First published: Thu Mar 23 2023(Updated: )
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in nasirahmed Connect Contact Form 7, WooCommerce To Google Sheets & Other Platforms – Advanced Form Integration plugin <= 1.62.0 versions.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Advanced Form Integration | <1.63.0 |
Update to 1.63.0 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-47173 has been classified as a medium severity vulnerability due to its potential for stored cross-site scripting exploitation.
To fix CVE-2022-47173, update the Advanced Form Integration plugin to version 1.63.0 or later.
CVE-2022-47173 allows for stored cross-site scripting attacks, which can lead to unauthorized actions on behalf of the administrator.
CVE-2022-47173 affects users of the Advanced Form Integration plugin versions 1.62.0 and earlier.
Yes, a patch is available by updating the Advanced Form Integration plugin to version 1.63.0 or later.