First published: Wed Aug 21 2019(Updated: )
The wp-customer-reviews plugin before 3.0.9 for WordPress has XSS in the admin tools.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
WP Customer Reviews | <3.0.9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this vulnerability is CVE-2016-10901.
The severity of CVE-2016-10901 is medium.
The affected software for CVE-2016-10901 is the wp-customer-reviews plugin before version 3.0.9 for WordPress.
CVE-2016-10901 is a vulnerability in the wp-customer-reviews plugin before 3.0.9 for WordPress that allows for XSS (Cross-Site Scripting) attacks in the admin tools.
To fix CVE-2016-10901, update the wp-customer-reviews plugin to version 3.0.9 or later.