CVE-2023-32123


WordPress The7 Theme <= 11.7.3 is vulnerable to Cross Site Request Forgery (CSRF)

Cross-Site Request Forgery (CSRF) vulnerability in Dream-Theme The7 allows Stored XSS.This issue affects The7: from n/a through 11.7.3.



We have discovered 32,579 live websites that are affected by CVE-2023-32123.

Contact us to get more info




Affected Software

Product  The7
Category Wordpress Themes
Vulnerable Versions
  • from 0 through 11.7.3
Total Vulnerable Versions203
Vulnerable Domains32,579 live websites (49.43% of The7 install base)


Common Weakness Enumeration


CWE-352 Cross-Site Request Forgery (CSRF)


Distribution by Website Rank

The diagram provides a graphic representation of the correlation between the occurrence of CVE-2023-32123 and the relative popularity of websites


Details

  • Published - Nov 13, 2023
  • Updated - Nov 13, 2023

Credits

  • Dave Jong (Patchstack) (finder)





Countries

United States7,066 websites



Germany3,796 websites
Italy2,172 websites
France1,880 websites
Spain1,782 websites
GB1,729 websites
Netherlands1,437 websites
Russia824 websites
Australia783 websites
Canada715 websites

TLDs

.com12,555 websites
.de2,807 websites
.it1,475 websites
.org1,225 websites
.nl1,213 websites
.co.uk1,055 websites
.fr780 websites
.es701 websites
.com.au624 websites
.ru614 websites

Vulnerable Versions

Vulnerable versions are highlighted in red


Geographical Distribution

The distribution of websites across the globe that are exposed to CVE-2023-32123 through included software libraries and plugins.



References


Websites affected by CVE-2023-32123

Top websites that are affected by CVE-2023-32123. Please click on the "Contact us" button above to get more information.
DomainCountryRankContacts
***********.com Germany*,***
***********.com United States**,***
**********.com France**,***
**********.fr France**,***
*****.com France**,***
***.*******.com United States**,***
****.********.com GB**,***
****************.org United States**,***
***.*******.com United States**,***
*******.hu Hungary**,***
See full domain list