First published: Fri Nov 18 2022(Updated: )
Multiple Auth. (author+) Stored Cross-Site Scripting (XSS) vulnerabilities in WP Page Builder plugin <= 1.2.6 on WordPress.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Themeum Wp Page Builder | <1.2.7 |
Update to 1.2.7 or higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-40963 is medium with a CVSS score of 5.4.
The affected software for CVE-2022-40963 is WP Page Builder plugin version <= 1.2.6 on WordPress.
To fix CVE-2022-40963, update your WP Page Builder plugin to version 1.2.7 or higher.
The Common Weakness Enumeration (CWE) for CVE-2022-40963 is CWE-79.
You can find more information about CVE-2022-40963 on the Patchstack database and the WordPress plugin page.