CVE-2023-35882: WordPress Super Socializer Plugin <= 7.13.52 is vulnerable to Cross Site Scripting (XSS)
Published Jun 20, 2023
·Updated
Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Team Heateor Super Socializer plugin <= 7.13.52 versions.
Affected Software
1 affected component
Heateor Super Socializer Wordpress<=7.13.52
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
wordpress/team-heateor-super-socializer-pluginto a version that resolves this vulnerability.Fixed in 7.13.53
Event History
Jun 20, 2023
CVE Published
via MITRE·07:53 AM
Data Sourced
via MITRE·07:53 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·08:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2023-35882.
2
What is the severity of CVE-2023-35882?
The severity of CVE-2023-35882 is medium with a CVSS score of 5.4.
3
What is the affected software?
The affected software is the Team Heateor Super Socializer plugin version 7.13.52 and below.
4
What is the vulnerability description?
The vulnerability is a stored Cross-Site Scripting (XSS) vulnerability in the Team Heateor Super Socializer plugin.
5
How do I fix CVE-2023-35882?
To fix this vulnerability, upgrade to a version of the Team Heateor Super Socializer plugin above 7.13.52.