First published: Sun May 28 2023(Updated: )
Unauth. Reflected (XSS) Cross-Site Scripting (XSS) vulnerability in EventPrime plugin <= 2.8.6 versions.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Metagauss Eventprime | <3.0.0 | |
Theeventprime Eventprime | <3.0.0 |
Update to 3.0.0 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-33326 is high.
The affected software of CVE-2023-33326 is the EventPrime plugin <= 2.8.6 versions.
The vulnerability type of CVE-2023-33326 is Unauth. Reflected (XSS) Cross-Site Scripting (XSS).
To fix CVE-2023-33326, update the EventPrime plugin to a version greater than 2.8.6.
Yes, you can find more information about CVE-2023-33326 in the reference link: [https://patchstack.com/database/vulnerability/eventprime-event-calendar-management/wordpress-eventprime-plugin-2-8-6-reflected-cross-site-scripting-xss?_s_id=cve](https://patchstack.com/database/vulnerability/eventprime-event-calendar-management/wordpress-eventprime-plugin-2-8-6-reflected-cross-site-scripting-xss?_s_id=cve)