CVE-2022-46848: WordPress Visualizer Plugin <= 3.9.1 is vulnerable to Cross Site Scripting (XSS)
Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Themeisle Visualizer: Tables and Charts Manager for WordPress plugin <= 3.9.1 versions.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2022-46848?
CVE-2022-46848 is an authentication (contributor+) stored Cross-Site Scripting (XSS) vulnerability in the Themeisle Visualizer: Tables and Charts Manager for WordPress plugin.
How severe is CVE-2022-46848?
CVE-2022-46848 has a severity rating of 5.4 (medium).
What software versions are affected by CVE-2022-46848?
CVE-2022-46848 affects versions up to and excluding 3.9.2 of the Themeisle Visualizer: Tables and Charts Manager for WordPress plugin.
What is the Common Weakness Enumeration (CWE) for CVE-2022-46848?
The CWE for CVE-2022-46848 is CWE-79 (Improper Neutralization of Input During Web Page Generation)
How can I fix the CVE-2022-46848 vulnerability?
To fix the CVE-2022-46848 vulnerability, update the Themeisle Visualizer: Tables and Charts Manager for WordPress plugin to version 3.9.2 or a later version.