First published: Thu Dec 28 2023(Updated: )
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ibericode HTML Forms allows Stored XSS.This issue affects HTML Forms: from n/a through 1.3.28.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Ibericode Html Forms Wordpress | <=1.3.28 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-50836 is classified as a high-severity vulnerability due to its potential for causing stored Cross-site Scripting (XSS) attacks.
To fix CVE-2023-50836, update the Ibericode HTML Forms plugin to the latest version above 1.3.28.
CVE-2023-50836 can allow attackers to inject malicious scripts into web pages viewed by users, leading to sensitive data theft.
CVE-2023-50836 affects Ibericode HTML Forms from any version up to and including 1.3.28.
Yes, CVE-2023-50836 directly relates to improper neutralization of user input during web page generation, leading to stored XSS vulnerabilities.