CVE-2023-34010: WordPress Media Library Assistant Plugin <= 3.0.7 is vulnerable to Cross Site Scripting (XSS)
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in submodule of David Lingren Media Library Assistant plugin <= 3.0.7 versions.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2023-34010?
CVE-2023-34010 is an Unauthenticated Reflected Cross-Site Scripting (XSS) vulnerability in the submodule of the David Lingren Media Library Assistant plugin version 3.0.7 and below.
What is the severity of CVE-2023-34010?
CVE-2023-34010 has a severity value of 6.1, which is considered medium.
How can I fix CVE-2023-34010?
To fix CVE-2023-34010, you should update to a version of the David Lingren Media Library Assistant plugin that is higher than 3.0.7.
What is the affected software for CVE-2023-34010?
The affected software for CVE-2023-34010 is the David Lingren Media Library Assistant plugin version 3.0.7 and below.
What is the CWE ID for CVE-2023-34010?
The CWE ID for CVE-2023-34010 is 79, which corresponds to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting').