References https://nvd.nist.gov/vuln/detail/CVE-2023-53869 https://cve.imfht.com/detail/CVE-2023-53869 https://access.redhat.com/security/cve/cve-2023-53869 https://github.com/advisories/GHSA-r46w-6r25-mwj8 https://dbugs.ptsecurity.com/vulnerability/PT-2025-51287 https://cve.scap.org.cn/vulnerability/VHN-340936 https://app.opencve.io/cve/CVE-2023-53869 https://strobes.co/vi/cve/CVE-2023-53869
Related VulnerabilitiesPoCCVE-2026-1281: Ivanti EPMM <=12.7.0.0 - Unauthenticated Code InjectionPoCCVE-2026-28141: NextGEN Gallery <= 4.2.3 - Reflected Cross-Site ScriptingPoCCVE-2026-28411: WeGIA < 3.6.5 - Unauthenticated Authentication Bypass via extract()PoCCVE-2026-30849: MantisBT < 2.28.1 - SOAP API Authentication BypassApache Log4j2 远程代码执行漏洞(CVE-2021-44228)PoCCVE-2026-42878: FacturaScripts - Unauthenticated phpinfo DisclosurePoCCVE-2026-12898: All-in-One WP Migration and Backup < 7.106 - Arbitrary Log File WritePoCCVE-2022-1281: Photo Gallery WordPress v1.6.3 - SQL InjectionPoCCVE-2026-52806: Gogs <= 0.14.2 - Authenticated RCE via git rebase Argument InjectionPoCCVE-2025-13342: DynamiApps Frontend Admin <= 3.28.20 - Unauthenticated Arbitrary Options UpdatePoCCVE-2025-13528: Feedback Modal for Website <= 1.0.1 - Unauthenticated Feedback ExportPoCCVE-2026-40280: Gotenberg <= 8.30.1 - Server Side Request ForgeryPoCCVE-2026-45332: Automad < 2.0.0-beta.28 - Unauthenticated Admin Password Hash Disclosure