CVE-2023-29388: WordPress Product Catalog Simple Plugin <= 1.6.17 is vulnerable to Cross Site Scripting (XSS)
Published Apr 7, 2023
·Updated
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in impleCode Product Catalog Simple plugin <= 1.6.17 versions.
Affected Software
1 affected component
impleCode Product Catalog Simple Wordpress<1.7.0
Remediation
Information
Update to 1.7.0 or a higher version.
Event History
Apr 7, 2023
CVE Published
via MITRE·02:48 PM
Data Sourced
via MITRE·02:48 PM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this security issue?
The vulnerability ID for this security issue is CVE-2023-29388.
2
What is the severity of CVE-2023-29388?
The severity of CVE-2023-29388 is high.
3
What is the affected software for CVE-2023-29388?
The affected software for CVE-2023-29388 is Implecode Product Catalog Simple plugin versions up to and including 1.6.17.
4
What is the Common Weakness Enumeration (CWE) ID associated with CVE-2023-29388?
The Common Weakness Enumeration (CWE) ID associated with CVE-2023-29388 is 79.
5
How can I fix the Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Implecode Product Catalog Simple plugin?
To fix the Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Implecode Product Catalog Simple plugin, update to version 1.7.0 or higher.