CVE-2023-4811
16.10.2023, 20:15
The WordPress File Upload WordPress plugin before 4.23.3 does not sanitise and escape some of its settings, which could allow high privilege users such as contributors to perform Stored Cross-Site Scripting attacks.Enginsight
Vendor | Product | Version |
---|---|---|
iptanus | wordpress_file_upload | 𝑥 < 4.23.3 |
𝑥
= Vulnerable software versions