CVE-2023-49833: WordPress Spectra Plugin <= 2.7.9 is vulnerable to Cross Site Scripting (XSS)
Published Dec 14, 2023
·Updated
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Brainstorm Force Spectra – WordPress Gutenberg Blocks allows Stored XSS.This issue affects Spectra – WordPress Gutenberg Blocks: from n/a through 2.7.9.
Affected Software
1 affected component
Brainstormforce Spectra Wordpress<2.7.10
Remediation
Information
Update to 2.7.10 or a higher version.
Event History
Dec 14, 2023
CVE Published
via MITRE·02:26 PM
Data Sourced
via MITRE·02:26 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-49833?
CVE-2023-49833 is classified as a stored Cross-site Scripting (XSS) vulnerability.
2
How do I fix CVE-2023-49833?
To fix CVE-2023-49833, update the Spectra – WordPress Gutenberg Blocks plugin to version 2.7.10 or higher.
3
What versions of Spectra are affected by CVE-2023-49833?
CVE-2023-49833 affects all versions of Spectra – WordPress Gutenberg Blocks from n/a to 2.7.9.
4
What type of attack can be executed using CVE-2023-49833?
An attacker can execute a stored XSS attack through the CVE-2023-49833 vulnerability.
5
Who is impacted by CVE-2023-49833?
Users of the Spectra – WordPress Gutenberg Blocks plugin from versions n/a to 2.7.9 are impacted by CVE-2023-49833.