CVE-2023-28784: WordPress Contest Gallery Plugin <= 21.1.2 is vulnerable to Cross Site Scripting (XSS)
Published Jun 22, 2023
·Updated
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Contest Gallery plugin <= 21.1.2 versions.
Affected Software
1 affected component
contest-gallery Contest Gallery Wordpress<=21.1.2
Remediation
Information
Update to 21.1.2.1 or a higher version.
Event History
Jun 22, 2023
CVE Published
via MITRE·11:21 AM
Data Sourced
via MITRE·11:21 AM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-28784?
The severity of CVE-2023-28784 is high with a CVSS score of 6.1.
2
What is CVE-2023-28784?
CVE-2023-28784 is an Unauthenticated Reflected Cross-Site Scripting (XSS) vulnerability in the Contest Gallery plugin version <= 21.1.2 for WordPress.
3
How does CVE-2023-28784 affect software?
CVE-2023-28784 affects the Contest Gallery plugin version <= 21.1.2 for WordPress.
4
How can I fix CVE-2023-28784?
To fix CVE-2023-28784, update the Contest Gallery plugin to a version higher than 21.1.2.
5
What is the Common Vulnerabilities and Exposures (CVE) ID for this vulnerability?
The Common Vulnerabilities and Exposures (CVE) ID for this vulnerability is CVE-2023-28784.