First published: Mon Sep 04 2023(Updated: )
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Molongui Author Box for Authors, Co-Authors, Multiple Authors and Guest Authors – Molongui plugin <= 4.6.19 versions.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Amitzy Molongui | <4.6.20 |
Update to 4.6.20 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-39164 is an Unauthenticated Reflected Cross-Site Scripting (XSS) vulnerability in Molongui Author Box for Authors, Co-Authors, Multiple Authors and Guest Authors - Molongui plugin versions up to 4.6.19.
CVE-2023-39164 has a severity level of 6.1 (high).
The affected software is the Molongui Author Box for Authors, Co-Authors, Multiple Authors and Guest Authors - Molongui plugin versions up to 4.6.19.
The Common Weakness Enumeration (CWE) of CVE-2023-39164 is CWE-79 (Cross-Site Scripting).
To fix CVE-2023-39164, update the Molongui Author Box for Authors, Co-Authors, Multiple Authors and Guest Authors - Molongui plugin to version 4.6.20 or above.