CVE-2022-45363: WordPress Betheme premium theme <= 26.6.1 - Auth. Stored Cross-Site Scripting (XSS) vulnerability
Published Nov 22, 2022
·Updated
Auth. (subscriber+) Stored Cross-Site Scripting (XSS) in Muffingroup Betheme theme <= 26.6.1 on WordPress.
Affected Software
1 affected component
Muffingroup Betheme Wordpress<=26.6.1
Event History
Nov 22, 2022
CVE Published
via MITRE·07:45 AM
Data Sourced
via MITRE·07:45 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·08:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2022-45363?
CVE-2022-45363 is an authentication (subscriber+) stored cross-site scripting (XSS) vulnerability in the Muffingroup Betheme theme version 26.6.1 and below on WordPress.
2
How severe is CVE-2022-45363?
CVE-2022-45363 has a severity rating of 5.4, which is considered medium.
3
How does CVE-2022-45363 impact WordPress?
CVE-2022-45363 allows authenticated subscribers or higher to inject malicious scripts into the Betheme theme, potentially leading to cross-site scripting attacks.
4
Which software versions are affected by CVE-2022-45363?
CVE-2022-45363 affects Muffingroup Betheme theme versions up to and including 26.6.1 on WordPress.
5
Is there a patch or fix available for CVE-2022-45363?
Yes, a patch for CVE-2022-45363 is available. Please refer to the provided reference link for more information.