First published: Thu Aug 10 2023(Updated: )
Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Muneeb Layer Slider plugin <= 1.1.9.7 versions.
Credit: audit@patchstack.com audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Web-settler Layer Slider | <=1.1.9.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-23798 is a Cross-Site Scripting (XSS) vulnerability found in the Muneeb Layer Slider plugin version 1.1.9.7 and below.
The severity of CVE-2023-23798 is medium, with a severity score of 5.4.
CVE-2023-23798 allows attackers with contributor or higher privileges to execute malicious scripts in the plugin, posing a risk to the security of the affected WordPress websites.
Yes, a fix is available for CVE-2023-23798. It is recommended to update the Muneeb Layer Slider plugin to version 1.1.9.8 or higher to mitigate this vulnerability.
CWE-79 is a common weakness enumeration category for Cross-Site Scripting (XSS) vulnerabilities.