First published: Mon Nov 13 2023(Updated: )
Cross-Site Request Forgery (CSRF) vulnerability in tagDiv tagDiv Composer allows Cross-Site Scripting (XSS).This issue affects tagDiv Composer: from n/a before 4.4.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Tagdiv Composer | <4.4 |
Update to 4.4 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The CVE ID for this vulnerability is CVE-2023-39166.
The severity of CVE-2023-39166 is high.
The tagDiv Composer plugin version before 4.4 in WordPress is affected by CVE-2023-39166.
CVE-2023-39166 is a Cross-Site Request Forgery (CSRF) vulnerability.
To fix CVE-2023-39166, update the tagDiv Composer plugin to version 4.4 or newer.