CVE-2023-32597: WordPress Video Gallery Plugin <= 1.0.10 is vulnerable to Cross Site Scripting (XSS)
Published Aug 30, 2023
·Updated
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in I Thirteen Web Solution Video Gallery plugin <= 1.0.10 versions.
Affected Software
1 affected component
I13websolution Video Gallery Wordpress<=1.0.10
Remediation
Information
Update to 1.0.11 or a higher version.
Event History
Aug 30, 2023
CVE Published
via MITRE·11:45 AM
Data Sourced
via MITRE·11:45 AM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2023-32597?
CVE-2023-32597 is an unauthenticated reflected Cross-Site Scripting (XSS) vulnerability in the I Thirteen Web Solution Video Gallery plugin version 1.0.10 and earlier.
2
How severe is CVE-2023-32597?
CVE-2023-32597 has a severity score of 6.1, which is considered high.
3
How does CVE-2023-32597 affect the I Thirteen Web Solution Video Gallery plugin?
CVE-2023-32597 affects the I Thirteen Web Solution Video Gallery plugin version 1.0.10 and earlier.
4
How can I fix CVE-2023-32597?
To fix CVE-2023-32597, it is recommended to update the I Thirteen Web Solution Video Gallery plugin to a version higher than 1.0.10.
5
What is the CVE identifier for the vulnerability?
The CVE identifier for this vulnerability is CVE-2023-32597.