First published: Thu Apr 06 2023(Updated: )
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Yannick Lefebvre Modal Dialog plugin <= 3.5.9 versions.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Modal Dialog Project | <3.5.10 |
Update to 3.5.10 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-24001 has a high severity due to its potential for enabling stored Cross-Site Scripting (XSS) attacks.
To fix CVE-2023-24001, upgrade the Modal Dialog plugin to version 3.5.10 or later.
CVE-2023-24001 affects users of the Modal Dialog plugin versions 3.5.9 and earlier who have administrator-level access.
CVE-2023-24001 can facilitate stored Cross-Site Scripting (XSS) attacks, allowing attackers to inject malicious scripts.
Yes, CVE-2023-24001 specifically targets the Modal Dialog plugin for WordPress.