First published: Thu Nov 16 2023(Updated: )
Unauth. Stored Cross-Site Scripting (XSS) vulnerability in Acurax Under Construction / Maintenance Mode from Acurax plugin <= 2.6 versions.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Acurax Under Construction \/ Maintenance Mode | <=2.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-39926 is high.
The vulnerability in the Acurax Under Construction / Maintenance Mode plugin is unauthenticated stored Cross-Site Scripting (XSS).
Versions up to and including 2.6 of the Acurax Under Construction / Maintenance Mode plugin are affected by CVE-2023-39926.
To fix the vulnerability, update the Acurax Under Construction / Maintenance Mode plugin to a version higher than 2.6.
The CWE-ID associated with CVE-2023-39926 is CWE-79.