CVE-2023-31071: WordPress Modal Dialog Plugin <= 3.5.14 is vulnerable to Cross Site Scripting (XSS)
Published Aug 17, 2023
·Updated
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Yannick Lefebvre Modal Dialog plugin <= 3.5.14 versions.
Affected Software
1 affected component
Ylefebvre Modal Dialog Wordpress<=3.5.14
Remediation
Information
Update to 3.5.15 or a higher version.
Event History
Aug 17, 2023
CVE Published
via MITRE·08:41 AM
Data Sourced
via MITRE·08:41 AM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2023-31071.
2
What is the severity of CVE-2023-31071?
The severity of CVE-2023-31071 is high with a severity value of 6.1.
3
What is the affected software for CVE-2023-31071?
The affected software for CVE-2023-31071 is Yannick Lefebvre Modal Dialog plugin version <= 3.5.14.
4
What is the common weakness enumeration (CWE) ID for CVE-2023-31071?
The common weakness enumeration (CWE) ID for CVE-2023-31071 is CWE-79.
5
How can I fix the vulnerability in Yannick Lefebvre Modal Dialog plugin version <= 3.5.14?
To fix the vulnerability in Yannick Lefebvre Modal Dialog plugin version <= 3.5.14, you should upgrade to a newer version of the plugin that has the security patch applied.