CVE-2023-40333: WordPress Bridge Core Plugin <= 3.0.9 is vulnerable to Cross Site Scripting (XSS)
Published Sep 27, 2023
·Updated
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Qode Interactive Bridge Core plugin <= 3.0.9 versions.
Affected Software
1 affected component
Qodeinteractive Bridge Core Wordpress<=3.0.9
Remediation
Information
Update to 3.1.0 or a higher version.
Event History
Sep 27, 2023
CVE Published
via MITRE·11:25 AM
Data Sourced
via MITRE·11:25 AM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2023-40333?
CVE-2023-40333 is an Unauthenticated Reflected Cross-Site Scripting (XSS) vulnerability in the Qode Interactive Bridge Core plugin.
2
How severe is CVE-2023-40333?
CVE-2023-40333 has a severity rating of 6.1 (High).
3
Which software versions are affected by CVE-2023-40333?
CVE-2023-40333 affects Qode Interactive Bridge Core plugin versions up to and including 3.0.9.
4
What is the common weakness enumeration (CWE) for CVE-2023-40333?
CVE-2023-40333 is classified under CWE-79: Improper Neutralization of Input During Web Page Generation (XSS).
5
How can CVE-2023-40333 be fixed?
To fix CVE-2023-40333, it is recommended to update the Qode Interactive Bridge Core plugin to a version higher than 3.0.9.