Vulnerability Database

314,496

Total vulnerabilities in the database

CVE-2023-5559

The 10Web Booster WordPress plugin before 2.24.18 does not validate the option name given to some AJAX actions, allowing unauthenticated users to delete arbitrary options from the database, leading to denial of service.

  • Published: Nov 27, 2023
  • Updated: Nov 16, 2025
  • CVE: CVE-2023-5559
  • Severity: Critical
  • Exploit:

CVSS v3:

  • Severity: Critical
  • Score: 9.1
  • AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H

No CWE or OWASP classifications available.