References https://nvd.nist.gov/vuln/detail/CVE-2023-53884 https://www.cvedetails.com/cve/CVE-2023-53884/ https://cve.imfht.com/detail/CVE-2023-53884?lang=en https://cvefeed.io/vuln/detail/CVE-2023-53884 https://www.incibe.es/en/incibe-cert/early-warning/vulnerabilities/cve-2023-53884 https://github.com/advisories/GHSA-557f-ppxv-gpgc https://access.redhat.com/security/cve/cve-2023-53884 https://app.opencve.io/cve/?product=webedition_cms&vendor=webedition
Related VulnerabilitiesPoCCVE-2026-62382: PasswordPusher v1.45.11-v2.9.5 - Unauthenticated Anonymous Push Deletion via Ownership BypassPoCCVE-2026-34976: Dgraph <=v25.3.0 - Admin Mutation Missing Authorization信呼oa v2.7.6 api.php downimgnew 接口任意服务端请求伪造漏洞安科瑞EMS企业微电网能效管理平台 /SubstationWEBV2/main/appDownload 文件读取漏洞Progress Kemp LoadMaster /accessv2 命令执行漏洞(CVE-2026-8037)Hoverfly /api/v2/ws/logs 信息泄露漏洞Langflow /api/v2/files 文件上传漏洞(CVE-2026-5027)Gitea /v2/_catalog 未授权访问漏洞(CVE-2026-27771)Ivanti Sentry /mics/api/v2/sentry/mics-config/handleMessage 命令执行漏洞(CVE-2026-10520)Ivanti EPMM /mifs/rs/api/v2/featureusage 命令执行漏洞(CVE-2025-4427)WordPress Burst Statistics /wp-json/wp/v2/users/me 权限绕过漏洞(CVE-2026-8181)WordPress Stop User Enumeration插件 /wp/v2/users 权限绕过漏洞(CVE-2025-4302)心理云CT系统V2.0存在任意文件上传