CVE-2023-45764: WordPress Scroll post excerpt Plugin <= 8.0 is vulnerable to Cross Site Scripting (XSS)
Published Oct 24, 2023
·Updated
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Gopi Ramasamy Scroll post excerpt plugin <= 8.0 versions.
Affected Software
1 affected component
gopiplus Scroll Post Excerpt Wordpress<=8.0
Event History
Oct 24, 2023
CVE Published
via MITRE·11:58 AM
Data Sourced
via MITRE·11:58 AM
DescriptionSeverityWeakness
Oct 25, 2023
Data Sourced
via NVD·06:17 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the CVE ID of this vulnerability?
The CVE ID of this vulnerability is CVE-2023-45764.
2
What is the title of this vulnerability?
The title of this vulnerability is Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Gopi Ramasamy Scroll post excerpt …
3
What is the affected software in this vulnerability?
The affected software in this vulnerability is Gopiplus Scroll Post Excerpt plugin versions <= 8.0.
4
What is the severity of CVE-2023-45764?
The severity of CVE-2023-45764 is medium (4.8).
5
How do I fix the Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Gopi Ramasamy Scroll post excerpt plugin?
To fix the vulnerability, update Gopi Ramasamy Scroll post excerpt plugin to version 8.1 or higher.