CVE-2023-29385: WordPress WP Abstracts Plugin <= 2.6.2 is vulnerable to Cross Site Scripting (XSS)
Published Jun 12, 2023
·Updated
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Kevon Adonis WP Abstracts plugin <= 2.6.2 versions.
Affected Software
2 affected components
Wp Abstracts Project Wp Abstracts Wordpress<=2.6.2
Kevonadonis Wp Abstracts Wordpress<=2.6.2
Event History
Jun 12, 2023
CVE Published
via MITRE·03:14 PM
Data Sourced
via MITRE·03:14 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-29385?
The severity of CVE-2023-29385 is high with a CVSS score of 6.1.
2
What software versions are affected by CVE-2023-29385?
Versions up to and including 2.6.2 of the Kevon Adonis WP Abstracts plugin are affected by CVE-2023-29385.
3
How can I fix CVE-2023-29385?
To fix CVE-2023-29385, update the WP Abstracts plugin to a version beyond 2.6.2 that addresses the reflected Cross-Site Scripting vulnerability.