Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Rolands Umbrovskis itemprop WP for SERP/SEO Rich snippets plugin <= 3.5.201706131 versions.
References
Configurations
Configuration 1 (hide)
|
History
16 Jun 2023, 03:08
| Type | Values Removed | Values Added |
|---|---|---|
| References | (MISC) https://patchstack.com/database/vulnerability/itempropwp/wordpress-itemprop-wp-for-serp-seo-rich-snippets-plugin-3-5-201706131-cross-site-scripting-xss-vulnerability?_s_id=cve - Third Party Advisory | |
| First Time |
Itemprop Wp For Serp\/seo Rich Snippets Project
Itemprop Wp For Serp\/seo Rich Snippets Project itemprop Wp For Serp\/seo Rich Snippets |
|
| CPE | cpe:2.3:a:itemprop_wp_for_serp\/seo_rich_snippets_project:itemprop_wp_for_serp\/seo_rich_snippets:*:*:*:*:*:wordpress:*:* | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 4.8 |
12 Jun 2023, 14:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2023-06-12 14:15
Updated : 2023-06-16 03:08
NVD link : CVE-2023-23819
Mitre link : CVE-2023-23819
JSON object : View
Products Affected
itemprop_wp_for_serp\/seo_rich_snippets_project
- itemprop_wp_for_serp\/seo_rich_snippets
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
