CVE-2023-23894: Surbma Gdpr Proof Cookie Consent & Notice Bar
Medium severity, CVSS 5.4. EPSS: 0.4% chance of exploitation in the next 30 days.
Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Surbma Surbma | GDPR Proof Cookie Consent & Notice Bar plugin <= 17.5.3 versions.
Affected products
- Surbma Gdpr Proof Cookie Consent & Notice Bar: before 17.6.0 (fixed in 17.6.0)
Published 2023-05-08. Last modified 2026-06-17.