CVE-2022-47137: WordPress Ninja Tables Plugin <= 4.3.4 is vulnerable to Cross Site Scripting (XSS)
Published May 10, 2023
·Updated
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in WPManageNinja LLC Ninja Tables plugin <= 4.3.4 versions.
Affected Software
1 affected component
WPManageNinja Ninja Tables Wordpress<=4.3.4
Remediation
Information
Update to 4.3.5 or a higher version.
Event History
May 10, 2023
CVE Published
via MITRE·10:04 AM
Data Sourced
via MITRE·10:04 AM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2022-47137?
CVE-2022-47137 is classified as a high severity vulnerability due to its potential for exploitation through stored cross-site scripting.
2
How do I fix CVE-2022-47137?
To fix CVE-2022-47137, update the WPManageNinja Ninja Tables plugin to version 4.3.5 or later.
3
What are the potential impacts of CVE-2022-47137?
The impacts of CVE-2022-47137 include the possibility for an authenticated attacker to execute arbitrary JavaScript code in the context of the user's session.
4
Which versions of the Ninja Tables plugin are affected by CVE-2022-47137?
CVE-2022-47137 affects all versions of the Ninja Tables plugin up to and including 4.3.4.
5
Who is the vendor associated with CVE-2022-47137?
The vendor associated with CVE-2022-47137 is WPManageNinja LLC.