CVE-2022-41315: WordPress Ezoic plugin <= 2.8.8 - Auth. Stored Cross-Site Scripting (XSS) vulnerability
Published Nov 17, 2022
·Updated
Auth. Stored Cross-Site Scripting (XSS) vulnerability in Ezoic plugin <= 2.8.8 on WordPress.
Affected Software
1 affected component
Ezoic Ezoic Wordpress<=2.8.8
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
WordPress Ezoic pluginto a version that resolves this vulnerability.Fixed in 2.8.9
Event History
Nov 17, 2022
CVE Published
via MITRE·10:12 PM
Data Sourced
via MITRE·10:12 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·11:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2022-41315.
2
What is the title of the vulnerability?
The title of the vulnerability is Auth. Stored Cross-Site Scripting (XSS) vulnerability in the Ezoic plugin <= 2.8.8 on WordPress.
3
What is the severity of CVE-2022-41315?
The severity of CVE-2022-41315 is medium, with a CVSS score of 4.8.
4
How does CVE-2022-41315 affect software?
CVE-2022-41315 affects the Ezoic plugin version <= 2.8.8 on WordPress.
5
How can I fix the Auth. Stored Cross-Site Scripting (XSS) vulnerability in Ezoic plugin <= 2.8.8 on WordPress (CVE-2022-41315)?
To fix CVE-2022-41315, update the Ezoic plugin to a version higher than 2.8.8.