First published: Tue Nov 14 2023(Updated: )
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Matthew Muro Restrict Categories plugin <= 2.6.4 versions.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Vfbpro Restrict Categories | <=2.6.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-47518 is a vulnerability in the WordPress Restrict Categories Plugin <= 2.6.4 that allows for Cross Site Scripting (XSS) attacks.
CVE-2023-47518 affects the WordPress Restrict Categories Plugin versions up to and including 2.6.4 by allowing unauthenticated attackers to execute malicious scripts via a reflected Cross-Site Scripting (XSS) vulnerability.
CVE-2023-47518 has a severity rating of 7.1, which is classified as high.
To fix CVE-2023-47518, it is recommended to update the WordPress Restrict Categories Plugin to a version that is not vulnerable, such as version 2.6.5 or later.
Yes, you can find more information about CVE-2023-47518 in the Patchstack vulnerability database article located at [https://patchstack.com/database/vulnerability/restrict-categories/wordpress-restrict-categories-plugin-2-6-4-reflected-cross-site-scripting-xss-vulnerability?_s_id=cve](https://patchstack.com/database/vulnerability/restrict-categories/wordpress-restrict-categories-plugin-2-6-4-reflected-cross-site-scripting-xss-vulnerability?_s_id=cve).