First published: Tue Nov 14 2023(Updated: )
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Michael Uno (miunosoft) Responsive Column Widgets plugin <= 1.2.7 versions.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Michaeluno Responsive Column Widgets | <=1.2.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-47520 is a vulnerability found in the WordPress Responsive Column Widgets Plugin version 1.2.7 and below, which allows for a Cross Site Scripting (XSS) attack.
The severity of CVE-2023-47520 is high with a CVSS score of 7.1.
CVE-2023-47520 affects WordPress Responsive Column Widgets Plugin version 1.2.7 and below by allowing unauthenticated attackers to execute malicious scripts in a victim's browser.
To fix CVE-2023-47520, update WordPress Responsive Column Widgets Plugin to version 1.2.8 or later.
Cross Site Scripting (XSS) is a type of security vulnerability that allows attackers to inject malicious scripts into web pages viewed by other users.