First published: Thu Apr 13 2023(Updated: )
Auth. (subscriber+) Reflected Cross-Site Scripting (XSS) vulnerability in Silkalns Activello theme <= 1.4.4 versions.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Colorlib Activello Theme | <=1.4.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-45358 is classified as a moderate severity reflected cross-site scripting (XSS) vulnerability.
To fix CVE-2022-45358, update the Silkalns Activello theme to version 1.4.5 or later.
Exploiting CVE-2022-45358 can allow an attacker to execute arbitrary JavaScript in the user's browser.
Users of the Silkalns Activello theme version 1.4.4 and below are affected by CVE-2022-45358.
Yes, CVE-2022-45358 can be relatively easy to exploit if proper input validation is not in place.