CVE-2023-0076: Download Attachments < 1.3 - Contributor+ Stored XSS
The Download Attachments WordPress plugin before 1.3 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks.
Other sources
The Download Attachments WordPress plugin through 1.2.24 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-0076?
CVE-2023-0076 has been classified as a medium severity vulnerability.
How do I fix CVE-2023-0076?
To fix CVE-2023-0076, update the Download Attachments plugin to version 1.3 or later.
Who is affected by CVE-2023-0076?
Users with roles of contributor and above in WordPress installations using the affected plugin are at risk from CVE-2023-0076.
What type of vulnerability is CVE-2023-0076?
CVE-2023-0076 is a Stored Cross-Site Scripting (XSS) vulnerability.
Which versions of the Download Attachments plugin are vulnerable to CVE-2023-0076?
Download Attachments plugin versions prior to 1.3 are vulnerable to CVE-2023-0076.