CVE-2023-47532: WordPress WP Crowdfunding Plugin <= 2.1.6 is vulnerable to Cross Site Scripting (XSS)
Published Nov 14, 2023
·Updated
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Themeum WP Crowdfunding plugin <= 2.1.6 versions.
Affected Software
1 affected component
Themeum Wp Crowdfunding Wordpress<=2.1.6
Remediation
Information
Update to 2.1.7 or a higher version.
Event History
Nov 14, 2023
CVE Published
09:14 PM
Data Sourced
09:14 PM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2023-47532.
2
What is the title of this vulnerability?
The title of this vulnerability is WordPress WP Crowdfunding Plugin <= 2.1.6 is vulnerable to Cross Site Scripting (XSS).
3
What is the severity of CVE-2023-47532?
The severity of CVE-2023-47532 is medium.
4
What software versions are affected by CVE-2023-47532?
Version up to and including 2.1.6 of Themeum WP Crowdfunding plugin for WordPress are affected by CVE-2023-47532.
5
Is there a fix available for this vulnerability?
Yes, a fix is available. It is recommended to update to a version of the WP Crowdfunding plugin that is higher than 2.1.6.