First published: Wed Aug 12 2020(Updated: )
search.php in the Nova Lite theme before 1.3.9 for WordPress allows Reflected XSS.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Themeinprogress Nova Lite | <1.3.9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for search.php in the Nova Lite theme before version 1.3.9 is CVE-2020-17362.
search.php in the Nova Lite theme before version 1.3.9 has a Reflected XSS vulnerability.
The severity of CVE-2020-17362 is medium.
To fix the Reflected XSS vulnerability in search.php, update the Nova Lite theme to version 1.3.9 or later.
You can find more information about the Nova Lite theme version 1.3.9 in the readme.txt file available at this URL: [https://themes.trac.wordpress.org/browser/nova-lite/1.3.9/readme.txt?rev=134076]