CVE-2017-18566: XSS
Published Aug 20, 2019
·Updated
The user-role plugin before 1.5.6 for WordPress has multiple XSS issues.
Affected Software
1 affected component
Bestwebsoft User Role Wordpress<1.5.6
Event History
Aug 20, 2019
CVE Published
via MITRE·03:02 PM
Data Sourced
via MITRE·03:02 PM
Description
Frequently Asked Questions
1
What is CVE-2017-18566?
CVE-2017-18566 is a vulnerability in the user-role plugin before 1.5.6 for WordPress that allows for multiple XSS (Cross-Site Scripting) issues.
2
What is the severity of CVE-2017-18566?
CVE-2017-18566 has a severity rating of 6.1 (medium).
3
How does CVE-2017-18566 affect Bestwebsoft User Role?
CVE-2017-18566 affects Bestwebsoft User Role version up to exclusive 1.5.6.
4
How do I fix CVE-2017-18566?
To fix CVE-2017-18566, update to version 1.5.6 or higher of the user-role plugin for WordPress.
5
Where can I find more information about CVE-2017-18566?
You can find more information about CVE-2017-18566 on the official WordPress plugin page: https://wordpress.org/plugins/user-role/#developers