CVE-2023-34375: WordPress Seo By 10Web Plugin <= 1.2.9 is vulnerable to Cross Site Scripting (XSS)
Published Nov 16, 2023
·Updated
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in 10Web SEO by 10Web plugin <= 1.2.9 versions.
Affected Software
1 affected component
10web Seo Wordpress<=1.2.9
Event History
Nov 16, 2023
CVE Published
07:31 PM
Data Sourced
07:31 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2023-34375?
CVE-2023-34375 is a vulnerability in the WordPress Seo By 10Web Plugin <= 1.2.9 that allows for Cross-Site Scripting (XSS) attacks.
2
What is the severity of CVE-2023-34375?
The severity of CVE-2023-34375 is high, with a CVSS score of 7.1.
3
How does CVE-2023-34375 impact the WordPress Seo By 10Web Plugin?
CVE-2023-34375 allows attackers to perform unauthenticated reflected Cross-Site Scripting (XSS) attacks on WordPress Seo By 10Web Plugin versions <= 1.2.9.
4
How can I fix CVE-2023-34375 in the WordPress Seo By 10Web Plugin?
To fix CVE-2023-34375, it is recommended to update to a version of the WordPress Seo By 10Web Plugin that is higher than 1.2.9.
5
What is Cross-Site Scripting (XSS)?
Cross-Site Scripting (XSS) is a type of security vulnerability that allows attackers to inject malicious scripts into web pages viewed by users.