AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2023-40068

MEDIUM · CVSS 5.4 EPSS 1.48%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2023-08-21 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2023-40068
Severity
MEDIUM
CVSS
5.4
EPSS
1.48%

Original NVD Description

Cross-site scripting vulnerability in Advanced Custom Fields versions 6.1.0 to 6.1.7 and Advanced Custom Fields Pro versions 6.1.0 to 6.1.7 allows a remote authenticated attacker to execute an arbitrary script on the web browser of the user who is logging in to the product with the administrative privilege.