First published: Thu Aug 22 2019(Updated: )
The clean-login plugin before 1.5.1 for WordPress has reflected XSS.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Codection Clean Login | <1.5.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2015-9336 is medium with a severity value of 6.1.
CVE-2015-9336 is a reflected XSS vulnerability in the clean-login plugin before version 1.5.1 for WordPress.
CVE-2015-9336 affects WordPress websites that have the clean-login plugin installed before version 1.5.1.
The CWE ID for CVE-2015-9336 is 79, which refers to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting').
To fix CVE-2015-9336, update the clean-login plugin to version 1.5.1 or above.