CVE-2023-34018: WordPress SoundCloud Shortcode Plugin <= 3.1.0 is vulnerable to Cross Site Scripting (XSS)
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in SoundCloud Inc. SoundCloud Shortcode allows Stored XSS.This issue affects SoundCloud Shortcode: from n/a through 3.1.0.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-34018?
CVE-2023-34018 is a vulnerability in the WordPress SoundCloud Shortcode Plugin that allows for Cross-Site Scripting (XSS) attacks.
How severe is CVE-2023-34018?
CVE-2023-34018 has a severity score of 5.9, which is considered medium.
What is the affected software version?
The affected software version is SoundCloud Shortcode from n/a through 3.1.0.
How can I fix CVE-2023-34018?
To fix CVE-2023-34018, you should update the SoundCloud Shortcode Plugin to version 3.1.0 or higher.
Where can I find more information about CVE-2023-34018?
You can find more information about CVE-2023-34018 at this [link](https://patchstack.com/database/vulnerability/soundcloud-shortcode/wordpress-soundcloud-shortcode-plugin-3-1-0-cross-site-scripting-xss-vulnerability?_s_id=cve).