CVE-2020-36384: XSS
Published Jun 7, 2021
·Updated
PageLayer before 1.3.5 allows reflected XSS via color settings.
Affected Software
1 affected component
PageLayer Pagelayer WordPress<1.3.5
Event History
Jun 7, 2021
CVE Published
via MITRE·10:19 AM
Data Sourced
via MITRE·10:19 AM
DescriptionSeverity
Frequently Asked Questions
1
What is CVE-2020-36384?
CVE-2020-36384 is a vulnerability in PageLayer plugin before version 1.3.5 that allows reflected XSS via color settings.
2
How severe is CVE-2020-36384?
CVE-2020-36384 has a severity keyword of 'medium' and a severity value of 6.1.
3
How does CVE-2020-36384 affect PageLayer?
CVE-2020-36384 affects PageLayer before version 1.3.5.
4
How can I fix CVE-2020-36384?
To fix CVE-2020-36384, update PageLayer to version 1.3.5 or later.
5
Where can I find more information about CVE-2020-36384?
You can find more information about CVE-2020-36384 at the following link: [Wordfence Blog](https://www.wordfence.com/blog/2020/12/reflected-xss-in-pagelayer-plugin-affects-over-200000-wordpress-sites/).