First published: Tue Jul 18 2023(Updated: )
Auth. (editor+) Stored Cross-Site Scripting (XSS) vulnerability in MagePeople Team Event Manager and Tickets Selling Plugin for WooCommerce plugin <= 3.9.5 versions.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Mage-people Event Manager And Tickets Selling Plugin For Woocommerce | <=3.9.5 |
Update to 3.9.6 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-36383 is medium with a CVSS score of 5.4.
CVE-2023-36383 affects MagePeople Team Event Manager and Tickets Selling Plugin for WooCommerce plugin versions up to and including 3.9.5.
CVE-2023-36383 is a Stored Cross-Site Scripting (XSS) vulnerability.
To fix CVE-2023-36383, update MagePeople Team Event Manager and Tickets Selling Plugin for WooCommerce plugin to a version above 3.9.5.
For additional information about CVE-2023-36383, you can refer to the following link: [link](https://patchstack.com/database/vulnerability/mage-eventpress/wordpress-event-manager-and-tickets-selling-plugin-for-woocommerce-plugin-3-9-5-cross-site-scripting-xss-vulnerability?_s_id=cve)