First published: Thu Nov 30 2023(Updated: )
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Team Yoast Yoast SEO allows Stored XSS.This issue affects Yoast SEO: from n/a through 21.0.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Yoast Yoast Seo | <=21.0 |
Update to 21.1 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2023-40680.
The title of the vulnerability is 'WordPress Yoast SEO Plugin <= 21.0 is vulnerable to Cross Site Scripting (XSS)'.
The severity of CVE-2023-40680 is medium with a severity value of 5.9.
The affected software is Yoast SEO plugin version up to and including 21.0 on WordPress.
To fix CVE-2023-40680, update the Yoast SEO plugin to a version higher than 21.0.