CVE-2023-27420: WordPress Arya Multipurpose Theme <= 1.0.5 is vulnerable to Cross Site Scripting (XSS)
Published Jun 16, 2023
·Updated
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Everest Themes Arya Multipurpose theme <= 1.0.5 versions.
Affected Software
1 affected component
everestthemes Arya Multipurpose Wordpress<=1.0.5
Event History
Jun 16, 2023
CVE Published
via MITRE·10:47 AM
Data Sourced
via MITRE·10:47 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the CVE ID for this vulnerability?
The CVE ID for this vulnerability is CVE-2023-27420.
2
What is the severity level of CVE-2023-27420?
The severity level of CVE-2023-27420 is high (6.1).
3
What is the affected software for CVE-2023-27420?
The affected software for CVE-2023-27420 is Everest Themes Arya Multipurpose theme version 1.0.5 and below.
4
What is the Common Weakness Enumeration (CWE) ID for this vulnerability?
The Common Weakness Enumeration (CWE) ID for this vulnerability is CWE-79.
5
Is there a patch available for CVE-2023-27420?
Yes, a patch is available for CVE-2023-27420. More information can be found at: [link to patch]