CVE-2023-47788

WordPress Jetpack plugin < 12.7 - Contributor+ Broken Access Control vulnerability

Missing Authorization vulnerability in Automattic Jetpack.This issue affects Jetpack: from n/a before 12.7.


We have discovered 250,102 live websites that are affected by CVE-2023-47788.

Run a Free Instant Scan




Affected Software

Product  Jetpack
Category Widgets
Vulnerable Domains250,102 live websites (24.77% of Jetpack install base)
Vulnerable Versions
  • from 0 before 12.7
Vulnerable Versions Count497 versions ( 90.86% of all versions)


Common Weakness Enumeration

CWE-862 Missing Authorization



Details

  • Published - Jun 19, 2024
  • Updated - Aug 2, 2024

Credits

  • Rafie Muhammad (Patchstack) (finder)

CVE-2023-47788 usage by Country

United States82,032 websites



Japan38,573 websites
Germany24,765 websites
France15,650 websites
GB9,022 websites
Italy8,614 websites
Netherlands6,412 websites
Spain4,801 websites
Russia3,881 websites

CVE-2023-47788 usage by TLD

.com122,035 websites
.org11,144 websites
.de11,078 websites
.net10,250 websites
.jp6,857 websites
.it6,251 websites
.co.uk6,134 websites
.fr6,077 websites
.nl5,933 websites
.ru3,341 websites

Vulnerable Versions

Vulnerable versions are highlighted in red

Websites affected by CVE-2023-47788

Top websites that are affected by CVE-2023-47788. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
*********.com United States***
***************.eu Netherlands*,***
*******.com United States*,***
***********************.com United States*,***
*************.com United States*,***
*******.net Turkey*,***
****.com United States*,***
*****************.com United States**,***
*********.com United States**,***
***********.com United States**,***
See full domain list

FAQ

CVE-2023-47788 is Missing Authorization in Jetpack
A total of 250,102 websites have been identified as vulnerable to CVE-2023-47788, based on global website indexing conducted by WebTechSurvey.
The Jetpack is affected by the CVE-2023-47788 vulnerability.
Jetpack versions up to 12.7 are vulnerable to CVE-2023-47788.
CVE-2023-47788 is resolved in version 12.7 of Jetpack.