Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1020 CNY

100%

Unknown — Vulnerabilities & Security Advisories 4151

Browse all 4151 CVE security advisories affecting Unknown. AI-powered Chinese analysis, POCs, and references for each vulnerability.

“Unknown” represents a broad category of unclassified or poorly documented software components, currently associated with 4,141 recorded CVEs. These vulnerabilities typically stem from legacy architectures or proprietary systems lacking transparent security audits. Common flaw classes include remote code execution, cross-site scripting, and privilege escalation, often resulting from inadequate input validation or hardcoded credentials. Due to the opaque nature of these products, detailed security characteristics are frequently absent, making risk assessment difficult for organizations. Major incidents involving “Unknown” entities often highlight systemic failures in patch management and vendor accountability. The sheer volume of vulnerabilities suggests widespread reliance on unsupported or obscure technologies within critical infrastructure. Addressing these risks requires rigorous inventory management and proactive threat hunting, as standard mitigation strategies may not apply to such undefined software ecosystems.

CVE IDTitleCVSSSeverityPublished
CVE-2023-2401 Qubotchat < 1.1.6 – Admin+ Stored XSS — QuBot 4.8 -2023-06-19
CVE-2023-2492 QueryWall: Plug'n Play Firewall <= 1.1.1 - Admin+ SQLi — QueryWall: Plug'n Play Firewall 7.2 -2023-06-19
CVE-2023-2899 Google Map Shortcode <= 3.1.2 - Contributor+ Stored XSS — Google Map Shortcode 5.4 -2023-06-19
CVE-2023-2742 AI ChatBot < 4.5.5 - Admin+ Stored Cross-Site Scripting — AI ChatBot 4.8 -2023-06-19
CVE-2023-2719 SupportCandy < 3.1.7 - Subscriber+ SQLi — SupportCandy 8.8 -2023-06-19
CVE-2023-2221 WP Custom Cursors < 3.2 - Admin+ SQLi — WP Custom Cursors | WordPress Cursor Plugin 7.2 -2023-06-19
CVE-2023-2811 AI ChatBot < 4.5.6 - Admin+ Stored Cross-Site Scripting — AI ChatBot 4.8 -2023-06-19
CVE-2023-2684 File Renaming on Upload < 2.5.2 - Admin+ Stored Cross-Site Scripting — File Renaming on Upload 4.8 -2023-06-19
CVE-2023-2779 Super Socializer < 7.13.52 - Reflected XSS — Social Share, Social Login and Social Comments Plugin 6.1 -2023-06-19
CVE-2023-2362 Multiple Plugins from Wow-Company - Reflected XSS — Float menu 5.3 -2023-06-12
CVE-2023-2568 Photo Gallery by Ays < 5.1.7 - Reflected XSS — Photo Gallery by Ays 6.1 -2023-06-12
CVE-2023-0431 File Away <= 3.9.9.0.1 - Contributor+ Stored XSS via Shortcode — File Away 5.4 -2023-06-12
CVE-2023-2398 Icegram Engage < 3.1.12 - Reflected XSS — Icegram Engage 6.1 -2023-06-12
CVE-2023-1323 Easy Forms for MailChimp < 6.8.9 - Admin+ Stored XSS — Easy Forms for Mailchimp 4.8 -2023-06-12
CVE-2023-2718 Contact Form Email < 1.3.38 - Unauthenticated Stored Cross-Site Scripting — Contact Form Email 5.4 -2023-06-12
CVE-2023-2571 Quiz Maker < 6.4.2.7 - Reflected XSS — Quiz Maker 6.1 -2023-06-05
CVE-2023-2472 Newsletter, SMTP, Email marketing and Subscribe forms by Sendinblue < 3.1.61 - Reflected XSS — Newsletter, SMTP, Email marketing and Subscribe forms by Sendinblue 6.1 -2023-06-05
CVE-2023-0900 AP Pricing Tables Lite <= 1.1.6 - Admin+ SQLi — Pricing Table Builder 7.2 -2023-06-05
CVE-2023-2224 Seo By 10Web < 1.2.7 - Admin+ Stored XSS — SEO by 10Web 4.8 -2023-06-05
CVE-2023-2634 Get Your Number <= 1.1.3 - Admin+ Stored XSS — Get your number 4.8 -2023-06-05
CVE-2022-4946 Frontend Post WordPress Plugin <= 2.8.4 - Contributor+ Arbitrary Redirect — Frontend Post WordPress Plugin 5.4 -2023-06-05
CVE-2023-2337 ConvertKit < 2.2.1 - Reflected XSS — ConvertKit 6.1 -2023-06-05
CVE-2023-2572 Survey Maker < 3.4.7 - Reflected XSS — Survey Maker 6.1 -2023-06-05
CVE-2023-0152 WP Multi Store Locator <= 2.4 - Contributor+ Stored XSS — WP Multi Store Locator 5.4 -2023-06-05
CVE-2023-2489 Stop Spammers Security < 2023 - Admin+ Stored XSS — Stop Spammers Security | Block Spam Users, Comments, Forms 4.8 -2023-06-05
CVE-2023-2488 Stop Spammers Security < 2023 - Reflected XSS — Stop Spammers Security | Block Spam Users, Comments, Forms 6.1 -2023-06-05
CVE-2023-0545 Hostel < 1.1.5.2 - Admin+ Stored XSS — Hostel 4.8 -2023-06-05
CVE-2023-2503 10WebSocial < 1.2.9 - Reflected XSS — 10Web Social Post Feed 6.1 -2023-06-05
CVE-2023-2111 HollerBox < 2.1.4 - Admin+ SQL Injection — Fast & Effective Popups & Lead-Generation for WordPress 4.9 -2023-05-30
CVE-2023-2296 Loginizer 1.7.8 - Reflected XSS — Loginizer 6.1 -2023-05-30

This page lists every published CVE security advisory associated with Unknown. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.