CVE-2023-31229: WordPress WP Directory Kit Plugin <= 1.1.9 is vulnerable to Open Redirection
Published Dec 29, 2023
·Updated
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in WP Directory Kit.This issue affects WP Directory Kit: from n/a through 1.1.9.
Affected Software
1 affected component
wpdirectorykit Wp Directory Kit Wordpress<1.2.0
Remediation
Information
Update to 1.2.0 or a higher version.
Event History
Dec 29, 2023
CVE Published
via MITRE·09:53 AM
Data Sourced
via MITRE·09:53 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·10:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-31229?
CVE-2023-31229 is categorized as a medium severity vulnerability.
2
How does CVE-2023-31229 affect WP Directory Kit?
CVE-2023-31229 allows for URL redirection to untrusted sites, potentially leading to phishing attacks.
3
What versions of WP Directory Kit are affected by CVE-2023-31229?
CVE-2023-31229 affects WP Directory Kit versions from n/a to 1.1.9.
4
How can I fix CVE-2023-31229?
To fix CVE-2023-31229, update WP Directory Kit to version 1.2.0 or later.
5
Is CVE-2023-31229 a known exploit?
Yes, CVE-2023-31229 is a known exploit that can be used to redirect users to malicious websites.