cFw5-3prCCW7lCdLW6lZ3lmW7f3s051N9WqvW2FYjSK4xdZdxW2Zb0kB5j6pQ4VLkkpD4r2scpW90Hghj5m44NYW3NfG8L1sprNKN82CC2lG4rntW1PbM_14kPkrFW4MLq3Z4Mp6c7W2bFqVF63fgqTW3P8Svc97XLVmW3sQVYq7nNYMyW16f7FT5w2LMcN5Hj-4mlg1cZVQp8GV20Mb_rW1b3mhl2Qy5K-W5DHW5P7lWGkgW8GynRN1bz8y2W4x_g4g5MlzfwW12Qy_X5MDR9QVNBrrn3cfWBLW380S0V30GHHgVblBFK6nLLfgW8TWQSz4gptdDf3ncFLq04 )

logo-defiant (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VVYkfR3LZXNzW6zGfgJ6_8rFDW3S9mTt555s2KN3cFw5H3prCCW6N1vHY6lZ3kvW4sfVPC7ycnNbW82CWT69lPMBRN2VvvGJs23yNW5mJ5208wdBHNW51_Y262SXrlNW99d-lt43zK3CW6Nbmjd7bd1FpW1xTwGz4yCX4cW2GvLgJ7_bJWFN2DD5XztxclCW5ml06X4mDLJ0W70DNH74cnJMfN59pJ_jHgRl2W8yDk0v5bT6NrW2s3y6f7g0ThrW2j89wK84cWMjW31JdGh6pH141W6G1-RL7z-wqVW7VCpWM110bnkW1GF9q55DqngbW99JLXj2BHtZ9W36Xl7m8V6x07f1w3DqC04 )

Defiant, Inc., 1700 Westlake Ave N STE 200

Seattle, WA 98109 United States

Unsubscribe (https://email.wordfence.com/hs/manage-preferences/unsubscribe-all?languagePreference=en&d=Vn8Pp4892TtnVsxx1M3JN_XyW41Rcn-4h29fmN6J4V3WmWcPkW6xljVs6KSJ26V25vTf5kQ_y2W7svkP87XBglgN6GtTtm1yf0NN30BmhWKX-1YW2SHTvM7cXY_6n40XpVb4G3&v=3&_hsenc=p2ANqtz--VdMa4qpKwldJAVHv6jpvYDL5MJGpw9cbNH6nLALvDJ0IXQWIXFS8EKEK2VlOsR-U3ycuBRA5zFN4-SUg10uQ6aZGZhQ&_hsmi=280044486 ) Manage Preferences (https://email.wordfence.com/hs/manage-preferences/unsubscribe?languagePreference=en&d=Vn8Pp4892TtnVsxx1M3JN_XyW41Rcn-4h29fmN6J4V3WmWcPkW6xljVs6KSJ26V25vTf5kQ_y2W7svkP87XBglgN6GtTtm1yf0NN30BmhWKX-1YW2SHTvM7cXY_6n40XpVb4G3&v=3&_hsenc=p2ANqtz--VdMa4qpKwldJAVHv6jpvYDL5MJGpw9cbNH6nLALvDJ0IXQWIXFS8EKEK2VlOsR-U3ycuBRA5zFN4-SUg10uQ6aZGZhQ&_hsmi=280044486 )

ISO_27001 (https://email.wordfence.com/e3t/Ctc/GC+113/cwG7R04/VVYkfR3LZXNzW6zGfgJ6_8rFDW3S9mTt555s2KN3cFw5H3prCCW6N1vHY6lZ3pgW5WLWq693YVtcW3jx7gD5-WtVTN8MC8qq-C-sFV3Xzp01fNl3kW87013V2Q-5NnW2TrL4B2mMwghW1RtyZ06t5C6ZW4kHR114hVTqNW2Q-LNK70ZbNWN8sYKHW-8y-LN7pcLZGj_4w9W2q7vZx8kdFBBV-MWkl7Z3bJtW1yf0mt6TrtrxVrTHb94Gg7ZkW2kYFjH3pzR2cW1VVH8R3_QDzsW4s7yyP5jvDJCW8ZLH8B91yzlNW3KgBmq48pTHVW8y_vQV1FNT6SW4d3zBL8Z5nqnf7t1hCx04 )

You're receiving this email because you signed up to the Wordfence WordPress security mailing list.
Received on Thu Oct 26 2023 - 21:01:50 CEST

This archive was generated by hypermail 2.3.0 : Thu Oct 26 2023 - 21:03:16 CEST