First published: Mon Sep 04 2023(Updated: )
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Gopi Ramasamy wp tell a friend popup form plugin <= 7.1 versions.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Gopiplus WP Tell A Friend Popup Form | <=7.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-25465 is medium with a severity value of 4.8.
CVE-2023-25465 affects Gopi Ramasamy wp tell a friend popup form plugin with versions up to and including 7.1.
The CWE of CVE-2023-25465 is 79.
To fix CVE-2023-25465, it is recommended to apply the latest patch or update to a version of Gopi Ramasamy wp tell a friend popup form plugin that is not vulnerable.
More information about CVE-2023-25465 can be found at the following reference: [link](https://patchstack.com/database/vulnerability/wp-tell-a-friend-popup-form/wordpress-wp-tell-a-friend-popup-form-plugin-7-1-cross-site-scripting-xss-vulnerability?_s_id=cve)