CVE-2023-45768
CVSS 3.1 Score 4.8 of 10 (medium)
Details
Published Oct 25, 2023
Updated: Oct 28, 2023
CWE ID 79
Summary
CVE-2023-45768 is a stored Cross-Site Scripting (XSS) vulnerability affecting versions 1.5.2 and below of the Stephanie Leary Next Page plugin for WordPress. An attacker can exploit this admin-level vulnerability by injecting malicious scripts into a targeted website's legitimate content. Successful exploitation can lead to unauthorized access, data theft, or further compromise of the affected site. Users are strongly advised to update the plugin to a secure version as soon as possible to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share