First published: Mon Aug 12 2019(Updated: )
The subscriber plugin before 1.3.5 for WordPress has multiple XSS issues.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
BestWebSoft Subscriber | <1.3.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-18502 is classified as a medium severity vulnerability due to multiple XSS issues in the subscriber plugin for WordPress.
To fix CVE-2017-18502, update the subscriber plugin to version 1.3.5 or later.
CVE-2017-18502 can facilitate cross-site scripting (XSS) attacks that could allow attackers to inject malicious scripts into web pages.
Versions prior to 1.3.5 of the subscriber plugin for WordPress are affected by CVE-2017-18502.
The vulnerability CVE-2017-18502 is associated with the BestWebSoft Subscriber plugin.