First published: Fri Aug 09 2024(Updated: )
The Category Posts Widget WordPress plugin before 4.9.17, term-and-category-based-posts-widget WordPress plugin before 4.9.13 does not validate and escape some of its "Category Posts" widget settings before outputting them back in a page/post where the Widget is embed, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)
Credit: contact@wpscan.com
Affected Software | Affected Version | How to fix |
---|---|---|
WordPress Category Posts Widget | <4.9.17 | |
WordPress term-and-category-based-posts-widget | <4.9.13 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-6158 has been classified as a medium severity vulnerability that may allow for information disclosure.
To fix CVE-2024-6158, update the Category Posts Widget to version 4.9.17 or later and the term-and-category-based-posts-widget to version 4.9.13 or later.
The potential impacts of CVE-2024-6158 include the possibility of unauthorized access to sensitive information through improper validation and output of widget settings.
CVE-2024-6158 affects the Category Posts Widget before version 4.9.17 and the term-and-category-based-posts-widget before version 4.9.13.
CVE-2024-6158 is a known vulnerability in certain WordPress plugins that may be exploited if the plugins are not updated.