CVE-2023-41872: WordPress WoodMart Theme <= 7.2.4 is vulnerable to Cross Site Scripting (XSS)
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Xtemos WoodMart plugin <= 7.2.4 versions.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2023-41872?
CVE-2023-41872 is an unauthenticated reflected Cross-Site Scripting (XSS) vulnerability in the Xtemos WoodMart plugin, versions <= 7.2.4.
How severe is CVE-2023-41872?
CVE-2023-41872 has a severity rating of 6.1 (High).
How does CVE-2023-41872 affect the Xtemos WoodMart plugin?
CVE-2023-41872 affects the Xtemos WoodMart plugin, versions <= 7.2.4, and can be exploited by unauthenticated attackers to execute arbitrary JavaScript code in a victim's browser.
Is there a fix available for CVE-2023-41872?
Yes, a fix is available for CVE-2023-41872 in the form of an updated version of the Xtemos WoodMart plugin (version > 7.2.4) which addresses the vulnerability.
What is the Common Weakness Enumeration (CWE) for CVE-2023-41872?
The Common Weakness Enumeration (CWE) for CVE-2023-41872 is CWE-79, which refers to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting').