CVE-2015-9360: XSS
Published Aug 28, 2019
·Updated
The updraftplus plugin before 1.9.64 for WordPress has XSS via addqueryarg() and removequeryarg().
Affected Software
1 affected component
updraftplus UpdraftPlus WordPress<1.9.64
Event History
Aug 28, 2019
CVE Published
via MITRE·11:50 AM
Data Sourced
via MITRE·11:50 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2015-9360.
2
What is the affected software?
The affected software is the updraftplus plugin before version 1.9.64 for WordPress.
3
How severe is CVE-2015-9360?
CVE-2015-9360 has a severity rating of 6.1 (medium).
4
What is the Common Weakness Enumeration (CWE) ID for this vulnerability?
The CWE ID for this vulnerability is CWE-79.
5
How can I fix this vulnerability?
To fix this vulnerability, update the updraftplus plugin to version 1.9.64 or later.