CVE-2023-32119: WordPress WPO365 | Mail Integration for Office 365 / Outlook Plugin <= 1.9.0 is vulnerable to Cross Site Scripting (XSS)
Published Aug 23, 2023
·Updated
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in WPO365 | Mail Integration for Office 365 / Outlook plugin <= 1.9.0 versions.
Affected Software
1 affected component
WPO365 Mail Integration For Office 365 \/ Outlook Wordpress<1.9.1
Remediation
Information
Update to 1.9.1 or a higher version.
Event History
Aug 23, 2023
CVE Published
via MITRE·12:41 PM
Data Sourced
via MITRE·12:41 PM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-32119?
CVE-2023-32119 is classified as a high severity reflected Cross-Site Scripting (XSS) vulnerability.
2
How do I fix CVE-2023-32119?
To mitigate CVE-2023-32119, upgrade the WPO365 Mail Integration for Office 365 / Outlook plugin to version 1.9.1 or later.
3
Who is affected by CVE-2023-32119?
CVE-2023-32119 affects users of the WPO365 Mail Integration for Office 365 / Outlook plugin versions 1.9.0 and prior.
4
What type of vulnerability is CVE-2023-32119?
CVE-2023-32119 is an unauthenticated reflected Cross-Site Scripting (XSS) vulnerability.
5
What can attackers do exploiting CVE-2023-32119?
Exploitation of CVE-2023-32119 allows attackers to execute arbitrary scripts in the context of the victim's browser.