First published: Sat Jan 13 2018(Updated: )
An issue was discovered in the weblizar-pinterest-feeds plugin 1.1.1 for WordPress. XSS exists via the wp-admin/admin-ajax.php security parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Weblizar Pinterest Feeds | =1.1.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-5655 is an issue discovered in the weblizar-pinterest-feeds plugin 1.1.1 for WordPress, where XSS exists via the wp-admin/admin-ajax.php security parameter.
CVE-2018-5655 has a severity rating of 6.1, which is considered medium.
XSS occurs in CVE-2018-5655 through the wp-admin/admin-ajax.php security parameter.
The affected software for CVE-2018-5655 is the weblizar-pinterest-feeds plugin version 1.1.1 for WordPress.
To fix CVE-2018-5655, update to a version of the weblizar-pinterest-feeds plugin that is not affected by the vulnerability.