Description
Cross-site scripting vulnerability in WordPress versions prior to 6.0.3 allows a remote unauthenticated attacker to inject an arbitrary script. The developer also provides new patched releases for all versions since 3.7.
Remediation
References
Related Vulnerabilities
Joomla Other Vulnerability (CVE-2023-23752)
OpenSSL Improper Certificate Validation Vulnerability (CVE-2023-0466)
XWiki Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2023-37909)
WordPress Plugin Parsian Bank Woocommerce Cross-Site Scripting (1.0)
WordPress Plugin WP Symposium Arbitrary File Upload Vulnerabilities (11.11.26)