CVE-2020-5392: XSS
Published Apr 1, 2020
·Updated
A stored cross-site scripting (XSS) vulnerability exists in the Auth0 plugin before 4.0.0 for WordPress via the settings page.
Affected Software
1 affected component
Auth0 Wp-auth0 Wordpress<4.0.0
Event History
Apr 1, 2020
CVE Published
via MITRE·12:48 PM
Data Sourced
via MITRE·12:48 PM
Description
Data Sourced
via NVD·01:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2020-5392?
The severity of CVE-2020-5392 is medium with a CVSS score of 6.1.
2
How can I mitigate the XSS vulnerability in Auth0 plugin before version 4.0.0 for WordPress?
To mitigate the stored cross-site scripting (XSS) vulnerability in the Auth0 plugin, update to version 4.0.0 or later.