CVE-2017-18494: XSS
Published Aug 13, 2019
·Updated
The custom-search-plugin plugin before 1.36 for WordPress has multiple XSS issues.
Affected Software
1 affected component
Bestwebsoft Custom Search Wordpress<1.36
Event History
Aug 13, 2019
CVE Published
via MITRE·04:44 PM
Data Sourced
via MITRE·04:44 PM
Description
Frequently Asked Questions
1
What is CVE-2017-18494?
CVE-2017-18494 is a vulnerability in the custom-search-plugin plugin before version 1.36 for WordPress, which allows for multiple XSS issues.
2
How severe is CVE-2017-18494?
CVE-2017-18494 has a severity level of medium with a CVSS score of 6.1.
3
What software is affected by CVE-2017-18494?
The custom-search-plugin plugin before version 1.36 for WordPress is affected by CVE-2017-18494.
4
How can I fix CVE-2017-18494?
To fix CVE-2017-18494, update the custom-search-plugin plugin to version 1.36 or later.
5
Where can I find more information about CVE-2017-18494?
You can find more information about CVE-2017-18494 at the following link: https://wordpress.org/plugins/custom-search-plugin/#developers