CVE-2022-45838: WordPress ARForms Form Builder Plugin <= 1.5.5 is vulnerable to Cross Site Scripting (XSS)
Published Apr 18, 2023
·Updated
Unauth. Stored Cross-Site Scripting (XSS) vulnerability in Repute InfoSystems ARForms Form Builder plugin <= 1.5.5 versions.
Affected Software
1 affected component
reputeinfosystems Arforms Form Builder Wordpress<=1.5.5
Event History
Apr 18, 2023
CVE Published
via MITRE·12:11 PM
Data Sourced
via MITRE·12:11 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2022-45838.
2
What is the title of the vulnerability?
The title of the vulnerability is 'Unauth. Stored Cross-Site Scripting (XSS) vulnerability in Repute InfoSystems ARForms Form Builder plugin <= 1.5.5 versions'.
3
What is the severity of CVE-2022-45838?
The severity of CVE-2022-45838 is medium with a severity value of 6.1.
4
What software versions are affected by CVE-2022-45838?
The Repute InfoSystems ARForms Form Builder plugin versions up to and including 1.5.5 are affected by CVE-2022-45838.
5
How can I fix CVE-2022-45838?
To fix CVE-2022-45838, update the Repute InfoSystems ARForms Form Builder plugin to a version higher than 1.5.5.